Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

As much as I like the idea that Crowdstrike has researchers that have identified the Chinese in a cyber attack as some sort of revelation, we have known about this for literally over a decade.

I've even posted about it here on N years ago: at lockheed they were subject to extensive Chinese spying and very intricate and successful social engineering attacks. Chinese agents would either go to, or comb, attendee list of DoD conferences and then contact them as plausible other attendees from the same conference where they would say something along the lines of "Hey Joe! We attended the same conference about system such-and-such. Here are my notes on the talk we both saw on X - let me know what you think" where the attachement of the notes had a payload.

Further, they were so dedicated to the attacks that they would go and attack the machines of 2nd 3rd and 4th party contributors to a project such that they could infect the USB inserts to these machines with hopes of getting onto lockheeds network.

They also were successful in installing a leaky worm on the Lockheed network which was trickling out data slowly, but once it was discovered -- and the chinese knew that it had been discovered -- they turned it up to 11 to push out as much data as it could until the egress points from lockheeds network could be closed.

this was all between 2002?--~2007.

Yeah, no surprises here....



Russia must also have significant network espionage capabilities, and if I were Russia, I'd strongly consider starting my attacks on US and Western European targets by first infecting some of the millions of unpatched Windows boxes in China, particularly any machines in Chinese military school dorms.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: