News: 1639825270

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

US distrust of Huawei linked in part to malicious software update in 2012

(2021/12/18)


Suspicions about the integrity of Huawei products among US government officials can be attributed in part to a 2012 incident involving a Huawei software update that compromised the network of a major Australian telecom company with malicious code, according to a report published by Bloomberg.

[1]The report , based on interviews with seven former officials, some identified and some not, says that Optus, a division of Singapore Telecommunications Ltd., had its systems compromised through a malicious update in 2012 – a claim the company disputes.

"The update appeared legitimate, but it contained malicious code that worked much like a digital wiretap, reprogramming the infected equipment to record all the communications passing through it before sending the data to China, [the sources] said," Bloomberg's report explains.

[2]

After several days, the snooping code reportedly deleted itself, but Australia's intelligence services decided China's intelligence services were responsible, "having infiltrated the ranks of Huawei technicians who helped maintain the equipment and pushed the update to the telecom’s systems."

[3]

[4]

Australian intelligence is said to have shared details about the incident with American intelligence agencies, which subsequently identified a similar attack from China using Huawei hardware in the US.

The report seeks to provide an evidentiary basis for efforts by the US and other governments to shun Huawei hardware amid global 5G network upgrades and to give that business to non-Chinese firms.

[5]

Notably absent is any claim that Huawei leadership knew of this supposed effort to subvert Optus' network. "Bloomberg didn’t find evidence that Huawei’s senior leadership was involved with or aware of the attack," the report says.

In short, the claim is that China's intelligence agencies compromised an Australian network by placing agents within Huawei, an ongoing risk for any number of prominent global technology firms.

'Australia's slander'

China has denied "Australia's slander." It's perhaps worth noting that The Register is unaware of any nation owning up to recent intelligence activities. Even Russian President Vladimir Putin, faced with [6]compelling evidence unearthed by investigative news service Bellingcat of the FSB's attempt to poison political opposition leader Alexey Navalny, [7]denied that Russian agents had anything to do with Navalny's near-fatal poisoning.

But the statement from China's Ministry of Foreign Affairs is unusual in that it suggests mutual guilt more than wounded innocence: "Australia’s slander on China carrying out cyberattacks and espionage penetration are purely a move like a thief crying to catch a thief."

In other words, everyone spies and Australia has poor manners to air its grievances in public. Consider that the US National Security Agency by 2010 had already penetrated Huawei's network to spy on founder Ren Zhengfei and associates, based on prior concern that Huawei could create backdoors in its equipment. That's according to [8]documents made available by former NSA contractor Edward Snowden.

[9]Huawei's AppGallery riddled with malware-infected games

[10]UK Telecommunications Act – aka 'power to strip out Huawei' – makes it to the statute book

[11]HPE sees 'no indication' its tech was sold to Chinese military, seeks answers from Uncle Sam on sanctions

[12]Psst. Hey kid. Want a lipstick? Huawei slips new earbuds into cosmetics case

The Register asked Huawei to comment and a spokesperson provided us with a copy of the remarks John Suffolk, Huawei’s global cybersecurity officer, offered to Bloomberg.

"[W]ithout specifics, it is not possible to give you a detailed assessment as each operator is different," said Suffolk in an emailed statement. "It is fanciful to suggest that 'Huawei's software updates can push whatever code they want into those machines, whenever they want, without anyone knowing.' It does not work that way."

[13]

"It is fanciful to suggest engineers can reprogram the code as they have no access to source code, cannot compile the source code to produce binaries and the binaries have tamper proofing mechanisms within them. We are leaders in encouraging governments, customers and the security ecosystem to review our products, look for design weaknesses, provide feedback on vulnerabilities or poor code examples and it is this openness and transparency that acts as a great protector."

"Finally no tangible evidence has ever been produced of any intentional wrongdoing of any kind."

But this isn't about evidence presented in a public forum or court room. Huawei is not on trial, at least in this context.

Yes, there was that dustup with its CFO, [14]resolved to avoid a serious diplomatic row , the US government's [15]trade secret theft lawsuit against Huawei based on T-Mobile's civil lawsuit, and claims that Huawei [16]screwed over a California IT consultancy and backdoored a network in Pakistan .

Can't catch a break

Even so, Huawei's guilt or innocence as it applies to helping China spy is largely irrelevant. As far as the US is concerned, Huawei can't be trusted because the Chinese government could, in theory, make demands the company could not refuse. The feds are worried about precrime, to use the terminology of Philip K. Dick's Minority Report , a story about a police unit that apprehends people predicted to commit crimes.

