CYBER WARS
Hacker claims major Chinese citizens' data theft
by AFP Staff Writers
Beijing (AFP) July 5, 2022

A hacker claiming to have stolen personal data from hundreds of millions of Chinese citizens is now selling the information online.

A sample of 750,000 entries posted online by the hacker showed citizens' names, mobile phone numbers, national ID numbers, addresses, birthdays and police reports they had filed.

AFP and cybersecurity experts have verified some of the citizen data in the sample as authentic, but the scope of the entire database is hard to determine.

Advertised on a forum late last month but only picked up by cybersecurity experts this week, the 23-terabyte database -- which the hacker claims contains the records of a billion Chinese citizens -- is being sold for 10 bitcoin (approximately $200,000).

"It looks like it's from multiple sources. Some are facial recognition systems, others appear to be census data," said Robert Potter, co-founder of cybersecurity firm Internet 2.0.

"There is no verification of the total number of records and I'm sceptical of the one billion citizens number," he added.

China maintains an extensive nationwide surveillance infrastructure that siphons massive amounts of data from its citizens, ostensibly for security purposes.

Growing public awareness of data privacy has led to stronger data protection laws targeting individuals and private firms in recent years, although there is little citizens can do to stop the state from collecting their data.

Some of the leaked data appeared to be from express delivery user records, while other entries contained summaries of incidents reported to police in Shanghai over a span of more than a decade, with the most recent from 2019.

The incident reports ranged from traffic accidents and petty theft to rape and domestic violence.

- 'Heads will roll' -

At least four people out of over a dozen contacted by AFP confirmed their personal details, such as names and addresses, as listed in the database.

"So that's why so many people have been adding my WeChat over the past few days. Should I report this to the police?" said one woman surnamed Hao.

"I'm really confused about why my personal data has been leaked," said another woman surnamed Liu.

In replies to the original post, users speculated that the data may have been hacked from an Alibaba Cloud server where it was apparently being stored by the Shanghai police.

Potter, the cybersecurity analyst, confirmed that the files were hacked from Alibaba Cloud, which did not respond to an AFP request for comment.

If confirmed, the breach would be one of the largest in history and a major violation of the recently approved Chinese data protection laws.

"Heads will roll over this one," tweeted Kendra Schaefer, tech partner at research consultancy Trivium China.

China's cybersecurity administration did not respond to a fax requesting comment.

lxc-bur/oho/smw

Alibaba


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues

CYBER WARS
UK probes hacking of army's Twitter, YouTube accounts
London (AFP) July 3, 2022
British officials have launched an investigation after hackers took control of the armed forces Twitter and YouTube accounts, the ministry of defence announced Sunday. "We are aware of a breach of the Army's Twitter and YouTube accounts and an investigation is underway," said a ministry statement. "Apologies for the temporary interruption to our feed. We will conduct a full investigation and learn from this incident. "Thanks for following us and normal service will now resume." So long a ... read more

Comment using your Disqus, Facebook, Google or Twitter login.

Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle

CYBER WARS
Canada announces new Arctic air, missile defenses with US

Belarus buys S-400, Iskander missiles from Russia: Lukashenko

Turkey says still talking to Russia about missile deliveries

Lockheed Martin to produce 8th THAAD Battery for US Govt

CYBER WARS
Estonia, Latvia mull joint bid for air defence systems

Russian missiles hit Kyiv residential buildings

MDA selects Raytheon to continue developing a first-of-its-kind counter-hypersonic missile

Northrop Grumman awarded MDA contract for Hypersonic Missiles defense development

CYBER WARS
Thermal drones seek survivors after deadly Italy glacier collapse

Key milestones achieved in Manned-Unmanned Teaming for future air power

Volatus Aerospace Introduces AERIEPORT, an Autonomous Remote Drone Nesting Station

Drone strike kills three in Iraqi Kurdistan: officials

CYBER WARS
Northrop Grumman runs Laser Communication Demonstration for Tranche 1 constellation

Raytheon Intelligence and Space conducts Troposcatter comms test for US Army

SmartSat buys EOS Space Systems to advance its CHORUS tactical satellite terminals

COFFEE program jump-starts integrable filtering for wideband superiority

CYBER WARS
Raytheon Technologies awarded next phase for US Army TITAN program

Kyiv mayor pleads for more weapons at NATO summit

Slovakia to buy 152 Swedish combat vehicles

Kyiv says US precision artillery systems arrived in Ukraine

CYBER WARS
Britain boosts military aid to Ukraine; Norway sends rocket launchers

Johnson urges NATO allies to boost military spending

Biden announces $1 bn in new military aid for Ukraine

US says getting arms to Ukraine 'as rapidly as possible'

CYBER WARS
Americans more than Brits feel threatened by China's rise as a world power

NATO begins Sweden, Finland membership process; Sweden dodges on deportations

Japan protests Chinese navy sailing near disputed islands

German leader slams 'ridiculous' Putin claim NATO imperialist

CYBER WARS
A mirror tracks a tiny particle

New silicon nanowires can really take the heat

Cooling speeds up electrons in bacterial nanowires

Seeing more deeply into nanomaterials