UNC6201
MISP
Tipo:
Unknown
Unknown
Paese:
CN
CN
Prima attivita:
Unknown
Unknown
Dettagli:
UNC6201 is a sophisticated Chinese state-sponsored hacking group that exploited CVE-2026–22769, a critical vulnerability in Dell RecoverPoint for Virtual Machines appliances, to establish a persistent presence. They deployed a permanent backdoor using techniques like Single Packet Authorization and "Port Knocking." Unlike typical hackers who conceal their activities within the Operating System, UNC6201 operated at the Virtualization Layer to avoid detection.
Riferimenti (1)
Metadata
| ID: | 1019 |
| Created: | 07/03/2026 16:00 |
| Updated: | 09/03/2026 16:00 |