The US Federal Communications Commission recently used future concerns, alongside past behavior and secret accusations, to ban another Chinese firm from operating in the US. In October, the FCC announced that China Telecom Americas could no longer do business in America. The agency said it based its decision

[17]PDF

partly on classified evidence provided by national security agencies.

But it also said "the totality of the extensive unclassified record alone" was sufficient to justify its decision. The agency concluded that China Telecom Americas could potentially be forced to comply with Chinese government requests and company officials have demonstrated a lack of candor and trustworthiness to US officials.

And trust is key. The changeable nature of software and the possibility of concealed hardware functions make it inherently risky to accept IT systems from untrusted sources. The risk can be mitigated through source code inspection, auditing, and other precautions, but not completely.

Trust is an issue for everyone involved. In February, Bloomberg followed up on its controversial 2018 report of covert spy chips with word that similar snooping hardware was found in 2015 [18]on the motherboards of servers made by US computer maker Supermicro , a claim the company disputed. The Register at the time spoke with a former executive at a prominent chip making firm who insisted such devices exist and that he'd personally held some of them. We trust our source but still, more concrete proof would be nice.

In retrospect it seems obvious any intelligence agency with enough funds and know-how would want such a thing. And it's difficult to believe no one has ever successfully deployed a surveillance chip or backdoored a system destined for a geopolitical rival. But the absence of samples that have been publicly dissected and analyzed means again, we're left to interpret national-state shadowplay with hints and whispers.

Coincidentally, this state of affairs – where lack of trust means nation-based IT stacks – works just fine for companies based in the countries where they can make claims about spying behind closed doors and see government funding that puts their products in the place of ousted competitors.

We can only imagine the cheer that went out among network switch vendors when the FCC [19]announced it would pay US telecom providers to rip and replace their Huawei gear. And given the ways in which China has [20]tilted its market toward local firms, it might be fair to say turnabout is fair play, if anyone were actually concerned about fair play. ®

Get our [21]Tech Resources



[1] https://www.bloomberg.com/news/articles/2021-12-16/chinese-spies-accused-of-using-huawei-in-secret-australian-telecom-hack

[2] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2Yb4TuWZ2zFpkonPxHQJ4yQAAAAA&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0

[3] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Yb4TuWZ2zFpkonPxHQJ4yQAAAAA&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0

[4] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Yb4TuWZ2zFpkonPxHQJ4yQAAAAA&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0

[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Yb4TuWZ2zFpkonPxHQJ4yQAAAAA&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0

[6] https://www.bellingcat.com/news/uk-and-europe/2020/12/14/fsb-team-of-chemical-weapon-experts-implicated-in-alexey-navalny-novichok-poisoning/

[7] https://www.nytimes.com/2020/12/17/world/europe/russia-putin-navalny-press-conference.html

[8] https://edwardsnowden.com/2014/03/22/shotgiant/

[9] https://www.theregister.com/2021/11/25/huaweis_appgallery_games_targeting_children/

[10] https://www.theregister.com/2021/11/18/dcms_tca/

[11] https://www.theregister.com/2021/11/29/hpe_china_sanctions/

[12] https://www.theregister.com/2021/11/19/earbud_products_huawei/

[13] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Yb4TuWZ2zFpkonPxHQJ4yQAAAAA&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0

[14] https://www.theregister.com/2021/09/25/huawei_cfo_meng_wanzhou_agreement/

[15] https://www.theregister.com/2019/03/01/huawei_secret_theft_claims/

[16] https://www.theregister.com/2021/08/13/huawei_accused_of_trade_secret/

[17] https://docs.fcc.gov/public/attachments/DOC-376902A1.pdf

[18] https://www.theregister.com/2021/02/12/supermicro_bloomberg_spying/

[19] https://www.theregister.com/2021/11/01/fcc_huawei_replace/

[20] https://www.nytimes.com/2020/01/15/business/china-technology-transfer.html

[21] https://whitepapers.theregister.com/



Smellycat

Alpine_Hermit

Very good article until you wrote:

“compelling evidence unearthed by investigative news service Bellingcat”

You really should dig into the funders and purpose of that propaganda outfit. Please don’t sully your excellent credibility in journalism by using them as a source.

Re: Smellycat @Alpine_Hermit

Sandtitz

"You really should dig into the funders and purpose of that propaganda outfit"

What nefarious parties are funding Bellingcat?

