Your World, Fully Explored.
Published loading...Updated

US Local Governments Targeted by Chinese Hackers

  • Chinese-Speaking hackers exploited a high-severity vulnerability in Trimble's Cityworks software to breach US local government networks starting January 2025.
  • The vulnerability CVE-2025-0994, tracked by CISA and Cisco Talos as a remote code execution flaw in Microsoft IIS servers, enabled attackers to deploy malware and gain administrative access.
  • Attackers, identified as UAT-6382, used tools like Cobalt Strike, VShell, and malicious web shells to maintain long-term access and target systems related to utilities management.
  • Trimble released patches in early February 2025, and advisory agencies urged immediate updates to mitigate risks to water, wastewater, energy, and critical infrastructure sectors.
  • These intrusions highlight a shift to targeting critical infrastructure by Chinese threat actors, prompting increased cooperation between the National Guard, private utilities, and federal agencies to improve defenses.
Insights by Ground AI
Does this summary seem wrong?

14 Articles

All
Left
Center
4
Right
Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center
Factuality

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in on Thursday, May 22, 2025.
Sources are mostly out of (0)