Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

China Accuses US of ‘Tens of Thousands’ of Cyberattacks

Beijing on Monday accused the United States of launching “tens of thousands” of cyberattacks on China and pilfering troves of sensitive data, including from a public research university.

Beijing on Monday accused the United States of launching “tens of thousands” of cyberattacks on China and pilfering troves of sensitive data, including from a public research university.

Washington has accused Beijing of cyberattacks against US businesses and government agencies, one of the issues over which ties between the two powers have nosedived in recent years.

China has consistently denied the claims and in turn lashed out against alleged US cyber espionage, but has rarely made public disclosures of specific attacks.

But a report released Monday by its National Computer Virus Emergency Response Center (CVERC) accused the US National Security Agency (NSA) of carrying out “tens of thousands of malicious attacks on network targets in China in recent years”.

It specifically accused the NSA’s Office of Tailored Access Operations (TAO) of infiltrating the Northwestern Polytechnical University in the city of Xi’an.

The university is funded by China’s Ministry of Industry and Information Technology, and specialises in aeronautical and space research.

CVERC alleged that TAO infiltrated the university’s networks and took “control of tens of thousands of network devices” including servers, routers and network switches.

Using dozens of cyber weapons and exploiting previously unknown flaws in the SunOS operating system, the unit gained access to “core technical data” including passwords and the operations of key network devices, the report said.

Advertisement. Scroll to continue reading.

TAO has “stolen over 140 gigabytes of high-value data” in recent years and received assistance from groups in Europe and South Asia, CVERC said in the report, which was co-authored by the private Chinese cybersecurity firm Qihoo 360.

The foreign ministry in Beijing on Monday condemned the alleged hack, saying it “seriously endangers China’s national security and users’ personal data security”.

“We ask the US to provide an explanation and urge them to stop immediately this illegal move,” Mao Ning, a spokeswoman for the foreign ministry, said at a regular press conference.

The NSA did not immediately respond to an AFP request for comment.

In June, Xi’an authorities said they had launched an investigation into a reported cyberattack at Northwestern Polytechnical University that carried the hallmarks of “overseas hacking groups and unlawful elements”.

The attacks “caused significant risks and hidden dangers for normal work and life at our school”, a university cybersecurity official told state broadcaster CCTV in comments published on Monday.

Last year, Washington accused Beijing of carrying out a massive attack on Microsoft’s email software that affected at least 30,000 US organizations — including local governments — as well as customers in other countries.

China denied the allegations and countered that Washington was the “world champion” of cyber espionage.

RelatedU.S., Allies Officially Accuse China of Microsoft Exchange Attacks

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Cody Barrow has been appointed as CEO of threat intelligence company EclecticIQ.

Shay Mowlem has been named CMO of runtime and application security company Contrast Security.

Attack detection firm Vectra AI has appointed Jeff Reed to the newly created role of Chief Product Officer.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cybercrime

As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.

Cybercrime

Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.

Cyberwarfare

WASHINGTON - Cyberattacks are the most serious threat facing the United States, even more so than terrorism, according to American defense experts. Almost half...

Cybercrime

Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Cyberwarfare

Russian espionage group Nomadic Octopus infiltrated a Tajikistani telecoms provider to spy on 18 entities, including government officials and public service infrastructures.