Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2980 articles · 162894 vulns · 38/41 feeds (7d)
← Back to list
EST
PRE-CVEEXPLOITED

China-Nexus Threat Actor UNC6508 Targets Medical and Research Institutions

56% confidence

Description

A sophisticated campaign attributed to UNC6508, a China-nexus threat actor, has targeted North American academic, medical, and military research institutions. The actor exploited externally facing REDCap servers, deployed custom malware (INFINITERED), and used domain content compliance rule manipulation for data exfiltration. The campaign focused on stealing sensitive defense, AI, cyber, and medical research data.

Related News (1 articles)

Tier C
Mandiant Blog4h ago
Public and Private Medical Community Targeted by China-Nexus Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research
→ No new info (linked only)
CISA KEV❌ No
Actively exploited✅ Yes
PublishedJun 15, 2026
Last enriched2h ago
Tags
unc6508china-nexusmedical researchdata exfiltrationredcap
Trending Score39
Source articles1
Independent1
Info Completeness2/14
Missing: cve_id, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: reported
Confidence: 56%

Vulnerability Timeline

CVE Published
Jun 15, 2026
Actively Exploited
Jun 15, 2026
Discovered by ZDM
Jun 15, 2026