Subscribe free to our newsletters via your
. Nuclear Energy News .




CYBER WARS
FireEye report: Chinese hackers target foreign ministries
by Staff Writers
Beijing (UPI) Dec 13, 2013


disclaimer: image is for illustration purposes only

Cybersecurity company FireEye claims Chinese hackers broke into the computer systems of five European foreign ministries over the summer.

The hackers sent emails with malware attachments purporting to detail a possible U.S. intervention in Syria, the BBC reported.

Nine computers were compromised, the company told the BBC.

The company hasn't revealed which ministries were targeted but said the malware was meant for individuals involved in last summer's Group of 20 talks in St. Petersburg attended by senior government leaders.

A main topic of discussion among the leaders was the Syrian crisis.

FireEye's 23-page report, available on its website, calls the cyber espionage campaign "Ke3chang" where hackers sent out emails that advertised information updates about the Syrian crisis.

"We believe that the Ke3chang attackers are operating out of China and have been active since at least 2010," the report said.

"However, we believe specific Syria-themed attacks against foreign affairs ministries -- codenamed by Ke3chang as 'moviestar' -- began only in August 2013. The timing of the attacks precedes a G20 meeting held in Russia that focused on the crisis in Syria."

FireEye researchers said they were able to monitor one of the Hackers' computer servers for one week.

"When they [the hackers] shift infrastructure, the servers are open. I just happened to check the servers when they weren't secured," senior FireEye researcher Narottama Villeneuve told the BBC.

The report says FireEye "gained visibility into one of 23 known command-and-control servers operated by the Ke3chang actor for about a week. During this time, we discovered 21 compromised machines connecting to the CnC server."

Researchers observed what "appeared to be three administrative tests by the attackers and two connections from other malware researchers."

Among the targets, FireEye said it identified nine compromises at government ministries in five European countries. Eight of these compromises were at ministries of foreign affairs.

"When FireEye had visibility on the CnC server, we saw the attackers engage in post-compromise information-gathering and lateral movement on the target network whereupon FireEye immediately contacted the relevant authorities and began the notification process.

"At that stage, it appeared to be about network reconnaissance," Villeneuve told the BBC. "The hackers were based in China, but it is difficult to determine from a technology point of view how or if it is connected to a nation state," Villeneuve said.

During the week the malware was observed in action, no documents were stolen.

The report by FireEye, based in Milpitas, Calif., comes amid growing Western concern over fears of increasing attacks by Chinese hackers -- some allegedly with government approval or direction.

The Australian government said in May it won't dump its nearly completed spy agency headquarters in Canberra and start building over again, despite allegations Chinese Internet hackers stole the building's blueprints.

Australian Broadcasting Corp.'s investigative program "Four Corners" reported Chinese hackers managed to get into files of top secret detailed blueprints.

The plans reportedly showed details of complex electrical and electronic cabling, security and communications systems as well as floor plans for the headquarters of the Australian Security Intelligence Organization, the Australian reported.

U.S. Defense Secretary Chuck Hagel, on his first trip after taking up the post, publicly rebuked China in June for its alleged cyberespionage operations.

The Voice of America reported Hagel called for China to work with the United States to establish a cyberspace code of conduct.

"The United States has expressed our concerns about the growing threat of cyberintrusions, some of which appear to be tied to the Chinese government and military," Hagel said in a speech to officials of several Asia-Pacific nations gathered for an annual security summit at Singapore's Shangri-La Hotel.

Setting up a joint cyber working group would be "a positive step in fostering U.S.-China dialogue on cyber," he said.

"We are determined to work more vigorously with China and other partners to establish international norms of responsible behavior in cyberspace."

The Chinese government continues to deny any connection to alleged cyberattacks.

.


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues






Comment on this article via your Facebook, Yahoo, AOL, Hotmail login.

Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle








CYBER WARS
Raytheon BBN Technologies and GrammaTech collaborate to help U.S. government prevent malware in IT devices
Boston MA (SPX) Dec 17, 2013
Raytheon BBN Technologies and GrammaTech, Inc. are collaborating on a $4.8 million contract award under the Defense Advanced Research Projects Agency's VET program. Raytheon BBN Technologies is a wholly owned subsidiary of Raytheon. The VET (Vetting Commodity IT Software and Firmware) program seeks to help U.S. government agencies address the threat of malicious code and hidden "backdoor" ... read more


CYBER WARS
Ground broken on $6 million Hungarian farm biogas plant

Team reports on US trials of bioenergy grasses

Companies could make the switch to wood power

Turning waste into power with bacteria and loofahs

CYBER WARS
Quantum waves at the heart of organic solar cells

NREL Reports Soft Costs Now Largest Piece of Solar Installation Total Cost

Research team finds way to make solar cells thin, efficient and flexible

Solar cell degradation observed directly for the first time

CYBER WARS
Renewable Energy Infrastructure Fund acquires 16 MW wind power asset from O2

Morgan Advanced Materials Delivers Superior Insulation Solution To Wind Farm

Ethiopia spearheads green energy in sub-Saharan Africa

Small-Wind Power Market to Reach $3 Billion by 2020

CYBER WARS
Who Is Keeping the Lights on in California?

The heat is on...or off

French Alstom sues Chinese firm in Bulgaria over patent

India needs $2.1 trillion investment for energy: IEA

CYBER WARS
Russia says Arctic crew cannot leave country: Greenpeace

CWRU researchers report nanoscale energy-efficient switching devices

Anadarko tumbles on multi-billion dollar ruling

Nigeria's leader under fire over missing $50B in oil money

CYBER WARS
Feature of Earth's atmosphere may help in search for habitable planets

Astronomers discover planet that shouldn't be there

Hot Jupiters Highlight Challenges in the Search for Life Beyond Earth

Astronomers find strange planet orbiting where there shouldn't be one

CYBER WARS
Philippines narrows down frigate bidders to four

Navy agent to plead guilty in corruption case

Canada shipbuilding projects create, save jobs

Raytheon, Chemring Group complete first live-fire test of CENTURION launcher

CYBER WARS
The Tough Task of Finding Fossils While Wearing a Spacesuit

Mars One Selects Lockheed Martin to Study First Private Unmanned Mission to Mars

SSTL selected for first private Mars mission

NASA Curiosity: First Mars Age Measurement and Human Exploration Help




The content herein, unless otherwise known to be public domain, are Copyright 1995-2014 - Space Media Network. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA Portal Reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement,agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. Privacy Statement