Google Disrupts ‘Prolific, Elusive’ China-Linked Actor
Google said it has found 53 victims that have been impacted by the group, which it has tracked since 2017.
Google said it has found 53 victims that have been impacted by the group, which it has tracked since 2017.
In a parallel Tuesday announcement, the Treasury Department also sanctioned the exploit broker network that had acquired the tools.
Exploitation of CVE-2026-1281 and CVE-2026-1340 is “widespread and mostly automated," according to Unit 42 researchers.
The hardcoded credential vulnerability (CVE-2026-22769) exists in Dell RecoverPoint for Virtual Machines and has been exploited since mid-2024.
The exploited vulnerabilities in question exist across various products, from Microsoft Word to Windows Shell.
UNC3886 is a Chinese espionage group known for targeting defense, tech, and telecom organizations across both the U.S. and Asia-Pacific-Japan regions.