Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cyberwarfare

Telegram Hit by Cyber-attack, CEO Points to HK Protests, China

Encrypted messaging service Telegram suffered a major cyber-attack that appeared to originate from China, the company’s CEO said Thursday, linking it to the ongoing political unrest in Hong Kong.

Encrypted messaging service Telegram suffered a major cyber-attack that appeared to originate from China, the company’s CEO said Thursday, linking it to the ongoing political unrest in Hong Kong.

Many protesters in the city have used Telegram to evade electronic surveillance and coordinate their demonstrations against a controversial Beijing-backed plan that would allow extraditions from the semi-autonomous territory to the mainland.

Demonstrations descended into violence Wednesday as police used tear gas and rubber bullets to disperse protesters who tried to storm the city’s parliament — the worst political crisis Hong Kong has seen since its 1997 handover from Britain to China.

Telegram announced late Wednesday that it was suffering a “powerful” Distributed Denial of Service (DDoS) attack, which involves a hacker overwhelming a target’s servers by making a massive number of junk requests.

It warned users in many regions may face connection issues.

Pavel Durov, Telegram’s CEO, said the junk requests came mostly from China.

“Historically, all state actor-sized DDoS (200-400 Gb/s of junk) we experienced coincided in time with protests in Hong Kong (coordinated on @telegram),” he tweeted.

“This case was not an exception.”

Advertisement. Scroll to continue reading.

Telegram later announced on Twitter that its service had stabilised. It also posted a series of tweets explaining the nature of the attack.

“Imagine that an army of lemmings just jumped the queue at McDonald’s in front of you -– and each is ordering a whopper,” it said, referring to the flagship product of Burger King.

“The server is busy telling the whopper lemmings they came to the wrong place -– but there are so many of them that the server can’t even see you to try and take your order.”

China’s foreign ministry and cyberspace administration did not immediately respond to AFP’s requests for comment.

Telegram allows users to exchange encrypted text messages, photos and videos, and also create “channels” for as many as 200,000 people. It also supports encrypted voice calls. It announced last year that it had crossed 200 million monthly active users.

Encrypted messaging apps like Telegram and WhatsApp are preferred around the world by a wide variety of people trying to avoid surveillance by authorities — from Islamic State jihadists and drug dealers to human rights activists and journalists.

Governments in recent years have devoted significant resources to breaching the security features of these apps, according to tech firms and researchers.

Hong Kong is not behind China’s Great Firewall, which heavily restricts internet access in the mainland — where Telegram is blocked.

The city’s special status under its handover agreement allows freedoms unseen in mainland China, but many fear they are under threat as Beijing exerts increasing influence on Hong Kong.

The current protests were sparked by fears that the proposed law would allow extraditions to China and leave people exposed to the mainland’s politicised and opaque justice system.

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Mike Dube has joined cloud security company Aqua Security as CRO.

Cody Barrow has been appointed as CEO of threat intelligence company EclecticIQ.

Shay Mowlem has been named CMO of runtime and application security company Contrast Security.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

CISO Strategy

SecurityWeek spoke with more than 300 cybersecurity experts to see what is bubbling beneath the surface, and examine how those evolving threats will present...

CISO Conversations

Joanna Burkey, CISO at HP, and Kevin Cross, CISO at Dell, discuss how the role of a CISO is different for a multinational corporation...

Cyberwarfare

WASHINGTON - Cyberattacks are the most serious threat facing the United States, even more so than terrorism, according to American defense experts. Almost half...

CISO Conversations

In this issue of CISO Conversations we talk to two CISOs about solving the CISO/CIO conflict by combining the roles under one person.