Welcome, Guest: Register On Nairaland / LOGIN! / Trending / Recent / New
Stats: 3,154,052 members, 7,821,625 topics. Date: Wednesday, 08 May 2024 at 03:58 PM

China Behind Another Hack As U.S. Cybersecurity Issues Mount - Foreign Affairs - Nairaland

Nairaland Forum / Nairaland / General / Politics / Foreign Affairs / China Behind Another Hack As U.S. Cybersecurity Issues Mount (306 Views)

The Top Candidates To Replace Boris Johnson As U.K. Prime Minister / William Barr Resigns As U.S Attorney General / Rockets Fall Near US Embassy In Baghdad Injuring Five As World War 3 Fears Mount (2) (3) (4)

(1) (Reply)

China Behind Another Hack As U.S. Cybersecurity Issues Mount by Cousin9999: 4:56am On Apr 22, 2021
China is behind a newly discovered series of hacks against key targets in the U.S. government, private companies and the country’s critical infrastructure, cybersecurity firm Mandiant said Wednesday.

The hack works by breaking into Pulse Secure, a program that businesses often use to let workers remotely connect to their offices. The company announced Tuesday how users can check to see if they were affected but said the software update to prevent the risk to users won’t go out until May.

The campaign is the third distinct and severe cyberespionage operation against the U.S. made public in recent months, stressing an already strained cybersecurity workforce. The U.S. government accused Russia in January of hacking nine government agencies via SolarWinds, a Texas software company widely used by American businesses and government agencies. In March, Microsoft blamed China for starting a free-for-all where scores of different hackers broke into organizations around the world through the Microsoft Exchange email program.

In all three campaigns, the hackers first used those programs to hack into victims' computer networks, then created backdoors to spy on them for months, if not longer.

The U.S. Cybersecurity and Infrastructure Security Agency, or CISA, said in a warning Tuesday evening the latest hacking campaign is currently "affecting U.S. government agencies, critical infrastructure entities, and other private sector organizations."

CISA activated its strictest emergency powers Tuesday evening, mandating that every civilian government agency scan to see if they were affected by the hack and to take actions to fix it. Though it's historically rare for it to do so, it's the second time in seven weeks the agency has issued an emergency directive after the Exchange hack.

"In recent months we have issued them with increasing frequency, which is certainly a concern and something we don't take lightly," said Matt Hartman, the agency's deputy executive assistant director of cybersecurity.

"We at CISA are very concerned," he said.

Unlike the hacks on SolarWinds and Exchange, both of which had at least tens of thousands of potential victims, there's little indication that China used Pulse to hack a broad number of targets. But the hack is particularly significant because it enabled China to gain access to several federal agencies and major U.S. companies for months, said Charles Carmakal, Mandiant's chief technology officer.

"We're starting to see a resurgence of espionage activity from the Chinese government," he said.

None of the victims have yet been made public, though that will likely change, Carmakal said.

"In the coming weeks and months, we're going to have a better sense of how big of a deal this is from a national security perspective," he said.

As with the Exchange hack, China deflected but did not deny responsibility. In an emailed statement, a spokesperson for China’s embassy in the U.S., Liu Pengyu, said China is "a staunch defender of cyber security" and "firmly opposes and cracks down on all forms of cyber attacks."

https://www.nbcnews.com/news/amp/rcna744
Re: China Behind Another Hack As U.S. Cybersecurity Issues Mount by Hotshisha: 5:17am On Apr 22, 2021
Cyber warfare
Re: China Behind Another Hack As U.S. Cybersecurity Issues Mount by igbesachick: 8:45am On May 07, 2021
Cousin9999:
China is behind a newly discovered series of hacks against key targets in the U.S. government, private companies and the country’s critical infrastructure, cybersecurity firm Mandiant said Wednesday.

The hack works by breaking into Pulse Secure, a program that businesses often use to let workers remotely connect to their offices. The company announced Tuesday how users can check to see if they were affected but said the software update to prevent the risk to users won’t go out until May.

The campaign is the third distinct and severe cyberespionage operation against the U.S. made public in recent months, stressing an already strained cybersecurity workforce. The U.S. government accused Russia in January of hacking nine government agencies via SolarWinds, a Texas software company widely used by American businesses and government agencies. In March, Microsoft blamed China for starting a free-for-all where scores of different hackers broke into organizations around the world through the Microsoft Exchange email program.

In all three campaigns, the hackers first used those programs to hack into victims' computer networks, then created backdoors to spy on them for months, if not longer.

The U.S. Cybersecurity and Infrastructure Security Agency, or CISA, said in a warning Tuesday evening the latest hacking campaign is currently "affecting U.S. government agencies, critical infrastructure entities, and other private sector organizations."

CISA activated its strictest emergency powers Tuesday evening, mandating that every civilian government agency scan to see if they were affected by the hack and to take actions to fix it. Though it's historically rare for it to do so, it's the second time in seven weeks the agency has issued an emergency directive after the Exchange hack.

"In recent months we have issued them with increasing frequency, which is certainly a concern and something we don't take lightly," said Matt Hartman, the agency's deputy executive assistant director of cybersecurity.

"We at CISA are very concerned," he said.

Unlike the hacks on SolarWinds and Exchange, both of which had at least tens of thousands of potential victims, there's little indication that China used Pulse to hack a broad number of targets. But the hack is particularly significant because it enabled China to gain access to several federal agencies and major U.S. companies for months, said Charles Carmakal, Mandiant's chief technology officer.

"We're starting to see a resurgence of espionage activity from the Chinese government," he said.

None of the victims have yet been made public, though that will likely change, Carmakal said.

"In the coming weeks and months, we're going to have a better sense of how big of a deal this is from a national security perspective," he said.

As with the Exchange hack, China deflected but did not deny responsibility. In an emailed statement, a spokesperson for China’s embassy in the U.S., Liu Pengyu, said China is "a staunch defender of cyber security" and "firmly opposes and cracks down on all forms of cyber attacks."

https://www.nbcnews.com/news/amp/rcna744

in this educational news, written in english, american accuse chinese of hacking american internet.

of course, how can we expect two rivals praise each other in the other's language ?

(1) (Reply)

Accra Ghana Ban Drumming And Noise Making Today To End June 10, Do Not Play Out / Female Monarchs That Instigated Wars / Angela Merkel Leaves As German's Chancellor After 16 Years, Olaf Sch Takes Over.

(Go Up)

Sections: politics (1) business autos (1) jobs (1) career education (1) romance computers phones travel sports fashion health
religion celebs tv-movies music-radio literature webmasters programming techmarket

Links: (1) (2) (3) (4) (5) (6) (7) (8) (9) (10)

Nairaland - Copyright © 2005 - 2024 Oluwaseun Osewa. All rights reserved. See How To Advertise. 18
Disclaimer: Every Nairaland member is solely responsible for anything that he/she posts or uploads on Nairaland.