Advertisement
Cybersecurity
ChinaDiplomacy

Suspected state-backed Chinese hackers spied on US, European targets: cybersecurity expert

  • FireEye says two highly skilled hacking groups breached Pulse Connect Secure devices to hit government agencies and defence firms
  • US Department of Homeland Security’s cybersecurity agency issues alert saying it was aware of ‘ongoing exploitation’

Reading Time:2 minutes
Why you can trust SCMP
6
A US cybersecurity firm suspects Chinese state-backed hackers of breaching government agencies and defence firms in the EU and US. Photo: Shutterstock
Associated Press
Suspected state-backed Chinese hackers exploited widely used networking devices to spy for months on dozens of high-value government, defence industry and financial sector targets in the United States and Europe, according to FireEye, a prominent cybersecurity firm.

FireEye said it believed two hacking groups linked to China broke into several targets through Pulse Connect Secure devices, which numerous companies and governments use for secure remote access to their networks.

After FireEye released a blog post detailing its findings on Tuesday, the US Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency issued an alert saying it was aware of “ongoing exploitation” of Pulse Connect Secure that was “compromising US government agencies, critical infrastructure entities and private sector organisations”. The agency did not provide additional details about which organisations were breached.

Advertisement

Ivanti, the Utah-based owner of Pulse Connect Secure, said a limited number of customers “experienced evidence of exploit behaviour”. The company said the hackers had used three known exploits and a previously unknown one.

The company said it would release a patch in early May.

01:40

Chinese PLA officers charged with stealing personal data of Americans in Equifax credit agency hack

Chinese PLA officers charged with stealing personal data of Americans in Equifax credit agency hack

Charles Carmakal, the chief technology officer at FireEye, said the firm was still trying to piece together details about the hack but that available evidence suggested the hackers were aligned with the Chinese government.

Advertisement
Advertisement
Select Voice
Choose your listening speed
Get through articles 2x faster
1.25x
250 WPM
Slow
Average
Fast
1.25x