Showing posts with label China. Show all posts
Showing posts with label China. Show all posts

Monday, September 21, 2009

Chinese Cyberattacks Target Media Ahead of Anniversary


BEIJING (Reuters) - Foreign media in China have been targeted by emails laden with malicious computer software in attacks that appear to be tied to the run-up to the National Day military parade on October 1.

While spam and viral attacks are not uncommon, the latest wave is part of a pattern of increasingly sophisticated emails tailored to tempt foreign reporters, rights activists and other targets to open infected attachments.

On Oct 1, the Communist Party is celebrating 60 years of rule over mainland China with a military parade. Beijing has tightened security ahead of the anniversary, with armed paramilitary troops at subway exits during rehearsals and neighborhood residents recruited to watch over the streets.

"There is definitely a pattern of virus attacks in the run-up to important dates on the Chinese political calendar," said Nicholas Bequelin of Human Rights Watch in Hong Kong. He noted that non-government organizations are also favorite targets.

"Whether the government is behind it, closes its eyes to it, supports it or has nothing to with it is unclear. There are also patriotic hackers, so there is no way to know for sure who is behind it."

While poor English used to be a giveaway, new techniques include mimicking a known and trusted sender, or resending legitimate emails from activist organizations with a fake, malware-laden attachment.

The impersonating emails require more effort by the mystery senders but they are also more likely to be opened than easily identifiable, anonymous spam.

Chinese employees working for foreign news organizations in Beijing and Shanghai got identical emails on Monday, each with an attachment carrying malware meant to exploit Adobe Acrobat software, a common application used to read PDF files.

The email, which appeared to be from an economics editor named Pam Bouron, was a polite request for help lining up interviews during an upcoming visit to Beijing. It was tailored so that "Pam" appeared to work for each news organization.

The clue was that Reuters does not have an economics editor named Pam Bouron. Others who received the "Pam Bouron" email include the Straits Times, Dow Jones, Agence France Presse, and Italian news agency Ansa.

Similar emails carrying viruses, also attacking foreign news agencies and non-government organizations, were common ahead of the Beijing Olympic Games last year. In March this year, researchers at Infowar Monitor in Canada found widespread cyber-infiltration of the Tibetan government in exile.

The "Pam Bouron" emails on Monday targeted Chinese news assistants, whose names often do not appear on news reports and who must be hired through an agency that reports to the Foreign Ministry.

They were followed by two suspicious emails on Tuesday morning received by many foreign reporters in Beijing.


Courtesy: Reuters.com

Thursday, September 3, 2009

Cyber Crime Update From China, Romania and USA


I've been swanning around Scotland for the last few days attending the wedding of some friends and trying not to do myself a mischief on the dance floor.

While I was in the land of haggis, ginger hair and sporrans I wasn't able to keep you updated with the latest news from the fight against cybercrime, so I'll quickly make amends with these snippets:

Authorities in China are reported to have made a series of arrests following an investigation into an attack that resulted in widespread disruption of the internet for users across the country earlier this year.

Fascinatingly, it appears that the attacks the consequence of a denial-of-service attack launched against rivals by a gang running an online gaming server.

On May 19th 2009, internet users across six different Chinese provinces reported that they were experiencing difficulties using the internet, suffering from slow access speed and finding some sites completely impossible to reach.

It appears that the attack began as an assault against the DNS servers of a firm called DNSPod, which provides services to gaming servers.

Meanwhile in Romania, police have raided 10 houses and detained 7 people as part of an investigation into a chain of internet scams that may have amassed as much as half a million dollars from victims in other countries.

The alleged criminals are said to have spent the proceeds on luxury cars and property.

And finally, word reaches us from the US of A that Albert Gonzalez, the hacker accused of stealing details of 130 million credit cards from customers of stores such as Heartland payment Systems, 7-Eleven, supermarket chain Hannaford Brothers, has made a plea bargain with the authorities in connection

Under terms of the agreement Gonzalez will have to surrender his Miami condo, $1.65 million in cash, his BMW 330i car, hi computers and Glock 27 firearm. Oh, and he'll also receive a sentence of between 15 and 25 years in prison.


Let's not forget, of course, that Gonzalez was not working alone.

Related Posts Plugin for WordPress, Blogger...