The Joplin Globe, Joplin, MO

National News

February 19, 2013

US security firm alleges massive Chinese hacking

BEIJING — Cyberattacks that stole massive amounts of information from military contractors, energy companies and other key industries in the U.S. and elsewhere have been traced to the doorstep of a Chinese military unit, a U.S. security firm alleged Tuesday.

China’s Foreign Ministry dismissed the report as “groundless,” and the Defense Ministry denied any involvement in hacking attacks.

China has frequently been accused of hacking, but the report by Virginia-based Mandiant Corp. contains some of the most extensive and detailed accusations to date linking its military to a wave of cyberspying against U.S. and other foreign companies and government agencies.

Mandiant said it traced the hacking back to a neighborhood in the outskirts of Shanghai that includes a drab, white 12-story office building run by “Unit 61398” of the People’s Liberation Army.

The unit “has systematically stolen hundreds of terabytes of data from at least 141 organizations,” Mandiant wrote. By comparison, the U.S. Library of Congress 2006-2010 Twitter archive of about 170 billion tweets totals 133.2 terabytes.

“From our observations, it is one of the most prolific cyberespionage groups in terms of the sheer quantity of information stolen,” the company said. It added that the unit has been in operation since at least 2006.

Mandiant said it decided that revealing the results of its investigation was worth the risk of the hackers changing their tactics and becoming even more difficult to trace.

“It is time to acknowledge the threat is originating in China, and we wanted to do our part to arm and prepare security professionals to combat that threat effectively,” it said.

In a statement faxed to The Associated Press, the Defense Ministry firmly rejected any involvement in hacking, saying Chinese law forbids all activities harming Internet security.

“The Chinese government has always firmly combated such activities and the Chinese military has never supported any form of hacking activity,” the ministry said. “Statements to the effect that the Chinese military takes part in Internet attacks are unprofessional and are not in accordance with the facts.”

Chinese Foreign Ministry spokesman Hong Lei did not directly address the claims, but when questioned on the report Tuesday, he said he doubted the evidence would withstand scrutiny.

“To make groundless accusations based on some rough material is neither responsible nor professional,” Hong told reporters at a regularly scheduled news conference.

Reiterating a standard China government response on hacking claims, Hong said China itself is a major victim of such crimes, including attacks originating in the United States.

“As of now, the cyberattacks and cybercrimes China has suffered are rising rapidly every year,” Hong said.

Mandiant’s methodology used in the investigation was sound, said Massimo Cotrozzi, managing director of KCS Group, a London-based international cyber investigation consulting firm that was not involved in Mandiant’s research.

“No one as yet has provided the world conclusive evidence of a link between the Chinese military and the attacks. This report is the nearest thing to conclusive evidence that I have seen,” Cotrozzi said.

Mandiant said its findings led it to alter the conclusion of a 2010 report it wrote on Chinese hacking, in which it said it was not possible to determine the extent of government knowledge of such activities.

“The details we have analyzed during hundreds of investigations convince us that the groups conducting these activities are based primarily in China and that the Chinese government is aware of them,” the company said in a summary of its latest report.

It said the hacking was traced to the 2nd Bureau of the People’s Liberation Army General Staff’s 3rd Department, most commonly known as unit 61398, in the Shanghai suburbs.  

News of the report spread Tuesday on the Chinese Internet, with many commentators calling it an excuse for the U.S. to impose greater restrictions to contain China’s growing technological prowess.

Graham Cluley, a British cybersecurity expert who was not involved in Mandiant’s research, said people in the computer industry believe China’s government is behind such attacks but have been unable to confirm the source.

“None of us would be very surprised or be uncomfortable saying we strongly suspect the Chinese authorities are involved in spying this way,” said Cluley, a senior technology consultant for security firm Sophos in Britain.

“I think we are seeing a steady escalation” of sophistication in hacking, Cluley said. “This is really the new era of cybercrime. We’ve moved from kids in their bedroom and financially motivated crime to state-sponsored cybercrime, which is interested in stealing secrets and getting military or commercial advantage.”

 

Text Only
National News
  • American will favor passengers without roller bags

    If you’re traveling light, you can board earlier on American Airlines.

    May 16, 2013

  • Senate panel considers labor board nominees

    Senate Republicans said Thursday they would not support five nominees to the National Labor Relations Board, raising the possibility the troubled agency could be rendered mostly inoperable later this year.

    May 16, 2013

  • No Powerball winner; jackpot soars to $475 million

    So you didn’t win Wednesday’s $360 million Powerball jackpot? Make that you and everyone else.

    May 16, 2013

  • INFLUENCE GAME: Tech, labor spar on immigration

    To the U.S. technology industry, there’s a dramatic shortfall in the number of Americans skilled in computer programming and engineering that is hampering business.

    May 16, 2013

  • Health reforms penalize some Indians

    When Liz DeRouen needs any kind of health care services, from diabetes counseling to a dental cleaning, she checks into a government-funded clinic in Northern California’s wine country that covers all her medical needs.

    May 15, 2013

  • Pennsylvania abortion doctor gets third life sentence

    A Philadelphia abortion doctor was sentenced Wednesday to a third life term for killing an aborted baby he described as so big it could “walk to the bus.”

    May 15, 2013

  • For Minnesota gay marriage sponsors, it’s personal

    When Gov. Mark Dayton adds his signature to the bill legalizing gay marriage in Minnesota later Tuesday, its two main sponsors will stand triumphantly beside him admiring the fruits of their long and often demoralizing struggle for gay rights.

    May 14, 2013

  • Angelina Jolie-Mastec.jpg Angelina Jolie says she had double mastectomy

    Angelina Jolie says that she has had a preventive double mastectomy after learning she carried a gene that made it extremely likely she would get breast cancer.

    May 14, 2013 1 Photo

  • Wind Energy Eagle Deaths 2.jpg Wind farms get pass on eagle deaths

    It happens about once a month here, on the barren foothills of one of America’s green-energy boomtowns: A soaring golden eagle slams into a wind farm’s spinning turbine and falls, mangled and lifeless, to the ground.

    May 14, 2013 3 Photos

  • Govt obtains wide AP phone records in probe

    The Justice Department secretly obtained two months of telephone records of reporters and editors for The Associated Press in what the news cooperative’s top executive called a “massive and unprecedented intrusion” into how news organizations gather the news.

    May 13, 2013