#APT40
Full coverage: www.technadu.com/australian-c...

Do you think Australian enterprises are adequately equipped to handle the growing sophistication of state-sponsored cyber operations?
Let’s discuss.
#CyberSecurity #Australia #APT40 #ACSC #ASD #CyberThreatReport #InfoSec #TechNadu
Australian Cyber Threat Report: 11% Increase in Incident Rate, State-Sponsored Actors Continue to Be a Threat
The 2024-2025 Australian Cyber Threat Report reveals a significant increase in cybersecurity incidents and costs, driven by cybercrime and state-sponsored actors.
www.technadu.com
October 14, 2025 at 11:45 AM
Australia’s cyber threat landscape worsens
📈 11% more incidents
💰 219% surge in large business losses
🎯 APT40, BianLian, and Evil Corp remain active threats

#CyberSecurity #APT40 #Australia #ThreatIntel #TechNadu
October 14, 2025 at 11:45 AM
LABScon24 Replay | A Walking Red Flag (With Yellow Stars) | APT40 used CTFs at Hainan University to recruit hackers and source software vulnerabilities for operations. www.sentinelone.com/labs/labscon... @sentinellabs.bsky.social
LABScon24 Replay | A Walking Red Flag (With Yellow Stars)
Dakota Cary and Eugenio Benincasa explore China's CTF ecosystem, highlighting competitions held by the Ministry of State Security and the PLA.
www.sentinelone.com
April 1, 2025 at 12:25 PM
All that work building our CCT diplomatic footprint in the Pacific continuing to pay off.

From the Samoans referring to ACSC's APT40 advisory in their own one, to this.

And this expression of solidarity from 🇻🇺 is great for signalling-->norm-reinforcing.
digital.gov.vu/index.php/en...
Vanuatu Stands in Solidarity with Australia in Sanctioning Cybercriminals
Department, Government, Vanuatu, Information, Officer, DCDT, Digitial, Transformation, Communications, ICT
digital.gov.vu
February 21, 2025 at 12:44 AM
repeated state interference from the PRC, with the Samoan Government most recently reporting cyberattacks by a PRC-affiliated APT (APT40) against Government targets and the Samoan delegation to the Pacific Islands Forum. If the U.S., Australia, and New Zealand want to prevent a new surprise 7/8
February 18, 2025 at 2:19 AM
SamCERT warns of APT40, a Chinese state-sponsored group targeting Samoa & Blue Pacific. APT40 uses advanced techniques (fileless malware etc.). Implement threat hunting, patching, scans & updated incident response plans immediately.#SamoaCyberThreat
February 12, 2025 at 2:07 PM
APT40 - SamCERT Cyber Threat Advisory - outlines activity Samo detected
APT40 - SamCERT Cyber Threat Advisory - outlines activity Samo detected
www.samcert.gov.ws
February 12, 2025 at 11:54 AM
Samoa’s National Computer Emergency Response Team has deemed Chinese “state-sponsored” cyber group APT40 a “serious threat” to Pacific nations. | www.abc.net.au/news/2025-02... @abcnewsnetau.bsky.social
Chinese hacking group blamed for cyber attacks on Samoa
Samoa's government has blamed a Chinese state-backed hacking group for a series of sophisticated cyber attacks, saying it has been conducting "malicious cyber operations" across the Pacific.
www.abc.net.au
February 12, 2025 at 11:08 AM
China-backed APT40 hacking group blamed for cyber attacks on Samoa www.abc.net.au/news/2025-02... via @ABCaustralia
Chinese hacking group blamed for cyber attacks on Samoa
Samoa's government has blamed a Chinese state-backed hacking group for a series of sophisticated cyber attacks, saying it has been conducting "malicious cyber operations" across the Pacific.
www.abc.net.au
February 12, 2025 at 7:30 AM
In particular, Australia plays a vital role in the Pacific as a provider of such capacity-building because malicious actors like APT40 tend to gain initial access to victim networks through deficiencies in basic cyber resilience hygiene ...
February 12, 2025 at 4:30 AM
Indeed, SamCERT’s advisory provides a hyperlink to the APT40 advisory which was authored by several cyber security agencies including those from the Five Eyes countries, and which refers to APT40 as sponsored by the Chinese state.
February 12, 2025 at 4:30 AM
The attribution by Samoa to APT40 is significant, given the backdrop of the country’s deepening relationship with the PRC in recent years.
February 12, 2025 at 4:30 AM
Samoa's National Computer Emergency Response Team deemed Chinese "state-sponsored" cyber group APT40 a "serious threat" to Pacific nations. ASPI analyst @blake-j-johnson.bsky.social says Samoa's attribution could encourage other Pacific nations to make similar moves. www.abc.net.au/news/2025-02...
Chinese hacking group blamed for cyber attacks on Samoa
Samoa's government has blamed a Chinese state-backed hacking group for a series of sophisticated cyber attacks, saying it has been conducting "malicious cyber operations" across the Pacific.
www.abc.net.au
February 12, 2025 at 3:55 AM
Reading through an APT40 report from ASD/CISA/et al, I found this snippet on uploading samples to VT very interesting. If there was a real desire to make samples available for community defense research, why pick an increasingly expensive gated portal and not something actually community oriented?
January 21, 2025 at 8:34 PM
APT40 sub-group 'Salt Typhoon'

