China’s army controls hundreds if not thousands of virulent and cutting-edge hackers, according to a report issued yesterday by a US Internet security firm that traced a host of cyberattacks to an anonymous building in Shanghai.
Mandiant said its hundreds of investigations showed that groups hacking into US newspapers, government agencies, and companies “are based primarily in China and that the Chinese government is aware of them.”
The 74-page report focused on one group, which it called “APT1” from the initials “Advanced Persistent Threat.” The New York Times, citing experts, said the group was targeting crucial infrastructure such as the US energy grid.
Photo: AFP
“We believe that APT1 is able to wage such a long-running and extensive cyber espionage campaign in large part because it receives direct government support,” Mandiant said.
The group, it said, was believed to be a branch of the People’s Liberation Army (PLA) called Unit 61398, and digital signatures from its cyberattacks were traced back to the direct vicinity of a nondescript, 12-story building on the outskirts of Shanghai.
“We believe the totality of the evidence we provide in this document bolsters the claim that APT1 is Unit 61398,” Mandiant said, estimating it is “staffed by hundreds, and perhaps thousands of people.”
China’s Ministry of Defense said its army had never supported any kind of hacking activity, adding: “Not only are reports that China’s army has been involved in hacking unprofessional, they do not fit with the facts.”
“Hacking attacks are a global problem. Like other countries, China also faces the threat of hacking attacks, and is one of the main countries falling victim to hacking attacks,” the ministry said.
The Chinese Ministry of Foreign Affairs also rejected “groundless accusations” of Chinese involvement in hacking.
In its report, Mandiant said that APT1 — known also as “Comment Crew” for its practice of planting viruses on the comment sections of Web sites — has stolen hundreds of terabytes of data from at least 141 organizations spanning 20 industries.
The Times, which was given early access to the report, said the researchers had found that the Comment Crew was increasingly focused on companies involved in US infrastructure, including in its electrical power grid, gas lines and water works. It said one target was a company with remote access to more than 60 percent of oil and gas pipelines in North America.
The Comment Crew was also among those that attacked the computer security firm RSA, whose computer codes protect confidential corporate and government databases, the Times said.
The building pinpointed as the hacking headquarters sits in the Shanghai suburb of Gaoqiao, near a petrochemical complex and surrounded by small shops. There is no name plate outside, but framed posters showing soldiers are displayed on a high wall surrounding the complex, while the PLA’s symbol of a red star is mounted over the main door of the building.
One soldier in camouflage uniform stood at the main gate yesterday. Another wearing a PLA overcoat was stationed in the guardhouse.
Additional reporting by NY Times News Service
RESPONSE: The transit sends a message that China’s alignment with other countries would not deter the West from defending freedom of navigation, an academic said Canadian frigate the Ville de Quebec and Australian guided-missile destroyer the Brisbane transited the Taiwan Strait yesterday morning, the first time the two nations have conducted a joint freedom of navigation operation. The Canadian and Australian militaries did not immediately respond to requests for comment. The Ministry of National Defense declined to confirm the passage, saying only that Taiwan’s armed forces had deployed surveillance and reconnaissance assets, along with warships and combat aircraft, to safeguard security across the Strait. The two vessels were observed transiting northward along the eastern side of the Taiwan Strait’s median line, with Japan being their most likely destination,
‘NOT ALONE’: A Taiwan Strait war would disrupt global trade routes, and could spark a worldwide crisis, so a powerful US presence is needed as a deterrence, a US senator said US Senator Deb Fischer on Thursday urged her colleagues in the US Congress to deepen Washington’s cooperation with Taiwan and other Indo-Pacific partners to contain the global security threat from China. Fischer and other lawmakers recently returned from an official trip to the Indo-Pacific region, where they toured US military bases in Hawaii and Guam, and visited leaders, including President William Lai (賴清德). The trip underscored the reality that the world is undergoing turmoil, and maintaining a free and open Indo-Pacific region is crucial to the security interests of the US and its partners, she said. Her visit to Taiwan demonstrated ways the
GLOBAL ISSUE: If China annexes Taiwan, ‘it will not stop its expansion there, as it only becomes stronger and has more force to expand further,’ the president said China’s military and diplomatic expansion is not a sole issue for Taiwan, but one that risks world peace, President William Lai (賴清德) said yesterday, adding that Taiwan would stand with the alliance of democratic countries to preserve peace through deterrence. Lai made the remark in an exclusive interview with the Chinese-language Liberty Times (sister paper of the Taipei Times). “China is strategically pushing forward to change the international order,” Lai said, adding that China established the Asia Infrastructure Investment Bank, launched the Belt and Road Initiative, and pushed for yuan internationalization, because it wants to replace the democratic rules-based international
RELEASED: Ko emerged from a courthouse before about 700 supporters, describing his year in custody as a period of ‘suffering’ and vowed to ‘not surrender’ Former Taiwan People’s Party (TPP) chairman Ko Wen-je (柯文哲) was released on NT$70 million (US$2.29 million) bail yesterday, bringing an end to his year-long incommunicado detention as he awaits trial on corruption charges. Under the conditions set by the Taipei District Court on Friday, Ko must remain at a registered address, wear a GPS-enabled ankle monitor and is prohibited from leaving the country. He is also barred from contacting codefendants or witnesses. After Ko’s wife, Peggy Chen (陳佩琪), posted bail, Ko was transported from the Taipei Detention Center to the Taipei District Court at 12:20pm, where he was fitted with the tracking