Suspected Chinese-Speaking Hackers Target Central Asian Governments With OctLurk and SilkLurk
2026-07-31T19:23:59Z•aad02ca02442adf9743579bf51df5c88e2bcf9f92aca7e796473d3f66667c6ef
CVE-2026-20316CVE-2026-59309CVE-2026-59726CVE-2026-660665GAI-securityAndroidAzure-Cosmos-DBBYOVDChinese-threat-actorsChromeNorth-KoreaOAuth-device-code-phishingRussian-threat-actorscloud-securitymacOSmalwarenpmoperational-technologyphishingransomwareremote-access-trojanstate-sponsored-activitysupply-chain-compromisetelecom-securitythreat-intelligencevulnerabilitieswater-systemszero-day
What happened
The feed reports a broad set of cybersecurity developments, including state-linked and criminal campaigns, malware delivery, phishing, supply-chain compromise, cloud and virtualization vulnerabilities, telecom flaws, and attacks against operational technology. Several entries describe actively exploited or maximum-severity vulnerabilities, including Cisco FMC (CVE-2026-20316), Ruby on Rails Active Storage (CVE-2026-66066), Ruflo (CVE-2026-59726), and VMware products (including CVE-2026-59309).
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- aad02ca02442adf9743579bf51df5c88e2bcf9f92aca7e796473d3f66667c6ef
- Enrichment time
- 2026-07-31T19:23:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.