News: 0175131353

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

China-Linked Hackers Breach US Internet Providers in New 'Salt Typhoon' Cyberattack (msn.com)

(Wednesday September 25, 2024 @05:20PM (msmash) from the closer-look dept.)


Hackers linked to the Chinese government have broken into a handful of U.S. internet-service providers in recent months in pursuit of sensitive information, WSJ reported Wednesday, citing people familiar with the matter. From the report:

> The hacking campaign, called Salt Typhoon by investigators, hasn't previously been publicly disclosed and is the latest in a series of incursions that U.S. investigators have linked to China in recent years. The intrusion is a sign of the stealthy success Beijing's massive digital army of cyberspies has had breaking into valuable computer networks in the U.S. and around the globe.

>

> In Salt Typhoon, the actors linked to China [1]burrowed into America's broadband networks . In this type of intrusion, bad actors aim to establish a foothold within the infrastructure of cable and broadband providers that would allow them to access data stored by telecommunications companies or launch a damaging cyberattack. Last week, U.S. officials said they had disrupted a network of more than 200,000 routers, cameras and other internet-connected consumer devices that served as an entry point into U.S. networks for a China-based hacking group called Flax Typhoon. And in January, federal officials disrupted Volt Typhoon, yet another China-linked campaign that has sought to quietly infiltrate a swath of U.S. critical infrastructure.

>

> "The cyber threat posed by the Chinese government is massive," said Christopher Wray, the Federal Bureau of Investigation's director, speaking earlier this year at a security conference in Germany. "China's hacking program is larger than that of every other major nation, combined." U.S. security officials allege that Beijing has tried and at times succeeded in burrowing deep into U.S. critical infrastructure networks ranging from water-treatment systems to airports and oil and gas pipelines. Top Biden administration officials have issued public warnings over the past year that China's actions could threaten American lives and are intended to cause societal panic. The hackers could also disrupt the U.S.'s ability to mobilize support for Taiwan in the event that Chinese leader Xi Jinping orders his military to invade the island.



[1] https://www.msn.com/en-us/money/other/china-linked-hackers-breach-u-s-internet-providers-in-new-salt-typhoon-cyberattack/ar-AA1rc9xl



Unclear what's actually happening here (Score:5, Informative)

by Seven Spirals ( 4924941 )

This story sounds a bit like it's about a weaponized exploit for a specific issue. It's not. It's about a state-sponsored group using lots of different methods to create a botnet. There is [1]slightly more information about the backstory [justice.gov] of this available via the link I shared about the "Flax Typhoon" botnet team.

[1] https://www.justice.gov/opa/pr/court-authorized-operation-disrupts-worldwide-botnet-used-peoples-republic-china-state

Re: Unclear what's actually happening here (Score:2)

by ArmoredDragon ( 3450605 )

I still wonder why it's legal for Chinese and Russian citizens to hack US companies and individuals, yet the reverse remains illegal. They're already playing this privateer game, meanwhile our boats have no choice but to just put up with being robbed even when they remain within our own borders.

Re:No names of companies or details (Score:5, Insightful)

by ZipNada ( 10152669 )

> This is just basically war propaganda

Maybe its just a statement of fact backed up by many credible observations that routinely appear in the news.

Re: (Score:2, Insightful)

by cayenne8 ( 626475 )

> This is highly suspect. I would like to see which providers they hacked, what info they're stealing, and what that means for us. This is just basically war propaganda as it stands now.

I was about to cynically comment "Ok, now..time for the china apologists and those what will cry racism...."

But I see I'm too late for that.

Goodness you're a quick one!!

Re: (Score:2)

by Big Hairy Gorilla ( 9839972 )

umm, yeah. I'm going to say "Cisco" for some reason.

Accept Taiwan into NATO... (Score:4)

by Lynchenstein ( 559620 )

...then see how Winnie the Pooh likes Article 5 shoved up his @ss.

“Critical” Infrastructure my ass. (Score:1)

by geekmux ( 1040042 )

> ..served as an entry point into U.S. networks for a China-based hacking group called Flax Typhoon. And in January, federal officials disrupted Volt Typhoon, yet another China-linked campaign that has sought to quietly infiltrate a swath of U.S. critical infrastructure.

Alright listen. No doubt for the victim ISP this kind of attack might appear to be the end of their “world”, but in what fucking universe is an ISP considered “critical” infrastructure for a country? Sorry, but five 9s worth of reliability isn’t worth your Instagram fix there, junkie.

For the clickbait whores writing this crap, do better. Or we’ll find an even more degrading term to describe what you are.

Re: (Score:2)

by RitchCraft ( 6454710 )

You are either clueless or on the other side of the great firewall with permission to sow misinformation.

To be fair, the USA (Score:1)

by Tablizer ( 95088 )

also snoops up Xi's wazoo.

We prefer to believe that the absence of inverted commas guarantees the
originality of a thought, whereas it may be merely that the utterer has
forgotten its source.
-- Clifton Fadiman, "Any Number Can Play"