China Hacked at Least 6 U.S. State Government Networks

Image for article titled China Hacked at Least 6 U.S. State Government Networks

Photo: katleho Seisa (Getty Images)

A prolific state-backed hacker group from China has penetrated the networks of at least six state governments in the U.S., new research from cybersecurity firm Mandiant reveals.

While we don’t know which state governments were affected by the hacking campaign, researchers say the group responsible is APT41—a well-known threat actor that has a long history of stirring up trouble. In this case, the group is said to have spent the last year exploiting a number of vulnerable platforms and programs to worm their way into public agencies. The intent of the hacking campaign is somewhat unclear, though APT41 is known for its cyber espionage capabilities.

In several cases, the hackers are said to have exploited an insecure farming app called USAHERDS—short for the Animal Health Emergency Reporting Diagnostic System—which is used by state governments to trace diseases in local livestock populations. USAHERDS, which is used by at least 18 different states, had a previously unknown zero-day vulnerability which allowed the hackers to compromise any server running the program. In other cases, APT41 exploited log4j, the unfortunate, widely-used open-source software program that was recently discovered to have major security flaws.

APT41, which also goes by the monikers “Barium” and “Winnti,” is thought to have been active since as far back as 2012. In addition to conducting espionage campaigns on behalf of the Chinese government, it is also known for its significant cybercrime operations. In 2020, five alleged members of the group were indicted in absentia by the U.S. Justice Department for a gargantuan hacking spree that involved intrusions into the networks of dozens of private companies and the theft of millions of dollars. The indictment further alleged the group was also involved in a diverse array of criminal activities, including crypto-jacking, ransomware, and the theft of all kinds of corporate proprietary information, including “source code, software code signing certificates, customer account data, and valuable business information.”

Note: This article have been indexed to our site. We do not claim legitimacy, ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
Very Mobile looking for Iliad customers, Fastweb and more: all unlimited and 130 GB for 7.99 euros per month thumbnail

Very Mobile looking for Iliad customers, Fastweb and more: all unlimited and 130 GB for 7.99 euros per month

Vincenzo Ronca del 05 ottobre 2021, 09:37,modifica il 04 ottobre 2021, 10:17 Very Mobile, l'operatore virtuale che in Italia è attivo su rete WindTre, torna a farsi sentire nel settore di mercato delle offerte mobile e lancia una nuova iniziativa diretta agli attuali clienti Iliad, FastWeb, CoopVoce, PosteMobile e di alcuni operatori virtuali. Andiamo a…
Read More
Chinese hacking groups target Russian government, IT firms thumbnail

Chinese hacking groups target Russian government, IT firms

A series of targeted cyberattacks that started at the end of July 2024, targeting dozens of systems used in Russian government organizations and IT companies, are linked to Chinese hackers of the APT31 and APT 27 groups. Kaspersky, who discovered the activity, dubbed the campaign "EastWind," reporting that it employs an updated version of the
Read More
Η Google εφευρίσκει ξανά το ιστορικό του Google Chrome με τα Chrome Journeys – Δείτε screenshot thumbnail

Η Google εφευρίσκει ξανά το ιστορικό του Google Chrome με τα Chrome Journeys – Δείτε screenshot

H Η Google ανακοίνωσε σημαντικές νέες λειτουργίες που έρχονται στον γνωστό σε όλους μας Google Chrome, μία από τις οποίες θα αλλάξει ριζικά τον τρόπο με τον οποίο επιστρέφουμε στους ιστότοπους που έχουμε ερευνήσει στο παρελθόν. Ο λόγος για τα Journeys, μια νέα λειτουργία η οποία θα παίρνει τις ιστοσελίδες του ιστορικού αναζήτησης και θα…
Read More
Index Of News