Chinese hackers used Brickworm malware to breach critical US infrastructure


  • Chinese state-sponsored actors deploy Brickworm malware to infiltrate government and IT networks worldwide
  • The malware targets VMware vSphere and Windows, enabling persistence, file manipulation and Active Directory compromise
  • CISA warns of long-term espionage and sabotage risks; China denies accusations, calls US a “cyber bully”

Chinese state-sponsored threat actors have used Brickworm malware against government organizations around the world – maintaining access, exfiltrating files and eavesdropping.

This is stated in a joint report published by the US Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA) and the Canadian Center for Cyber ​​Security. The report outlines how the malware works, based on the analysis of eight samples from the victim’s network.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top