SpaceWar.com - Your World At War
Chinese hackers behind VPN attack on US defense firms: security experts
Washington, April 20 (AFP) Apr 20, 2021
Chinese hackers allegedly penetrated a company's VPN technology to break into computer networks of the US defense industry sector, security consultant Mandiant said Tuesday.

Mandiant linked at least two hacking groups, one of them believed to be an official Chinese cyber-spying operation, to malware used to exploit vulnerabilities in VPN security devices made by Pulse Secure, owned by Utah-based Ivanti.

The group used the malware to try to hijack user and administrator identities and enter the systems of US defense industry companies between October 2020 and March 2021, Mandiant said.

It said that governments and financial firms in the US and Europe were also targeted.

It called one of the hacking groups UNC2630.

"We suspect UNC2630 operates on behalf of the Chinese government and may have ties to APT5," it said, referring to a known Chinese state-sponsored hacking group.

It said a "trusted third party" also tied the hacking to APT5.

"APT5 persistently targets high value corporate networks and often re-compromises networks over many years. Their primary targets appear to be aerospace and defense companies located in the US, Europe, and Asia," Mandiant said.

it said it did not have enough information to identify who was behind some of the malware.

There was no assessment of how many companies were affected or what the hackers did with their access to the networks.

Pulse confirmed the main parts of the Mandiant report, saying that it had already released fixes to its products to block the malware.

Pulse said the hackers impacted "a limited number of customers."


ADVERTISEMENT




Space News from SpaceDaily.com
SPHEREx completes first full sky infrared map of the cosmos
CoDICE instrument returns first-light particle data for IMAP mission
Top 5 High Volatility Games For 2026 Chase The Biggest Jackpots Today

24/7 Energy News Coverage
The Quantum Age will be Powered by Fusion
Physicists map axion production paths inside deuterium tritium fusion reactors
Hybrid excitons speed ultrafast energy transfer at 2D organic interface

Military Space News, Nuclear Weapons, Missile Defense
SDA expands Tracking Layer satellite awards and related missile defense contracts
Space Systems Command activates System Delta 80 for assured space access
Rheinmetall ICEYE Space Solutions to provide SAR reconnaissance data to German military

24/7 News Coverage
Philosopher argues AI consciousness may remain unknowable
Climate driven model explores Neanderthal and modern human overlap in Iberia
Economic losses from natural disasters down by a third in 2025: Swiss Re



All rights reserved. Copyright Agence France-Presse. Sections of the information displayed on this page (dispatches, photographs, logos) are protected by intellectual property rights owned by Agence France-Presse. As a consequence, you may not copy, reproduce, modify, transmit, publish, display or in any way commercially exploit any of the content of this section without the prior written consent of Agence France-Presse.