SentinelOne alvo de campanha de espionagem chinesa investigando clientes e infraestrutura

Chines and North Korean state-sponsored actors are trying really hard to wiggle their way into SentinelOne and its high-value clients.


  • North Korean and Chinese state-sponsored actors targeting SentinelOne and its clients
  • Threat actors using fake job applications to gain access to confidential information
  • PurpleHaze group identified as conducting cyber-espionage against high-value organizations
  • Importance of robust cybersecurity measures in defending against sophisticated state-sponsored attacks

  • SENTINELONE TARGETED BY CHINESE ESPIONAGE CAMPAIGN PROBING CUSTOMERS AND INFRASTRUCTURE

    Recent analysis has revealed that both Chinese and North Korean state-sponsored threat actors have been targeting SentinelOne and its clients. SentinelOne is a cybersecurity company that provides autonomous endpoint protection using artificial intelligence (AI) and machine learning (ML). Some of their high-value clients include Fortune 10 and Global 2000 enterprises, government agencies, and managed service providers, across various industries such as Amazon, Samsung, and Bloomberg.

    In a detailed article titled “Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries”, authors Tom Hegel, Aleksandar Milenkoski, and Jim Walter explain that cybercriminals from North Korea have been attempting to infiltrate the company through job applications. At the same time, Chinese actors have been conducting cyber-espionage not only against SentinelOne but also its high-value clients. The threat actors are identified as PurpleHaze, with a history of targeting organizations and government-supporting entities in South Asia.


    Artigo Original