US arrests Silk Typhoon hacker accused of stealing Covid research and mass email hacking


- 33-year-old man was accused of spying for the Chinese government
- FBI alleges he is part of the Silk Typhoon hacking collective
- If convicted, he might be looking at decades in jail
Italian law enforcement has arrested a 33-year-old Chinese national for allegedly spying on the United States.
Landing at Milan’s Malpensa airport on a flight from China, Zewei Xu was apprehended by local police, and according to Italian news agency ANSA, is wanted by the FBI for allegedly participating in cyber-espionage operations for China, targeting data surrounding anti-COVID vaccines that were being produced at the University of Texas back in 2020.
Citing “interior ministry documents”, ANSA said Xu is accused of being part of Hafnium, an infamous state-sponsored threat actor also known as Silk Typhoon. With this group, Xu allegedly “targeted thousands of computers around the world” to get information on “various US government policies.”
Typhoons against critical infrastructure
There will be a hearing early next week, at Milan’s Court of Appeals, to determine whether or not Xu will be extradited to the United States.
While his family claims he is an IT manager at Shanghai GTA Semi Conductor, where he develops IT systems and network infrastructure, American authorities accuse Xu of wire fraud and aggravated identity theft.
If convicted, Xu is looking at a maximum punishment of 20 years in prison, as well as an additional five years for unauthorized access to protected computers.
Silk Typhoon is one of many “typhoon” groups (Flax Typhoon, Silk Typhoon, and others), all of which are apparently state-sponsored and engaged in various forms of cybercriminal activity.
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
Critical infrastructure firms, government organizations, telecommunications companies, and similar, are the typhoons’ most common targets.
In mid-April 2025, amid a serious escalation of hostilities between the US and China, senior Chinese officials apparently acknowledged behind closed doors that Beijing was involved in a series of cyberattacks on US critical infrastructure, conducted by Volt Typhoon.
This group was infiltrating US critical infrastructure systems for years, including compromising energy, communications, transportation, and water industries.
Via BleepingComputer
You might also like
33-year-old man was accused of spying for the Chinese government FBI alleges he is part of the Silk Typhoon hacking collective If convicted, he might be looking at decades in jail Italian law enforcement has arrested a 33-year-old Chinese national for allegedly spying on the United States. Landing at Milan’s…
Recent Posts
- Samsung Galaxy Unpacked 2025 live – the new Z Fold 7, Z Flip 7 and Galaxy Watch 8 are here
- OpenAI’s open language model is imminent
- 19 Best Prime Day Coffee Maker Deals on Machines, Grinders, and More
- Samsung Galaxy Unpacked 2025: the 7 biggest announcements
- Dangerous Android malware targets US banking apps – 50,000 people already affected, make sure you’re not next
Archives
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022