News

Chinese hackers behind VPN attack on US defence firms: security experts

April 21, 2021 03:32 AM


Twitter Share Facebook Share WhatsApp Share

Chinese hackers allegedly penetrated a company's VPN technology to break into computer networks of the US defence industry sector, security consultant Mandiant said Tuesday.

Mandiant linked at least two hacking groups, one of them believed to be an official Chinese cyber-spying operation, to malware used to exploit vulnerabilities in VPN security devices made by Pulse Secure, owned by Utah-based Ivanti.

The group used the malware to try to hijack user and administrator identities and enter the systems of US defence industry companies between October 2020 and March 2021, Mandiant said.

It said that governments and financial firms in the US and Europe were also targeted. It called one of the hacking groups UNC2630. "We suspect UNC2630 operates on behalf of the Chinese government and may have ties to APT5," it said, referring to a known Chinese state-sponsored hacking group.

It said a "trusted third party" also tied the hacking to APT5. "APT5 persistently targets high-value corporate networks and often re-compromises networks over many years. Their primary targets appear to be aerospace and defence companies located in the US, Europe, and Asia," Mandiant said.

It said it did not have enough information to identify who was behind some of the malware. There was no assessment of how many companies were affected or what the hackers did with their access to the networks.  Pulse confirmed the main parts of the Mandiant report, saying that it had already released fixes to its products to block the malware. Pulse said the hackers impacted "a limited number of customers."



Most Read

  1. Maryam Nawaz can wear uniform! Maryam Nawaz can wear uniform!
  2. Here is all about Madiha Rizvi’s second husband Here is all about Madiha Rizvi’s second husband
  3. Madiha Rizvi ties the knot again Madiha Rizvi ties the knot again
  4. Zara Noor Abbas inspired by Rani Mukerji Zara Noor Abbas inspired by Rani Mukerji
  5. Humayun Saeed and Saboor Aly under fire for close interaction in public Humayun Saeed and Saboor Aly under fire for close interaction in public
  6. Two patients die, injuries of 12 others multiplied after roof collapse at Gujrat hospital Two patients die, injuries of 12 others multiplied after roof collapse at Gujrat hospital

Opinion

  1. Legacy of Indian military subjugation in Kashmir
    Legacy of Indian military subjugation in Kashmir

    By Dr Ghulam Nabi Fai

  2. Islamabad becoming the hub of international diplomacy
    Islamabad becoming the hub of international diplomacy

    By Salim Bokhari

  3. Insights into the Pakistan Stock Exchange's Recent Record High Triumph
    Insights into the Pakistan Stock Exchange's Recent Record High Triumph

    By Zulfiqar Ali Mir

  4. IMEC to sabotage CPEC
    IMEC to sabotage CPEC

    By Dr Asif Channer

  5. 1947 TO FORM 47
    1947 TO FORM 47

    By Dr Asif Channer

  6. Beijing wants to further highlight industrial sector in its country and take scientific innovation to new heights....
    Beijing wants to further highlight industrial sector in its country and take scientific innovation to new heights....

    By Ali Ramay