A Beijing-linked cyberespionage group spent more than a year infiltrating research institutions across North America before being detected, according to a new report from Google.
In a report published on June 15, the Google Threat Intelligence Group said the hacking campaign, which ran from September 2023 through November 2025, primarily targeted academic, medical, and military research organizations in the United States and Canada.
According to the report, the attackers sought information from medical research to defense intelligence, military strategy in the Indo-Pacific, artificial intelligence, unmanned vehicles, and cyber warfare.
The hacker group, which Google tracks as UNC6508, is believed to have been active since at least 2023. Google’s cybersecurity experts began monitoring the threat actor in early 2025 and referenced it in a report released in February….