Security news aggregator

Latest coverage for China

Stay updated with the latest information security trends, threats, and strategies emerging from China. Discover how China shapes global cybersecurity.

24 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

China in the context of information security is a multifaceted subject that encompasses the nation's cyber policies, defense mechanisms, and offensive cyber capabilities. It includes analysis of China's approach to protecting its own digital infrastructure, regulations governing cyber activities within its borders, and its stance on internet sovereignty. Additionally, this topic delves into the country's role in global cyber incidents, including allegations of state-sponsored cyber espionage, intellectual property theft, and cyber warfare tactics.

In the sphere of information security, discussions on China often involve their advances in next-generation technological warfare, investments in cyber defense research, and the influence of Chinese technology companies around the world. Moreover, China's impact on supply chain security, particularly in technology manufacturing and software development, is of great significance. All these elements collectively contribute to China being a significant point of interest for cyber security experts, policy makers, and global entities concerned with the implications of cyber threats posed by nation-states.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 24 Filtered view

A maximum severity security vulnerability in Dell RecoverPoint for Virtual Machines has been exploited as a zero-day by a suspected China-nexus threat cluster dubbed UNC6201 since mid-2024, according to a new report from Google Mandiant and Google Threat Intelligence Group (GTIG)

Google on Tuesday revealed that multiple threat actors, including nation-state adversaries and financially motivated groups, are exploiting a now-patched critical security flaw in RARLAB WinRAR to establish initial access and deploy a diverse array of payloads

Bank Info Security 5 months, 2 weeks ago

Nation-State and Cybercrime Exploits Tied to React2Shell

2 More Vulnerabilities Need Patching in React Server Components, Warns VercelMass exploitation of the "React2Shell" - CVE-2025-55182 - vulnerability remains underway by nation-state hackers tied to China, North Korea and Iran, as well as financially motivated cybercriminals running everything from cryptomining malware to DDoS services, security experts warn.

Hackers believed to be associated with China have leveraged the ToolShell vulnerability (CVE-2025-53770) in Microsoft SharePoint in attacks targeting government agencies, universities, telecommunication service providers, and finance organizations. [...]

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on July 22, 2025, added two Microsoft SharePoint flaws, CVE-2025-49704 and CVE-2025-49706, to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation

Cisco has confirmed that a Chinese threat actor known as Salt Typhoon gained access by likely abusing a known security flaw tracked as CVE-2018-0171, and by obtaining legitimate victim login credentials as part of a targeted campaign aimed at major U.S. telecommunications companies

Loading more headlines...