The Criminal Investigation Bureau has admitted that it handed out 54 malware-infested thumb drives to the public at a data security expo hosted by the Presidential Office from Dec. 11 to Dec. 15 last year.
The malware-infected USB sticks were among 250 drives that the bureau gave to the winners of a game about cybersecurity knowledge.
The malware program with the file name XtbSeDuA.exe was designed to collect personal data and transmit it to a Poland-based IP address that then bounces the information to unidentified servers, the bureau said, adding that it was known to have been used by an electronic fraud ring uncovered by Europol in 2015.
Only older, 32-bit computers are susceptible to the malware and common anti-virus software can successfully detect and quarantine it, the bureau said.
The 8-gigabyte thumb drives were purchased from contractors and some of them were made in China, but the bureau has ruled out Chinese espionage, it said, adding that the infection originated from an infected work station at New Taipei City-based contractor Shawo Hwa Industries Co (少華企業).
An employee at the company used the affected computer to transfer an operating system to the drives and test their storage capacity, transmitting the malware to 54 units, the bureau said.
Random sampling of the thumb drives, which were sourced from various contractors, failed to discover the malware, it added.
Distribution was halted in the afternoon of Dec. 12, after members of the public complained that drives had been flagged by their anti-virus programs, it said, adding that 20 drives have been recovered while 34 “remain in the wild.”
The server receiving the data from the malware was shut down after the bureau took measures to address the issue, it said.
National Police Agency Director-General Chen Chia-chin (陳家欽) and National Security Council cybersecurity adviser Lee Der-tsai (李德財) were briefed on the incident, an anonymous source said.
National security officials are unhappy that a Presidential Office event was compromised and concerned that the event might have been deliberately targeted by a hacker group, the source said, adding that they have demanded the bureau launch another probe.
The bureau has apologized to the Presidential Office and other government agencies that participated in the expo, the source said.
PILLAGING PENGHU: A 7,539-tonne Chinese ship found mining sand in the Formosa Banks area was escorted by several CGA ships to a Kaohsiung harbor The Coast Guard Administration (CGA) yesterday announced that it had dispatched ships to intercept Chinese dredging vessels operating in the nation’s territorial waters near Penghu and detained 10 crew members, who were transported to Kaohsiung. A coast guard patrol discovered more than 20 dredging vessels in an area known as the Formosa Banks, 46 nautical miles (85km) southwest of Penghu County’s Cimei islet (七美) at about 5am on Wednesday. The agency responded by dispatching two patrol boats, the 3,000-tonne Kaohsiung and the 500-tonne Penghu, along with two frigates, to intercept the Chinese vessels, while an airborne observation unit was used to monitor
‘HONEYMOON’ IS OVER: A political science professor said that the Tsai administration’s popularity peaked after it successfully contained COVID-19, but is waning President Tsai Ing-wen’s (蔡英文) and Premier Su Tseng-chang’s (蘇貞昌) approval ratings fell significantly this month in the wake of the government’s handling of the distribution of relief funds and stimulus coupons to people and businesses affected by the COVID-19 pandemic, a poll released yesterday by the New Power Party (NPP) showed. The poll showed that 68 percent of respondents said they were satisfied with Tsai’s performance, down 8.9 percentage points from last month, while 21 percent said they disapproved of her performance. Her approval among respondents aged 20 to 29 fell 14.7 percentage points, the largest decrease when compared with other age
CAUTION: The CECC would first observe how the nation fares after easing domestic restrictions and wait for the pandemic to further subside before making its next move The Central Epidemic Command Center (CECC) yesterday said that relaxing domestic restrictions and border controls simultaneously might complicate efforts to reopen the nation, amid discussions about Taiwan’s exclusion by other countries in their first lists of tourists. The center hopes for there to be a period of observation following the easing of domestic restrictions, before it decides what to do next, Minister of Health and Welfare Chen Shih-chung (陳時中), who heads the center, told a daily news briefing in Taipei. Chen was responding to a question about the reasoning behind the central government’s decision not to allow foreign students into the
Taiwan respects other countries’ decisions not to include it in their first lists of tourists allowed entry when they reopen their borders, the Ministry of Foreign Affairs said yesterday. The Yomiuri Shimbun on Sunday reported that the Japanese government was considering reopening the country to tourists from Thailand, Vietnam, Australia and New Zealand first. Greece on Friday announced that from June 15, it would allow visitors from 29 countries, including Australia, China, the Czech Republic, Japan, Israel, New Zealand, South Korea and Germany. Japan has not yet finalized its visitor list, but the ministry has conveyed its hope that Tokyo would