Close Menu
Must Have Gadgets –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    How to watch Duke vs Arkansas 2025 — live stream college basketball game

    November 27, 2025

    How Microsoft’s developers are using AI

    November 27, 2025

    Get either the Essential or Premium plan for only $3 per month for two months

    November 27, 2025
    Facebook X (Twitter) Instagram
    Must Have Gadgets –
    Trending
    • How to watch Duke vs Arkansas 2025 — live stream college basketball game
    • How Microsoft’s developers are using AI
    • Get either the Essential or Premium plan for only $3 per month for two months
    • Dreame’s X40 Ultra is arguably the best robovac deal you can grab for Black Friday
    • These Fire Stick and VPN Black Friday deals are a match made in heaven
    • Dell Black Friday Laptop Deals
    • I Spy the Arlo Pro 6 Security Camera at an All-Time Low Price for Black Friday
    • Apple’s M4 Mac Mini Drops to Unbelievable Price of $479, Save 20%
    • Home
    • Shop
      • Earbuds & Headphones
      • Smartwatches
      • Mobile Accessories
      • Smart Home Devices
      • Laptops & Tablets
    • Gadget Reviews
    • How-To Guides
    • Mobile Accessories
    • Smart Devices
    • More
      • Top Deals
      • Smart Home
      • Tech News
      • Trending Tech
    Facebook X (Twitter) Instagram
    Must Have Gadgets –
    Home»Mobile Accessories»Russian tech firm attacked by Chinese state hackers in allied attack
    Mobile Accessories

    Russian tech firm attacked by Chinese state hackers in allied attack

    adminBy adminOctober 17, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Russian tech firm attacked by Chinese state hackers in allied attack
    Share
    Facebook Twitter LinkedIn Pinterest Email

    • Chinese APT Jewelbug infiltrated a Russian IT provider, dwelling undetected for five months
    • Attackers used renamed Microsoft debugger to bypass defenses and exfiltrate data via Yandex Cloud
    • Symantec says China-based actors now target Russia despite perceived geopolitical alignment

    Chinese hackers were recently seen targeting Russians, which raised eyebrows among the western cybersecurity community who perceive the two countries as allies in cyberspace and beyond.

    Earlier this week, security outfit Symantec published a new report in which it detailed the work of Jewelbug, a Chinese state-sponsored threat actor that’s been “highly active in recent months.” In the report, Symantec said Jewelbug was seen going after targets in South America, South Asia, Taiwan and, most notably, Russia.

    In early 2025, Jewelbug managed to sneak into the network of a Russian IT service provider, and remain there for no less than five months. During that time, they accessed code repositories and software build systems that they could leverage to run supply chain attacks against the IT service provider’s customers.


    You may like

    7zup.exe and Yandex

    The compromise was spotted when researchers found a file named 7zup.exe on the IT provider’s system. This is a renamed copy of a legitimate, Microsoft binary, called CDB (Microsoft Console Debugger).

    This tool can be used to run shellcode, bypass application whitelisting, launch executables, run DLLs, and terminate security solutions, Symantec added.

    “Use of a renamed version of cbd.exe is a hallmark of Jewelbug activity,” the report reads. “Microsoft recommends that CDB should be blocked from running by default and whitelisted for specific users only when it’s explicitly needed.”

    With the help of CBD, Jewelbug managed to dump credentials, establish persistence, and elevate privileges via scheduled tasks. They tried to cover their tracks by clearing Windows Event Logs, and used Yandex Cloud to exfiltrate data. Yandex is a Russian cloud service provider, which was probably chosen since it’s commonly used in the country and doesn’t usually raise any red flags.

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    “The targeting of a Russian organization by a Chinese APT group shows, however, that Russia is not out-of-bounds when it comes to operations by China-based actors,” Symantec concluded.

    Via The Register

    Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

    And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

    You might also like

    allied attack attacked Chinese firm hackers Russian state Tech
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    admin
    • Website

    Related Posts

    Apple’s M4 Mac Mini Drops to Unbelievable Price of $479, Save 20%

    November 27, 2025

    The Apple Watch Series 11 42mm Cell Is $60 Off

    November 27, 2025

    Amazon Leo Ultra promises download speeds of up to 1 Gbps and upload speeds of up to 400 Mbps.

    November 27, 2025
    Leave A Reply Cancel Reply

    Top Posts

    How to watch Duke vs Arkansas 2025 — live stream college basketball game

    November 27, 2025

    PayPal’s blockchain partner accidentally minted $300 trillion in stablecoins

    October 16, 2025

    The best AirPods deals for October 2025

    October 16, 2025
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    How-To Guides

    How to Disable Some or All AI Features on your Samsung Galaxy Phone

    By adminOctober 16, 20250
    Gadget Reviews

    PayPal’s blockchain partner accidentally minted $300 trillion in stablecoins

    By adminOctober 16, 20250
    Smart Devices

    The best AirPods deals for October 2025

    By adminOctober 16, 20250

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Latest Post

    How to watch Duke vs Arkansas 2025 — live stream college basketball game

    November 27, 2025

    How Microsoft’s developers are using AI

    November 27, 2025

    Get either the Essential or Premium plan for only $3 per month for two months

    November 27, 2025
    Recent Posts
    • How to watch Duke vs Arkansas 2025 — live stream college basketball game
    • How Microsoft’s developers are using AI
    • Get either the Essential or Premium plan for only $3 per month for two months
    • Dreame’s X40 Ultra is arguably the best robovac deal you can grab for Black Friday
    • These Fire Stick and VPN Black Friday deals are a match made in heaven

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2025 must-have-gadgets.

    Type above and press Enter to search. Press Esc to cancel.