Multiple Chinese 🇨🇳 nation-state APT groups have gained initial access to critical infrastructure networks through SAP NetWeaver intrusions, aiming to conduct cyber-enabled espionage and maintain persistent remote access.
https://blog.eclecticiq.com/china-nexus-nation-state-actors-exploit-sap-netweaver-cve-2025-31324-to-target-critical-infrastructures
https://blog.eclecticiq.com/china-nexus-nation-state-actors-exploit-sap-netweaver-cve-2025-31324-to-target-critical-infrastructures
Eclecticiq
China-Nexus Nation State Actors Exploit SAP NetWeaver (CVE-2025-31324) to Target Critical Infrastructures
EclecticIQ analysts assess with high confidence that, in April 2025, China-nexus nation-state APTs (advanced persistent threat) launched high-temp exploitation campaigns against critical infrastructure networks by targeting SAP NetWeaver Visual Composer.
CrowdStrike 2025 Threat Hunting Report.pdf
9.3 MB
CrowdStrike 2025 Threat Hunting Report