Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
US Offers  Million for Information on Chinese Hacker

US Offers $10 Million for Information on Chinese Hacker

Posted on October 8, 2026 By CWS

The United States has announced a substantial reward of up to $10 million for information that leads to the arrest of Zhang Yu, a Chinese hacker accused of participating in a significant cyberattack on Microsoft Exchange servers. This initiative, led by the US Department of State, aims to bring to justice those involved in the Hafnium hacking campaign.

Background on the Cyberattack

The US State Department’s Rewards for Justice program publicized the reward on Wednesday, highlighting Zhang Yu’s alleged involvement. Zhang is believed to have collaborated with Xu Zewei, who was extradited from Italy to the United States in April 2026. The indictment, which was unveiled in July 2025, details the charges against both individuals.

Zhang Yu, previously a director at Shanghai Firetech Information Science and Technology Company, reportedly worked under the Shanghai State Security Bureau, part of China’s Ministry of State Security. His partner, Xu Zewei, held a managerial position at Shanghai Powerock Network Co. Ltd. Together, they are accused of illegally accessing sensitive COVID-19 research data produced by American universities and researchers.

The Hafnium Campaign

In 2021, Zhang and Xu allegedly exploited vulnerabilities within Microsoft Exchange Servers as part of the Hafnium campaign. This cyber operation reportedly compromised thousands of systems globally, with victims including a prominent US university and law firm. Microsoft initially revealed these breaches in March 2021, identifying the responsible group as Silk Typhoon.

The Federal Bureau of Investigation confirmed that by the time of Xu’s extradition, over 12,700 US organizations had been affected by this cyber intrusion. The Hafnium campaign is notable for its scale and the sensitive nature of the targeted information, emphasizing the importance of international cybersecurity cooperation.

Implications and Future Outlook

This reward offer is part of a broader strategy by the US government to protect critical infrastructure from foreign cyber threats, particularly those violating the Computer Fraud and Abuse Act. The emphasis on foreign government involvement underscores the geopolitical dimensions of cybersecurity threats.

The ongoing efforts to apprehend Zhang Yu highlight the US’s commitment to combating international cybercrime. As the digital landscape continues to evolve, the need for robust cybersecurity measures and international collaboration becomes increasingly crucial. Stakeholders worldwide are watching closely as developments unfold in this high-profile case.

Security Week News Tags:Cyberattacks, Cybersecurity, HAFNIUM, Microsoft Exchange, Rewards for Justice, Shanghai State Security Bureau, Silk Typhoon, US Department of State, Xu Zewei, Zhang Yu

Post navigation

Previous Post: AI-Powered Breach Hits South Korean Financial Sector
Next Post: Gitea Addresses Critical Security Flaws with New Update

Related Posts

Red Hat Confirms GitLab Instance Hack, Data Theft Red Hat Confirms GitLab Instance Hack, Data Theft Security Week News
160,000 Impacted by Wayne Memorial Hospital Data Breach 160,000 Impacted by Wayne Memorial Hospital Data Breach Security Week News
Webinar Today: Scattered Spider Exposed – Critical Takeaways for Cyber Defenders Webinar Today: Scattered Spider Exposed – Critical Takeaways for Cyber Defenders Security Week News
Google Alerts on New BPO Data Theft Campaign Google Alerts on New BPO Data Theft Campaign Security Week News
Cybersecurity News: Stryker Cyberattack and More Cybersecurity News: Stryker Cyberattack and More Security Week News
Venom Stealer: Revolutionizing Cyber Threats with Persistent Credential Theft Venom Stealer: Revolutionizing Cyber Threats with Persistent Credential Theft Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Gitea Addresses Critical Security Flaws with New Update
  • US Offers $10 Million for Information on Chinese Hacker
  • AI-Powered Breach Hits South Korean Financial Sector
  • Rein Security Secures $25M to Enhance AI Runtime Protection
  • Wazza Phishkit Poses Threat to Key Sectors Globally

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2026
  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Gitea Addresses Critical Security Flaws with New Update
  • US Offers $10 Million for Information on Chinese Hacker
  • AI-Powered Breach Hits South Korean Financial Sector
  • Rein Security Secures $25M to Enhance AI Runtime Protection
  • Wazza Phishkit Poses Threat to Key Sectors Globally

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark