Chinese hackers used Brickworm malware to hack critical infrastructure in the United States.


  • Chinese state-sponsored actors deploy Brickworm malware to infiltrate government and IT networks around the world
  • Malware targets VMware vSphere and Windows, enabling persistence, file manipulation and Active Directory compromise
  • CISA warns of long-term risks of espionage and sabotage; China denies accusations, calling US a ‘cyber bully’

Chinese state-sponsored threat actors are using Brickworm malware against government organizations around the world, maintaining access, exfiltrating files, and carrying out eavesdropping.

This is according to a joint report published by the Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA) and the Canadian Center for Cyber ​​Security. The report describes how the malware works based on the analysis of eight samples obtained from victim networks.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top