Data breach at mysterious Chinese firm reveals state-owned cyber weapons and even a list of targets

  • 12,000+ classified docs reveal deep links between Knownsec and Chinese state cyber operations
  • The breach involved Remote Access Trojans capable of attacking global operating systems
  • Researchers found 95GB of immigration data stolen from India’s national databases

A recent data breach at Chinese security firm Knownsec has revealed over 12,000 classified files tied to state-owned cyber operations.

The leaked materials reportedly include details on “cyber weapons,” internal AI tools, and an extensive list of international targets.

The incident has not only exposed technical data but also shown how deeply a private company can be embedded in national cyber programs.

Leak reveals China’s targets

Despite swift takedown efforts on GitHub, where some files briefly appeared, the contents have already circulated among researchers and intelligence analysts.

The documents appear to offer a rare look into China’s cyber ecosystem, showing links between Knownsec and various government departments.

The leaked files outline a number of global targets, naming over twenty countries and regions, including Japan, Vietnam, India, Indonesia, Nigeria, and the UK.

Among the most concerning revelations are spreadsheets that reportedly detail attacks on 80 foreign targets, including critical infrastructure and telecommunications companies.

Data attributed to these breaches includes 95GB of immigration records from India, 3TB of call logs from South Korea’s LG U Plus, and 459GB of transport data from Taiwan.

Experts examining the files have noted the presence of Remote Access Trojans (RATs) capable of compromising Linux, Windows, macOS, iOS, and Android systems.

Android malware found in the files reportedly enables the extraction of information from popular Chinese messaging apps and Telegram.

Furthermore, the documents mention hardware hacking devices used by Knownsec.

This includes a sophisticated malicious power bank capable of secretly uploading data to victims’ systems.

The findings suggest that such operations were broader and more organized than previously assumed.

Beijing has officially denied the report, with a Foreign Ministry spokesperson stating she was unaware of any Knownsec breach, reaffirming, “China firmly opposes and combats all forms of cyberattacks in accordance with the law.”

While the statement distances the government from the incident, it stops short of denying links between the state and companies engaged in cyber intelligence work.

Standard antivirus programs and firewall protections, while essential, are limited against such advanced infiltration tactics.

Standard antivirus programs and firewall protections, while essential, are limited against such advanced infiltration tactics.

Cyber experts argue organizations must adopt a more layered defense approach, which combines traditional safeguards with real-time monitoring, strict network segmentation, and the careful use of AI tools for threat detection.

Via Mrxn (originally in Chinese)

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

Read more @ TechRadar

Latest posts

Ayaneo’s first Android phone looks like a return of the Xperia Play

Retro gaming handheld manufacturer Ayaneo has finally revealed the design of its first Android phone, which has been teased since August. Fittingly, it too...

Adobe sees a bright future as AI bet pays off

Entrenching generative AI into Adobe's creative software ecosystem is paying off, according to the company's latest earnings. While its share price has fallen by...

US could demand five-year social media history from tourists before allowing entry

Tourists from Europe and other regions could be asked to provide a five-year social media history before given entry to the United States, according...

How to watch 2026 PDC World Darts Championship online: FREE live streams, schedule, seeds, Round 1 preview and draw

2026 PDC World Darts Championship runs from December 11 2025 to January 3, 2026FREE streams: Sport 1 (GER) / NBC Sports Now (US) -...

Finalize your trip to Japan with Jetpac eSIM- claim a 15% discount code valid on all Japan plans

If you’re planning your next trip to Japan, staying connected is as essential as getting on the flight. However, the stress of physical SIM...

Adobe Photoshop is now built into ChatGPT for free – and you don’t need graphic design skills to use it

Adobe Photoshop, Express, and Acrobat are now apps inside ChatGPT and are free for everyone to useThe apps come with sliders and controls inside...

Skyrim developer says it was ‘really easy’ to port the beloved RPG to Switch 2

Bethesda's Matt Carofano discusses the Switch 2 port of SkyrimTalking to Nintendo Life, he stats the porting process was "really easy"The Switch 2 port...

Spoiled Jennifer Lawrence return to Hunger Games: Sunrise on the Reaping proves we don’t deserve to have anything nice

Many of us have woken up to the news that Jennifer Lawrence and Josh Hutcherson are confirmed to return for the new Hunger Games...

The Rings of Power season 3 has officially wrapped filming, and I’ve got thoughts about when it’ll launch on Prime Video

Filming has wrapped on The Rings of Power season 3Amazon officially confirmed as much on December 10The announcement indicates a late 2026 release isn't...

The SteelSeries Arctis Nova 7 Gen 2 gaming headset dips back down to a lowest-ever UK price

I'm shocked that my new favorite gaming headset is on offer so soon after releasing, as it's now back down to a lowest ever...