A note on a piece of paper indicating that China-based hackers, presumed to belong to a special unit under China's People's Liberation Army (PLA), had broken into the legislature's computer system, has rattled cyber security personnel over the past two weeks.
Some legislative assistants said they received the note from the Ministry of Justice's Investigation Bureau (MJIB) on July 6, but the bureau refused to confirm that it had sent the note.
Security concerns
According to the note, a backdoor program installed on 24 different computers in the offices of legislators from across party lines -- including one used by Legislative Speaker Wang Jin-pyng's (
"We have located the hackers and discovered that they were PLA officials based in Fujian Province," an anonymous source from the bureau was quoted by Lin Hong-chan (
An official with the MJIB's Computer Crime Prevention Center, who asked not to be named, told the Taipei Times in a telephone interview that the agency was aware of the situation and had warned some legislators of the attack.
Tracing the attack
Lin said the problem came to light because the MJIB found that some e-mails dispatched from a relay station based in the US had been sent in the name of Taiwan's legislators.
"They [MJIB special agents] traced the origin of those e-mails and found out it was Fujian-based hackers who had used a specially designed attack Web site to install a Trojan horse program on legislators' office computers," Lin said.
The note said that computers used in the offices of Chinese Nationalist Party (KMT) Legislator Su Chi (
The Trojan horse program also entered some computers in the offices of the DPP and TSU legislative caucuses, according to the note.
Lee Ming-yueh (
"Two computers out of six in our office were attacked. One was for keeping the legislator's schedule and the other was for receiving and sending all documents," he said.
He added: "The computer that was attacked in the [DPP] caucus office was used by an assistant who is in charge of gathering all information and reporting to the head of the caucus."
Inside help?
Lee's concern led to a presumption that the attack was not launched by Chinese hackers alone. Rather, the hackers had possibly collaborated with legislative staff.
"We haven't ruled out that there might be internal personnel involved in the matter, but we don't know this for sure at the moment," said Chen Hsi-yang (陳熙揚), director of the Information and Technology Department at the legislature.
Chen Shi-yang said that the legislature has set up firewalls, which can prevent the Chinese hackers from getting inside its computers.
"We installed a virus scanner for e-mails coming in and out of the legislature. Also, we used Dynamic Host Configuration Protocol [DHCP] to dynamically allocate IP addresses, meaning that there is no way that outside hackers can know any single IP address belonging to the legislature's computers and select their targets," he said.
In the wake of the release of the note, which listed the IP addresses and user numbers of the computers that were attacked, the legislature's cyber security personnel have since July 4 been trying to fix the virus problem.
"We have fixed 15 of the 24 affected computers and quarantined a virus in the other nine computers. Now we are waiting for Philippines-based Trend Micro [Corp] to get back to us on solutions for the various viruses on those nine computers," the director said.
Denial
The Information and Technology Department, however, denied that PLA was the source of the hackers and said the MJIB had first discovered the virus.
"According to Trend Micro's description of the virus, named BKDR_BIFROSE_JH, it was a backdoor-attached virus, but it was not from the PLA," Chen Shi-yang said.
The virus was found by the department's Security Operation Center and not by the MJIB, Chen Shi-yang added.
"Indeed, there's a threat that the PLA's hackers might attack the legislature's network system, but we have done our best to secure it against hackers," the director said.
A group of Taiwanese-American and Tibetan-American students at Harvard University on Saturday disrupted Chinese Ambassador to the US Xie Feng’s (謝鋒) speech at the school, accusing him of being responsible for numerous human rights violations. Four students — two Taiwanese Americans and two from Tibet — held up banners inside a conference hall where Xie was delivering a speech at the opening ceremony of the Harvard Kennedy School China Conference 2024. In a video clip provided by the Coalition of Students Resisting the CCP (Chinese Communist Party), Taiwanese-American Cosette Wu (吳亭樺) and Tibetan-American Tsering Yangchen are seen holding banners that together read:
UNAWARE: Many people sit for long hours every day and eat unhealthy foods, putting them at greater risk of developing one of the ‘three highs,’ an expert said More than 30 percent of adults aged 40 or older who underwent a government-funded health exam were unaware they had at least one of the “three highs” — high blood pressure, high blood lipids or high blood sugar, the Health Promotion Administration (HPA) said yesterday. Among adults aged 40 or older who said they did not have any of the “three highs” before taking the health exam, more than 30 percent were found to have at least one of them, Adult Preventive Health Examination Service data from 2022 showed. People with long-term medical conditions such as hypertension or diabetes usually do not
POLICE INVESTIGATING: A man said he quit his job as a nurse at Taipei Tzu Chi Hospital as he had been ‘disgusted’ by the behavior of his colleagues A man yesterday morning wrote online that he had witnessed nurses taking photographs and touching anesthetized patients inappropriately in Taipei Tzu Chi Hospital’s operating theaters. The man surnamed Huang (黃) wrote on the Professional Technology Temple bulletin board that during his six-month stint as a nurse at the hospital, he had seen nurses taking pictures of patients, including of their private parts, after they were anesthetized. Some nurses had also touched patients inappropriately and children were among those photographed, he said. Huang said this “disgusted” him “so much” that “he felt the need to reveal these unethical acts in the operating theater
Heat advisories were in effect for nine administrative regions yesterday afternoon as warm southwesterly winds pushed temperatures above 38°C in parts of southern Taiwan, the Central Weather Administration (CWA) said. As of 3:30pm yesterday, Tainan’s Yujing District (玉井) had recorded the day’s highest temperature of 39.7°C, though the measurement will not be included in Taiwan’s official heat records since Yujing is an automatic rather than manually operated weather station, the CWA said. Highs recorded in other areas were 38.7°C in Kaohsiung’s Neimen District (內門), 38.2°C in Chiayi City and 38.1°C in Pingtung’s Sandimen Township (三地門), CWA data showed. The spell of scorching