AI & Cybersecurity Threats: Nation-State Actors
Articles on state-sponsored cyber threat actors, including espionage, critical infrastructure compromise, and advanced persistent threats (APTs) linked to nation-states, with focus on attribution, tactics, and geopolitical context.
AI-Driven Hacking Campaign Linked to China Targets Government Agencies
Anthropic disrupted a cyber operation linked to the Chinese government that used AI to direct hacking campaigns in a largely automated fashion, targeting government agencies including likely those in Taiwan. The operation used AI systems to automate attack workflows, with hackers employing jailbreaking techniques to manipulate Claude. Researchers described this as a "near-autonomous" attack pattern where a Chinese-language operator used a complex AI framework to target and compromise government
Evolving Threat: North Korean IT Workers Refine Disguises, New Detection Emerges
North Korean operatives posing as IT workers are improving tactics aided by AI, but researchers say there are still ways to spot them before they do damage
Russian Espionage Group Laundry Bear Exploits Exchange OWA Zero-Day for Persistent Mailbox Access
Analysis of how Russian state-sponsored group Laundry Bear (Void Blizzard) is using CVE-2026-42897, an Exchange Outlook Web Access XSS vulnerability, to deploy the sophisticated OWAReaper backdoor with advanced persistence mechanisms.
China’s Quiet War on Southeast Asia’s Power Grids
A China-linked cyber group has infiltrated at least ten regional organizations—including two state utilities—with a stealthy C# backdoor, preparing for infrastructure disruption, not data theft.