Bellingcat has published a lot of findings about Flight MH17, Syrian chemical warfare, the poisoning of Skripals and/or Alexei Navalny, and more - which ones do you deem propaganda - and why? Please elaborate.

Democrats

elsergiovolador

Take it with a grain of salt. Democrats are in bed with CCP, so you could expect such whitewashing.

Imagine that in the 80s Soviet Union was building phone infrastructure in the US. Of course it would be trustworthy :-)

Winnie the Pooh is Brandon's old friend after all...

Re: Democrats

Anonymous Coward

And yet it is the Trump family, whose original wealth was seeded by brothels (1), that has co-invested with China (2) and whose Chinese trade mark requests were granted in record time (3). Go figure.

(1) https://www.bloomberg.com/features/2016-trump-family-fortune/

(2) https://www.nytimes.com/2018/05/15/world/asia/trump-hotel-china-indonesia.html

(3) https://www.forbes.com/sites/tommybeer/2020/09/22/ivankas-trademark-requests-were-fast-tracked-in-china-after-trump-was-elected/?sh=61aef7ed1d60

Re: Democrats

teacakes

What wonderful, sincere, unbiased sources. Orangemanbadism in full flow.

Re: Democrats

JDPower666

Ah, the mating call of a Trumpy - THE DEMOCRATS DID IT!

It was probably diagnostics

martinusher

I doubt that Huawei would insert any phone tap code into their switches -- its far too obvious -- but I wouidln't be surprised to discover it had statistics generation and the ability to filter specified traffic and copy it to a selected port. This is common practice and if it were badly implemented then it might look like a 'tap' to the uninitiated (and paranoid). In the right hands this could be blown up into a full scale spy scare but at an engineering level it ranks with leaving a Telnet port open with a default password.

When you start dealing with "the security services" and their media sidekicks you meet people who are long on paranoia and often very short on technical expertise. They're good at dropping dark hints but they never actually come out and say exactly what they mean. So we'll get the "In 2012 such and such kit was discovered with spyware in it" but you'll never get any actual details about what/why/how. Occasionally something leaks out that's too obvious to obscure (like the Telnet port) but the usual material is innuendo and "I'd like to tell you but I'd have to kill you" type nonsense.

As for Bellingcat, the "citizen investigator", its funded from grants from various foundations and charities. All very kosher until you look at who's funding the funders. Its largely assumed that its a mouthpiece for the usual intelligence agencies, its another of those "sources have said" type things where you want to disseminate material but you don't want it to be attributable.

sitta_europea

This secret spy-chip stuff is pretty scary but it takes a lot of people to make a secret spy-chip, and a lot of people to build it into a system, and a lot of people to actually build and deploy code to use the things, and a lot of people who actually spend their working lives looking for it not to notice the unusual traffic.

If there was really a problem, then by now I'd have expected to see [b]somebody[/b] say in the Register's comments on the stories to have said "Yeah, I did this and that for them." or "I saw that, then, in these."

I've installed a lot of Supermicro systems, and I've seen a lot of unusual traffic sending keystrokes to China. But all of that traffic has been easily attributable to compromised Windows boxes - which are much easier to communicate with, and, I dare say, more numerous and accessible than any secret spy-chip. Plus you don't have to compromise any harware, all you have to do is wait until the MD starts the WiFi connection wizard on his new laptop.

Colour me unpersuaded until we see some real evidence.

ChrisPv

Two obvious reasons to not let Huawei into telco core networks are as follows:

- “we installed backdoors every time we were in their situation, so they will too”

- “we installed backdoors and now there will be new infrastructure we need to penetrate again?!”

Main reason for the US to be against Huawei

Duncan Macdonald

You forgot the main one - US politicians get backhanders from US companies - in this case to keep selling overpriced US made equipment instead of the cheaper and better made kit from China.

The whole "block Huawei" mess has been to protect the profits of US networking companies such as Cisco.

The USA - the country with the best government money can buy !!!

Icon for what should happen to corrupt politicians ===========>

Re: Main reason for the US to be against Huawei

teacakes

of course, by your direct comparison, there's no corruption at all in China, no dirty dealings in international commerce and technology... Just the happy hard-working, regular & normal insane cult of totalitarian neo-fascism and gargantuan human rights abuses..?

Here is the article which bears his name...

Anonymous Coward

Why does this article sound like yearning for "Peaceful economics for our time"

It is a lesson which all history teaches wise men, to put trust in ideas,
and not in circumstances.
-- Emerson