Chinese hackers breach exec laptops via USB | VentureBeat

https://images.ctfassets.net/jdtwqhzvc2n1/78aJqjEWEfLPylQ5hFbxNx/5baad823bfb46a5978f6a7d34b75880b/Gemini_Generated_Image_12nm5b12nm5b12nm.jpeg?w=800&q=75

A Chinese state-linked hacking group compromised executive laptops at an agricultural industry conference on Hainan Island this spring — not through phishing or a network breach, but by breaking into hotel rooms and booting the machines from a USB stick while the executives were at dinner.

CrowdStrike, which tracks the group as OVERCAST PANDA, disclosed the campaign in its 2026 Threat Hunting Report and detailed the operation's timeline in an interview with VentureBeat at Fal.Con 2026: an intruder entered one room at around 8 p.m. local time and a second room by 9:57 p.m., writing a backdoor called FlowCloud directly to each laptop's storage before rebooting the machines and leaving. There was no network intrusion, no phishing email, and no credential stolen through a login page.

The report dates the intrusions to between March and May 2026, and the timestamps come from Adam Meyers, CrowdStrike's senior vice president of...

Copyright of this story solely belongs to venturebeat.com. To see the full text click HERE

Read more