China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE
4 Articles
4 Articles
Chinese Hackers Chained Chrome-Windows Zero-Days on NGOs
A China-linked threat actor has chained multiple software flaws to target non-governmental organizations. Security firm Volexity tracked the campaign under the name UTA0560. It observed the activity striking several NGOs on September 1, 2026. The attackers ultimately deployed a JavaScript backdoor called GRIMWEDGE. The campaign began with carefully crafted spear-phishing emails. These messages encouraged recipients […]
China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE
A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE. Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple non-governmental organizations (NGOs) on September 1, 2026. "The
Chinese Hackers Exploit Critical Tencent Software Flaw for One-Click Code Execution — OODAloop | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #hacker - National Cyber Security Consulting
Sogou input method flaw enables Chinese actor’s backdoor deployment. A critical vulnerability in Sogou Input Method allowed attackers to trigger system‑level code execution through a crafted sgbiz link that abused unvalidated parameters and an outdated, unsandboxed Chromium engine. Gen Threat Labs said the China‑linked group UNC3569 used the chain to deliver its GrayRabbit backdoor, which […] Thank you for subscribing to our RSS feed!
Coverage Details
Bias Distribution
- There is no tracked Bias information for the sources covering this story.
Factuality
To view factuality data please Upgrade to Premium








