CISA Alert AA22-158A Peoples Republic of China state-sponsored cyber actors exploit network providers and devices. [CISA Cybersecurity Alerts]

Published: June 8, 2022, 1:45 p.m.

This joint Cybersecurity Advisory describes the ways in which People\u2019s Republic of China state-sponsored cyber actors continue to exploit publicly known vulnerabilities in order to establish a broad network of compromised global infrastructure. These actors use the network to exploit a wide variety of targets worldwide, including public and private sector organizations.\nAA22-158A Alert, Technical Details, and Mitigations\nRefer to China Cyber Threat and Advisories, Internet Crime Complaint Center, and NSA Cybersecurity Guidance for previous reporting on People\u2019s Republic of China state-sponsored malicious cyber activity.\nUS government and critical infrastructure organizations should consider signing up for CISA\u2019s cyber hygiene services, including vulnerability scanning, to help reduce exposure to threats.\nUS Defense Industrial Base organizations should consider signing up for the NSA Cybersecurity Collaboration Center\u2019s DIB Cybersecurity Service Offerings, including Protective Domain Name System (PDNS) services, vulnerability scanning, and threat intelligence collaboration. For more information on eligibility criteria and how to enroll in these services, email dib_defense@cyber.nsa.gov.\nAll organizations should report incidents and anomalous activity to CISA\u2019s 24/7 Operations Center at central@cisa.dhs.gov or (888) 282-0870 and to the FBI via your local FBI field office or the FBI\u2019s 24/7 CyWatch at (855) 292-3937 or CyWatch@fbi.gov.\nLearn more about your ad choices. Visit megaphone.fm/adchoices