
CyberWire Daily Chinese hackers serve up espionage.
23 snips
Oct 8, 2025 Sean Deuby, Principal Technologist at Semperis and host of the HIP podcast, delves into identity system security and the evolution of the Hybrid Identity Protection conference. He discusses the alarming rise of cyber incidents, like Chinese hackers targeting a major U.S. law firm, and emphasizes the importance of crisis preparedness within organizations. Deuby also highlights how real-life exercises can reveal security vulnerabilities and the crucial role of cyber psychology in combating phishing threats.
AI Snips
Chapters
Transcript
Episode notes
Law Firms Are High-Value Espionage Targets
- Chinese espionage campaigns are targeting major U.S. law and tech firms to gather national security and trade intelligence.
- Williams & Connolly detected intrusions via a zero-day and engaged CrowdStrike and outside counsel to contain the breach.
Russia's Hybrid Campaign Demands Unified Defense
- EU leadership says Russia conducts a hybrid campaign mixing cyberattacks, sabotage, and provocations across member states.
- Ursula von der Leyen urged unity, deterrence, and a pan-European rapid cyber response strategy with NATO.
UEFI Malware Escalates Persistence Risks
- Researchers found Lojax, malware that implants into UEFI firmware to survive OS reinstalls and drive replacements.
- ESET links it to Fancy Bear, and remediation may require re-flashing firmware or replacing motherboards.
