The Government of Beijing accused the United States of launching tens of thousands of cyberattacks on China. The attacks aimed at stealing sensitive data from government entities and universities.
In the past, the US Government has accused China of cyberattacks against US organizations and private businesses, but Bejing always denied the claims.
On Monday, the Chinese National Computer Virus Emergency Response Center (CVERC) published a report, which was co-authored by the private Chinese cybersecurity firm Qihoo 360, that accuses the US National Security Agency (NSA) of conducting “tens of thousands of malicious attacks on network targets in China in recent years”.
The attacks were orchestrated by the NSA’s Tailored Access Operations (TAO) elite hacker unit that in one case compromised the Northwestern Polytechnical University in the city of Xi’an and stole over 140 gigabytes of high-value data.
The university focuses on aeronautical and space research, the US hackers were able to compromise the network of the university and take “control of tens of thousands of network devices” including servers, routers and network switches.”
The attackers exploited zero-day flaws impacting the SunOS operating system, they gained access to “core technical data” including passwords and the operations of key network devices.
According to the CVERC report, NSA TAO was supported by other hacking groups in Europe and South Asia.
“[the intrusion] seriously endangers China’s national security and users’ personal data security”. Said the foreign ministry in Beijing. “We ask the US to provide an explanation and urge them to stop immediately this illegal move,” Mao Ning, a spokeswoman for the foreign ministry, said at a regular press conference.
Follow me on Twitter: @securityaffairs and Facebook
| [adrotate banner=”9″] | [adrotate banner=”12″] |
(SecurityAffairs – hacking, China)
[adrotate banner=”5″]
[adrotate banner=”13″]
Fintech firm Figure confirmed a data breach after hackers used social engineering to trick an…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in BeyondTrust RS and…
A new alleged Russia-linked APT group targeted Ukrainian defense, government, and energy groups, with CANFAIL…
A new threat actor, UAT-9921, uses the modular VoidLink framework to target technology and financial…
Attackers quickly targeted BeyondTrust flaw CVE-2026-1731 after a PoC was released, enabling unauthenticated remote code…
Google says nation-state actors used Gemini AI for reconnaissance and attack support in cyber operations.…
This website uses cookies.