A recent report details a series of cyber espionage activities by China-linked threat actors targeting cybersecurity company SentinelOne and over 70 organizations across sectors from July 2024 through March 2025. Researchers identified a threat cluster called PurpleHaze, which overlaps with known Chinese groups APT15 and UNC5174. Victims include a South Asian government entity and various industries such as manufacturing and finance. The reconnaissance efforts were aimed at evaluating internet-facing servers, suggesting potential preparation for future attacks.
Security researchers Aleksandar Milenkoski and Tom Hegel reported that a series of cyber intrusions targeting SentinelOne and various sectors demonstrates ongoing risk from state-sponsored groups.
The malicious activity attributed to China-nexus threat actors, particularly a group known as PurpleHaze, reflects the increasing cybersecurity threats to multiple industries.
Collection
[
|
...
]