Six US states hit by China-based cyberattack

Cybersecurity firm Mandiant uncovered evidence of data exfiltration by the Chinese hacking group known as 'APT41', which targeted US state governments between May 2021 and February 2022.

The events were exploited while their networks were vulnerable to Log4Shell in Apache Log4j. While the motives of the cyberattackers could not be ascertained, the intrusions were consistent with an espionage operation.