Chinese hackers attack govt ministries, military plants globally

by IANS |

New Delhi, Aug 9 (IANS) China-based hackers attacked military industrial plants, research institutes, government agencies and ministries in several countries and were able to even hijack the IT infrastructure of some, taking control of systems used to manage security solutions, a new report has revealed.

Researchers at cyber-security firm Kaspersky detected a wave of targeted attacks on military industrial complex enterprises and public institutions in several Eastern European countries and Afghanistan.

"In the course of our research, we were able to identify over a dozen of attacked organisations," the researchers said.

The analysis suggests that "it is highly probable that a Chinese-speaking group is behind the attacks".

The researchers tagged TA428, a Chinese-speaking APT group, behind the series of attacks using six backdoor malware.

The attackers penetrated the enterprise network using carefully crafted phishing emails.

"In the course of our investigation, we discovered that, in some cases, the attackers create phishing emails using information that is not publicly available, such as the full names of employees responsible for handling sensitive information, as well as internal codenames of projects developed by attacked organisations," the team noted.

Phishing emails contain Microsoft Word documents with embedded malicious code that exploits the CVE-2017-11882 vulnerability, which enables an attacker to execute arbitrary code without any additional user activity.

In the new series of attacks, the attackers used six different backdoors at the same time -- probably to set up redundant communication channels with infected systems in case one of the malicious programmes was detected and removed by a security solution.

"The backdoors used provide extensive functionality for controlling infected systems and collecting confidential data," said Kaspersky.

The attack targeted industrial plants, design bureaus and research institutes, government agencies, ministries and departments in several East European countries (Belarus, Russia, and Ukraine), as well as Afghanistan, it added.

Latest News
SIT officers acting like agents of Siddaramaiah & Shivakumar, says Kumaraswamy Tue, May 07, 2024, 04:08 PM
Lalu Prasad bats for Muslim reservation, Samrat Choudhary hits back Tue, May 07, 2024, 03:49 PM
Chikkodi leads as polling picks up pace in Karnataka's 14 LS seats Tue, May 07, 2024, 03:32 PM
Excise policy case: Delhi court extends CM Kejriwal's judicial custody till May 20 Tue, May 07, 2024, 03:30 PM
Truecaller's net sales up 8 pc in India with over 234 million daily active users Tue, May 07, 2024, 03:28 PM
AWS to invest additional $9 bn in Singapore to grow its cloud infrastructure Tue, May 07, 2024, 03:13 PM
Sex videos: Court adjourns bail plea of JD(S) MLA Revanna in victim abduction case Tue, May 07, 2024, 03:04 PM
Ending Pakistan's long wait, Saudi Crown Prince could visit Islamabad next week Tue, May 07, 2024, 03:01 PM
Israeli army takes control of Rafah crossing in Gaza Tue, May 07, 2024, 02:55 PM
Rafah crossing from Egyptian side closed indefinitely for aid, individual passage: Source Tue, May 07, 2024, 02:34 PM
IDF takes control of Rafah border crossing in Gaza Tue, May 07, 2024, 02:33 PM
J&K Police attaches properties of 7 Pak-based militant handlers in Baramulla Tue, May 07, 2024, 02:22 PM
Constituency Watch: Amid Maratha quota stir, election in Beed is more about caste politics than national issues Tue, May 07, 2024, 02:13 PM
Your one vote will make India third largest economy, says PM Modi in Madhya Pradesh Tue, May 07, 2024, 01:54 PM
Ex-CM Basavaraj Bommai casts vote, appeals to people to vote in record numbers Tue, May 07, 2024, 01:12 PM