Page 40 - Cyber Defense eMagazine for August 2021
P. 40
Chinese Government Will Begin to Stockpile Zero-Days in
September
By Randy Reiter CEO of Don’t Be Breached
July 2021 has Been A Busy Month in Cyber Security
The Associated Press published on Tuesday, July 13, 2021 that on September 1, 2021 a new law in
China requires all Chinese citizens finding a Zero-Day Vulnerability to provide within 48 hours the details
to the Chinese government. A Chinese citizen must NOT give or sell the information to third parties
outside of China (apart from the product's manufacturer).
Other Data Breach and Ransomware July 2021 News
• Microsoft reported that a SolarWinds Serv-U Zero-Day (not related to Solarwinds December
2020 Supernova attack) was exploited by a Chinese Hacking Group. The Hackers were detected
targeting US defense industrial base organizations and software firms. The Zero-Day allows
Hackers to remotely run code with SYSTEM PRIVILEGES, allowing them to perform actions like
install and run malicious payloads, or view and CHANGE data.
Cyber Defense eMagazine – August 2021 Edition 40
Copyright © 2021, Cyber Defense Magazine. All rights reserved worldwide.

