Chinese hackers used Brickworm malware to breach US critical infrastructure



  • Chinese State-Sponsored Actors Deploy Brickworm Malware to Infiltrate Government and IT Networks Worldwide
  • The malware targets VMware vSphere and Windows, allowing persistence, file manipulation, and Active Directory compromise.
  • CISA warns of long-term espionage and sabotage risks; China denies accusations and calls the United States a “cyber bully”

Chinese state-sponsored threat actors have been using Brickworm malware against government organizations around the world, maintaining access, extracting files, and eavesdropping.

This is stated in a joint report published by the US Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA) and the Canadian Cyber ​​Security Centre. The report describes how the malware operates based on the analysis of eight samples obtained from victims’ networks.



Leave a Comment

Your email address will not be published. Required fields are marked *