{"id":821,"date":"2025-10-14T19:49:33","date_gmt":"2025-10-14T17:49:33","guid":{"rendered":"https:\/\/familiebuckens.nl\/?p=821"},"modified":"2025-10-14T19:49:33","modified_gmt":"2025-10-14T17:49:33","slug":"chinese-hackers-exploit-arcgis-server-as-backdoor-for-over-a-year","status":"publish","type":"post","link":"https:\/\/familiebuckens.nl\/index.php\/2025\/10\/14\/chinese-hackers-exploit-arcgis-server-as-backdoor-for-over-a-year\/","title":{"rendered":"Chinese Hackers Exploit ArcGIS Server as Backdoor for Over a Year"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Threat actors with ties to China have been attributed to a novel campaign that compromised an&nbsp;<a href=\"https:\/\/www.arcgis.com\/index.html\" rel=\"noreferrer noopener\" target=\"_blank\">ArcGIS<\/a>&nbsp;system and turned it into a backdoor for more than a year.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The activity, per ReliaQuest, is the handiwork of a Chinese state-sponsored hacking group called&nbsp;<strong><a href=\"https:\/\/thehackernews.com\/2023\/08\/china-linked-flax-typhoon-cyber.html\" rel=\"noreferrer noopener\" target=\"_blank\">Flax Typhoon<\/a><\/strong>, which is also tracked as Ethereal Panda and RedJuliett. According to the U.S. government, it&#8217;s&nbsp;<a href=\"https:\/\/thehackernews.com\/2024\/09\/new-raptor-train-iot-botnet-compromises.html\" rel=\"noreferrer noopener\" target=\"_blank\">assessed<\/a>&nbsp;to be a publicly-traded, Beijing-based company known as Integrity Technology Group.<\/p>\n\n\n<a class=\"wp-block-read-more\" href=\"https:\/\/familiebuckens.nl\/index.php\/2025\/10\/14\/chinese-hackers-exploit-arcgis-server-as-backdoor-for-over-a-year\/\" target=\"_self\"><a href=\"https:\/\/thehackernews.com\/2025\/10\/chinese-hackers-exploit-arcgis-server.html\">Chinese Hackers Exploit ArcGIS Server as Backdoor for Over a Year<\/a><span class=\"screen-reader-text\">: Chinese Hackers Exploit ArcGIS Server as Backdoor for Over a Year<\/span><\/a>","protected":false},"excerpt":{"rendered":"<p>Threat actors with ties to China have been attributed to a novel campaign that compromised an&nbsp;ArcGIS&nbsp;system and turned it into a backdoor for more than a year. The activity, per ReliaQuest, is the handiwork of a Chinese state-sponsored hacking group called&nbsp;Flax Typhoon, which is also tracked as Ethereal Panda and&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[17],"tags":[40,13],"class_list":["post-821","post","type-post","status-publish","format-standard","hentry","category-vulnerability","tag-40","tag-china"],"_links":{"self":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/821","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/comments?post=821"}],"version-history":[{"count":1,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/821\/revisions"}],"predecessor-version":[{"id":822,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/821\/revisions\/822"}],"wp:attachment":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/media?parent=821"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/categories?post=821"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/tags?post=821"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}