#VioletTyphoon
BlueMoon exploit kits chained Windows and Chrome zero-days for RCE, sandbox escape, and privilege escalation in espionage campaigns targeting NGOs, defense firms, and Vietnamese manufacturers. #BlueMoon #Vietnam #Chrome
New 'BlueMoon' Kit Exploited Windows And Chrome Zero-day Flaws
Multiple cyber-espionage groups used the BlueMoon exploit kit to chain zero-day flaws in Microsoft Windows and Google Chrome for remote code execution, sandbox escape, and privilege escalation. Proofpoint and Volexity linked distinct BlueMoon campaigns to JungleBamboo, UTA0560, UNK_LateNight, and UNK_DoubleCheck, with targets including NGOs, U.S. aerospace and defense firms, and Vietnamese manufacturers. #BlueMoon #JungleBamboo #APT31 #VioletTyphoon #UTA0560 #UNK_LateNight #UNK_DoubleCheck #Chrome #MicrosoftWindows
www.hendryadrian.com
September 10, 2026 at 5:45 PM
Proofpoint says at least four China-aligned groups chained three zero-days in Chrome, Chromium browsers, and Windows to run espionage since late August, targeting NGOs, firms, and organizations across Asia and the U.S. #China #APT31 #ZeroDay
Chinese Espionage Groups Swarm To Exploit Triple-link Chain Of Zero-days
Proofpoint found at least four China-aligned threat groups chaining three zero-day flaws in Chrome, Chromium-based browsers, and Windows to carry out espionage since late August. The BlueMoon exploit chain has been used against NGOs, mining and commodity firms, U.S. aerospace companies, and organizations in Vietnam, Indonesia, and Singapore. #TA412 #VioletTyphoon #APT31 #BlueMoon #CVE-2026-85046 #CVE-2026-87491 #CVE-2026-85880 #UNK_LateNight #UNK_DoubleCheck #UNK_QuietRacket
www.hendryadrian.com
September 10, 2026 at 1:00 AM
Those groups, called #LinenTyphoon and #VioletTyphoon, were ones that Microsoft said it had been tracking for years, & which it said had been targeting orgs & personnel related to govt, defense, human rights, higher education, media, & financial & health services in U.S., Europe and East Asia.
July 23, 2025 at 12:46 PM
⚠️重大⚠️警告⚠️
Microsoft「SharePointをオンプレミスで使用している場合は侵害されたと考えて。中国から世界規模の大規模なサイバー攻撃」
#LinenTyphoon #VioletTyphoon #Storm2603

詳細を解説。ご視聴はこちら👇
youtu.be/H1gNpN60wRw

⚠️Serious⚠️Warning⚠️
Microsoft: "If you're using SharePoint on-premise, assume you've been breached. Large-scale global cyber attack from China"
【!重大!警告!】Microsoft「SharePointをオンプレミスで使用している場合は侵害されたと考えて。中国から世界規模の大規模なサイバー攻撃」
YouTube video by 情報の灯台【パソコン】ソース有り
youtu.be
July 23, 2025 at 6:44 AM
… #China ist immer noch ein kommunistischer Staat!!! …Drei chinesische Gruppen als Angreifer auf #Sharepoint -Server identifiziert #IT #ITSecurity #Microsoft #Toolshell #LinenTyphoon #VioletTyphoon
heise.de/-10496598
Drei chinesische Gruppen als Angreifer auf Sharepoint-Server identifiziert
Eine Analyse von Microsoft nennt drei verschiedene Gruppen aus China als Angreifer auf die jüngste Sharepoint-Lücke. Dabei dürfte es aber nicht bleiben.
heise.de
July 23, 2025 at 5:27 AM