The reconnaissance operation against SentinelOne, an American cybersecurity company, was a component of a larger series of partially connected intrusions into multiple targets from July 2024 to March 2025.
According to a report released today by SentinelOne security researchers Aleksandar Milenkoski and Tom Hegel, the victimology comprises over 70 firms from a variety of industries, a South Asian government agency, and a European media outlet.
Manufacturing, government, banking, telecommunications, and research are a few of the industries that are attacked. An IT services and logistics firm that was in charge of handling hardware logistics for SentinelOne staff members at the time of the breach in early 2025 was also among the victims.
Because some of the attacks are linked to a threat cluster called PurpleHaze, which overlaps with Chinese cyber espionage groups that have been publicly exposed as APT15 and UNC5174, the harmful behavior has been highly confidently attributed read more about Over 70 Organizations Across Multiple Sectors Targeted by China-Linked Cyber Espionage Group.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
