Chinese Ministry of State Security

Actor Type Nation State
Attributed to Nation China
Associated Intrusion Sets Leviathan , APT40 , APT31 , UNC5174

The Chinese Ministry of State Security (MSS) has been linked by CISA and other agencies to multiple cyber APTs (Advanced Persistent Threats). CISA state that MSS-affiliated groups have use open-source information in the planning and conduct of operations and exploit vulnerabilities to gain access to victim networks.

Cyber Threat Graph Context

Explore how this cyber threat actor relates to the wider threat graph

Chinese Ministry of State Security Threat Reports

Report

APT40 Advisory - PRC MSS tradecraft in action

This advisory, authored by the Australian Cyber Security Centre and multiple other international cybersecurity agencies, outlines the threat posed ...

Report

Bringing Access Back — Initial Access Brokers Exploit F5 BIG-IP (CVE-2023-46747) and ScreenConnect

This blog post by researchers at Mandiant describes how the threat actor UNC5174 exploited vulnerabilities in F5 BIG-IP appliances and Connectwise ...

Report

RedHotel: A Prolific, Chinese State-Sponsored Group Operating at a Global Scale

This report from Recorded Future's Insikt Group outlines activity by the Red Hotel intrusion set. RedHotel is identified as a prominent Chinese ...

References