en.wikipedia.org/wiki/Salt_Ty...
Salt Typhoon - Wikipedia
en.wikipedia.org
December 10, 2024 at 12:01 AM
APT40 - Wikipedia
en.wikipedia.org
December 10, 2024 at 12:00 AM
Xina's 'Salt Typhoon' hacking group, affiliated with Xinese Advanced Persistent Threat 40 (APT40) entity.

en.wikipedia.org/wiki/Advance...
Advanced persistent threat - Wikipedia
en.wikipedia.org
December 10, 2024 at 12:00 AM
(仮訳)APT40 Advisory PRC MSS Tradecraft in action
www.nisc.go.jp/pdf/policy/k...
www.nisc.go.jp
July 17, 2024 at 5:54 PM
CISA 中華人民共和国(PRC) 国家保安省 APT40 の攻撃手法の公表
このアドバイザリーでは、APT40 の攻撃手法と現在の脅威について国際共同機関の共有する脅威の理解と、ASD の ACSC によるインシデント対応調査に基づいて説明しています。
qualias.net/peoples-repu...
CISA 中華人民共和国(PRC) 国家保安省 APT40 の攻撃手法の公表 | 二本松 哲也
このアドバイザリーでは、中国人民解放軍(PRC)による国家支援のサイバーグループと、そのオーストラリアのネット
qualias.net
July 16, 2024 at 7:37 AM
河野太郎 ブログ - APT40について
7月9日、8か国(オーストラリア、日本、アメリカ、イギリス、カナダ、ニュージーランド、ドイツ、韓国)が共同署名したAPT40に関する国際解説文書が公表されました。この文書では、APT40の攻撃手法、検知手法、緩和策を説明し、ログの保存、パッチの適用、ネットワークの分離などの対応策を提言しています。
重要インフラへのサイバー攻撃が増加しているため、事業者にはシステムのアップデートを強く推奨しています。有識者も企業での脆弱性対応の重要性を指摘しており、JPCERTやIPA、アメリカのKEVカタログからの情報を基に、定期的なパッチ適用を促しています。
APT40について - 河野太郎(コウノタロウ) | 選挙ドットコム
7月9日に、オーストラリアのサイバーセキュリティ当局のサイバーセキュリティセンター(ACSC)が主導して作成したAPT40と呼ばれるサイバー攻撃グループに関する国際解説文書を、8か国、オーストラリア、日本、アメリカ、イギリス、カナダ、ニュージーランド、ドイツ、韓国のサイバーセキュリティに関する機関が共同署名して公表いたしました。具体的にこのAPT40というサイバー攻撃グループによる過去のオ...
go2senkyo.com
July 16, 2024 at 1:32 AM