UK, allies expose China-based technology companies for enabling global cyber campaign against critical networks
The UK and international allies recently publicly linked three technology companies based in China with a global malicious cyber campaign targeting critical networks.
In a new advisory published today, the National Cyber Security Centre (NCSC) – a part of GCHQ - and international partners from twelve other countries have shared technical details about how malicious cyber activities linked with these China-based commercial entities have targeted nationally significant organisations around the world.
Since at least 2021, this activity has targeted organisations in critical sectors including government, telecommunications, transportation, lodging, and military infrastructure globally, with a cluster of activity observed in the UK, read the National Cyber Security Centre website.
The activities described in the advisory partially overlap with campaigns previously reported by the cybersecurity industry, most commonly under the name Salt Typhoon.
The data stolen through this activity can ultimately provide the Chinese intelligence services the capability to identify and track targets’ communications and movements worldwide.
The advisory describes how the threat actors have had considerable success taking advantage of known common vulnerabilities rather than relying on bespoke malware or zero-day vulnerabilities to carry out their activities, meaning attacks via these vectors could have been avoided with timely patching.
Organisations of national significance in the UK are encouraged to proactively hunt for malicious activity and implement mitigative actions, including ensuring that edge devices are not exposed to known vulnerabilities and implementing security updates.
NCSC Chief Executive Dr Richard Horne said, "We are deeply concerned by the irresponsible behaviour of the named commercial entities based in China that has enabled an unrestrained campaign of malicious cyber activities on a global scale."
The three China-based technology companies provide cyber-related services to the Chinese intelligence services and are part of a wider commercial ecosystem in China, which includes information security companies, data brokers and hackers for hire.
The named entities are: Sichuan Juxinhe Network Technology Co Ltd, Beijing Huanyu Tianqiong Information Technology Co, and Sichuan Zhixin Ruijie Network Technology Co Ltd.
IBNS
Senior Staff Reporter at Northeast Herald, covering news from Tripura and Northeast India.
Related Articles

Malaysia blocks Elon Musk’s Grok after AI used to create sexualised images
Malaysia on Sunday temporarily blocked access to Grok, the generative artificial intelligence tool developed by xAI, amid global backlash over its alleged misuse to create and publish sexualised images.

544 Dead, thousands jailed: Trump says Iran wants talks as protests explode
US President Donald Trump on Sunday said Iran’s leadership has sought talks with Washington amid his warnings of possible military action in response to Tehran’s ongoing crackdown on anti-regime protesters.

US military breach? Chinese national faces charges after alleged base photography
The United States Department of Justice has filed a criminal complaint against Qilin Wu, a 35-year-old Chinese national, accusing him of unauthorised photography of a sensitive military installation in the state of Missouri, U.S. Attorney R. Matthew Price announced.

Pakistan: Afghan journalist detained in Islamabad, sparks fears of forced deportation
Pakistani police have detained an Afghan journalist in Islamabad, raising concerns over the safety of exiled reporters and the risk of possible forced deportation, according to media reports.
Latest News

Youth power key to nation’s future: CM

CM lauds TCS officers for humanitarian initiatives

Golden Globes 2026 full winners list: DiCaprio’s film, Netflix series steal the show

Malaysia blocks Elon Musk’s Grok after AI used to create sexualised images

