Suspected Chinese-Speaking Hackers Target Central Asian Governments With OctLurk and SilkLurk

2026-07-31T19:23:59Zaad02ca02442adf9743579bf51df5c88e2bcf9f92aca7e796473d3f66667c6ef
CVE-2026-20316CVE-2026-59309CVE-2026-59726CVE-2026-660665GAI-securityAndroidAzure-Cosmos-DBBYOVDChinese-threat-actorsChromeNorth-KoreaOAuth-device-code-phishingRussian-threat-actorscloud-securitymacOSmalwarenpmoperational-technologyphishingransomwareremote-access-trojanstate-sponsored-activitysupply-chain-compromisetelecom-securitythreat-intelligencevulnerabilitieswater-systemszero-day

What happened

The feed reports a broad set of cybersecurity developments, including state-linked and criminal campaigns, malware delivery, phishing, supply-chain compromise, cloud and virtualization vulnerabilities, telecom flaws, and attacks against operational technology. Several entries describe actively exploited or maximum-severity vulnerabilities, including Cisco FMC (CVE-2026-20316), Ruby on Rails Active Storage (CVE-2026-66066), Ruflo (CVE-2026-59726), and VMware products (including CVE-2026-59309).

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
aad02ca02442adf9743579bf51df5c88e2bcf9f92aca7e796473d3f66667c6ef
Enrichment time
2026-07-31T19:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.