Deed RAT
-
China-linked hackers hit Azerbaijani energy firm in repeated Exchange intrusions
A China-linked group targeted an Azerbaijani oil and gas firm in three waves between late December 2025 and late February 2026, repeatedly using the same Exchange Server entry point and swapping backdoors, according to a Bitdefender analysis.
-
China-linked Salt Typhoon exploited Citrix to target European telecom, Darktrace says
Security firm Darktrace reported that a European telecommunications organisation was targeted in July 2025 by a China-linked group known as Salt Typhoon, which exploited a Citrix NetScaler Gateway to gain access and deployed Snappybee via DLL side-loading; the activity was detected and remediated and the victim was not named.


