CyberSecurity News
China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor
AI summary
A China-linked hacking group exploited a vulnerability in the Sogou Input Method tool to deploy a backdoor on victim computers. The attack began with a malicious link and ultimately granted the attacker the same level of access as the logged-in user. The Sogou Input Method is a widely used tool for typing Chinese characters on Windows systems. The vulnerability was exploited by the UNC3569 group to install a backdoor known as GRAYRABBIT. The attack was uncovered by security company Gen Digital, which published its research on the incident. Tencent, the owner of Sogou, is reportedly aware of the issue.
Countries in focus
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

