The China-aligned threat group SHADOW-EARTH-053 has been exploiting unpatched Microsoft Exchange and IIS server vulnerabilities, specifically the ProxyLogon vulnerability chain, to conduct cyberespionage. This group has…
2 articles · Updated May 5, 2026
Recent Intelligence Reports
China-Aligned SHADOW-EARTH— Cybersecuritynews · May 5, 2026