×
GreekEnglish

×
  • Politics
  • Diaspora
  • World
  • Lifestyle
  • Travel
  • Culture
  • Sports
  • Cooking
Tuesday
24
Mar 2026
weather symbol
Athens 13°C
  • Home
  • Politics
  • Economy
  • World
  • Diaspora
  • Lifestyle
  • Travel
  • Culture
  • Sports
  • Mediterranean Cooking
  • Weather
Contact follow Protothema:
Powered by Cloudevo
> World

Microsoft says China installed malware in US systems in Guam

Custom tools help them set up a command and control channel through a proxy that keeps their info secret

Newsroom May 25 03:29

China may have conducted digital espionage against the US’ Pacific interests. Microsoft and the National Security Agency (NSA) have revealed that an alleged state-sponsored Chinese hacking group, Volt Typhoon, installed surveillance malware in “critical” systems on the island of Guam and elsewhere in the US.

The group has been operating since mid-2021 and reportedly compromised government organizations as well as communications, manufacturing, education and other sectors.

Volt Typhoon prioritizes stealth, according to the investigators. It uses “living off the land” techniques that rely on resources already present in the operating system, as well as direct “hands-on-keyboard” action.

They use the command line to scrape credentials and other data, archive the info and use it to stay in targeted systems.

See Also:

“I didn’t think I’d ever work again”: Jeff Bridges gives fans update on cancer battle

They also try to mask their activity by sending data traffic through small and home office network hardware they control, such as routers.

>Related articles

US commission calls for Turkey to be placed on “special watch list” for religious freedoms

Aircraft collision with fire truck at LaGuardia: Audio records controllers’ conversation after crash with 2 dead

The U.S. aircraft carrier “USS Gerald R. Ford” arrives in Souda today

Custom tools help them set up a command and control channel through a proxy that keeps their info secret.

The malware hasn’t been used for attacks, but the web shell-based approach could be used to damage infrastructure. Microsoft and the NSA are publishing info that could help potential victims detect and remove Volt Typhoon’s work, but they warn that fending off intrusions could be “challenging” as it requires either closing or changing affected accounts.

Read more: Engadget

Ask me anything

Explore related questions

#china#Cyber attacks#espionage#Guam#malware#spying#usa
> More World

Follow en.protothema.gr on Google News and be the first to know all the news

See all the latest News from Greece and the World, the moment they happen, at en.protothema.gr

> Latest Stories

“Pete said let’s do it”: Trump pointed to Hegseth for the attack on Iran, and the Secretary of War smiled awkwardly

March 24, 2026

Who is Mohammad Zolqadr, the hardline former commander of the Revolutionary Guards and successor to Larijani

March 24, 2026

Christodoulides to Androulakis: “For the first time, solidarity in action, Cyprus is not part of the crisis”

March 24, 2026

Stoiximan Super League: The playoff schedule for determining the champion

March 24, 2026

Dendias: We are strengthening Greece’s deterrent power and radically reforming the Armed Forces

March 24, 2026

Lawsuit filed against Tsagkarakis over forged Mytaras painting, complaints against him continue

March 24, 2026

Three new cases of foot-and-mouth disease in Lesbos bring the total to five

March 24, 2026

March 25th: Student parade in the rain in central Athens, which politicians are present, see photos and video

March 24, 2026
All News

> World

“Pete said let’s do it”: Trump pointed to Hegseth for the attack on Iran, and the Secretary of War smiled awkwardly

The American president revealed behind-the-scenes details of meetings with top military officials regarding military action in the Middle East

March 24, 2026

Who is Mohammad Zolqadr, the hardline former commander of the Revolutionary Guards and successor to Larijani

March 24, 2026

Iran’s bombardment of Tel Aviv, Mojtaba Khamenei who wants “to close the issue soon,” and Trump’s goal to end the war on April 9 (Update)

March 24, 2026

Zelensky: Russia is preparing a barrage of strikes against Ukraine, it’s a matter of hours

March 23, 2026

Terrifying Moment of Air Canada Express plane colliding with fire truck at LaGuardia Airport (video)

March 23, 2026
Homepage
PERSONAL DATA PROTECTION POLICY COOKIES POLICY TERM OF USE
Powered by Cloudevo
Copyright © 2026 Πρώτο Θέμα