August 10, 2022
1 min read

Chinese hackers target govt agencies globally

The researchers tagged TA428, a Chinese-speaking APT group, behind the series of attacks using six backdoor malware…reports Asian Lite News

China-based hackers attacked military industrial plants, research institutes, government agencies and ministries in several countries and were able to even hijack the IT infrastructure of some, taking control of systems used to manage security solutions, a new report has revealed.

Researchers at cyber-security firm Kaspersky detected a wave of targeted attacks on military industrial complex enterprises and public institutions in several Eastern European countries and Afghanistan.

“In the course of our research, we were able to identify over a dozen of attacked organisations,” the researchers said.

The analysis suggests that “it is highly probable that a Chinese-speaking group is behind the attacks”.

The researchers tagged TA428, a Chinese-speaking APT group, behind the series of attacks using six backdoor malware.

The attackers penetrated the enterprise network using carefully crafted phishing emails.

“In the course of our investigation, we discovered that, in some cases, the attackers create phishing emails using information that is not publicly available, such as the full names of employees responsible for handling sensitive information, as well as internal codenames of projects developed by attacked organisations,” the team noted.

Phishing emails contain Microsoft Word documents with embedded malicious code that exploits the CVE-2017-11882 vulnerability, which enables an attacker to execute arbitrary code without any additional user activity.

In the new series of attacks, the attackers used six different backdoors at the same time — probably to set up redundant communication channels with infected systems in case one of the malicious programmes was detected and removed by a security solution.

“The backdoors used provide extensive functionality for controlling infected systems and collecting confidential data,” said Kaspersky.

The attack targeted industrial plants, design bureaus and research institutes, government agencies, ministries and departments in several East European countries (Belarus, Russia, and Ukraine), as well as Afghanistan, it added.

ALSO READ: China preparing for invasion, says Taiwan

Previous Story

OPPO, OnePlus stop smartphone sales in Germany

Next Story

IOM :Egypt hosts 9 mn int’l migrants from 130 countries

Latest from -Top News

Vatican Hosts Final Rites for Pope Francis

The Argentine-born pontiff, the first from Latin America, died less than a month after returning home from a prolonged five-week hospitalisation for double pneumonia….reports Asian Lite News In an outpouring of global

US Backs India’s Hunt for Pahalgam Terrorists

Gabbard’s “hunt down” message comes amidst escalating Indian response to the terrorist attack, saying it had clear “cross-border” links to Pakistan….reports Asian Lite News Tulsi Gabbard, Director of National Intelligence (DNI), on

Border Sealed, Hopes on Hold

A Hindu family from Balochistan’s Sibi was reportedly denied entry into India after the closure of border crossing….reports Asian Lite News Pakistan and India’s decision to shut down the Wagah-Attari border crossing

India Praises UAE’s Global AI Benchmark 

Kaustubh Dhavse, Maharashtra CM’s OSD, hailed the UAE’s AI model as a global benchmark driving digital innovation and attracting global talent…reports Asia Lite News Kaustubh Dhavse, Joint Secretary and Officer on Special

India, Saudi Hold Inaugural Army Staff Talks 

A key highlight of the talks was the exploration of collaboration in operational logistics, battlefield management systems, and niche technologies.  The inaugural Army-to-Army Staff Talks (AAST) between the Indian Army and the
Go toTop

Don't Miss

India’s youth to be X-factor to take on China  

The E&Y report highlighted that India would remain the largest

Chinese digital loan sharks running scam ops in India

The racket was being run by some Chinese handlers in