Key point: State-sponsored cyber actors from China and North Korea are intensifying attacks on technology companies targeting data acquisition, industrial espionage and extortion.
Technology companies are increasingly targeted by deliberate cyberattacks from state-sponsored actors originating from China and North Korea. In addition to information gathering and industrial espionage, attackers are also advancing big-game hunting activities to achieve significant financial gains.
Technology companies are increasingly in the sights of state-sponsored cyber actors and cybercriminals. The attackers originate particularly from China and North Korea and implement multiple attack scenarios: information gathering and industrial espionage are among the classic motivations, supplemented by big-game hunting activities in which targeted extortions and ransomware campaigns are deployed for substantial financial gains.
For CISOs, this means a multi-layered threat landscape. It is no longer sufficient to protect only against data theft – in parallel, defensive measures against encryption attacks and extortion attempts must be built and continuously updated. The state support behind these actors indicates advanced techniques, resource availability and sustained persistence in attack sequences.
Enhanced network segmentation, continuous threat hunting, expanded incident response capabilities and regular red team exercises with a focus on critical systems are necessary. Organizations should also harden their backup and recovery infrastructure and keep backup systems isolated from the production network.
Source: www.security-insider.de · Published 10 July 2026
Lumi AI News — AI-assisted curation in accordance with Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.