Learn languages naturally with fresh, real content!

Popular Topics
Explore By Region
A China-linked group exploits an unpatched Windows flaw to deploy malware on European diplomatic targets, with attacks spreading to Serbia’s aviation sector.
A China-linked hacking group, UNC6384, is actively exploiting a zero-day Windows vulnerability in shortcut files to deploy the PlugX malware in targeted attacks against European diplomatic entities, including those in Belgium and Hungary.
The flaw, known as ZDI-CAN-25373, allows malicious code execution via manipulated LNK files and is being used in conjunction with DLL side-loading and obfuscated PowerShell scripts to evade detection.
The campaign, which began in September 2025, uses social engineering tactics like fake event invitations and expired trusted certificates to install persistent malware capable of data theft and remote access.
The attacks have expanded to include Serbia’s aviation sector, and the vulnerability remains unpatched as of October 31, 2025.
Security experts warn of ongoing risks to government and enterprise networks.
Un grupo vinculado a China explota una falla no corregida de Windows para desplegar malware en objetivos diplomáticos europeos, con ataques que se extienden al sector de la aviación de Serbia.