CVE-2023-49105high
Philippine Nuclear and Naval Targets Hit by Suspected Chinese Operator
A suspected Chinese-speaking cyber operator has targeted Philippine nuclear and naval entities by exploiting known vulnerabilities in ownCloud and WordPress systems. The actor successfully exfiltrated sensitive data, including nuclear reactor information and personnel records, from a nuclear research body and a marine engineering company supporting the Philippine Navy. The intrusions were discovered after an exposed server containing attack tools and stolen data was found.