The Criminal Investigation Bureau has admitted that it handed out 54 malware-infested thumb drives to the public at a data security expo hosted by the Presidential Office from Dec. 11 to Dec. 15 last year.
The malware-infected USB sticks were among 250 drives that the bureau gave to the winners of a game about cybersecurity knowledge.
The malware program with the file name XtbSeDuA.exe was designed to collect personal data and transmit it to a Poland-based IP address that then bounces the information to unidentified servers, the bureau said, adding that it was known to have been used by an electronic fraud ring uncovered by Europol in 2015.
Only older, 32-bit computers are susceptible to the malware and common anti-virus software can successfully detect and quarantine it, the bureau said.
The 8-gigabyte thumb drives were purchased from contractors and some of them were made in China, but the bureau has ruled out Chinese espionage, it said, adding that the infection originated from an infected work station at New Taipei City-based contractor Shawo Hwa Industries Co (少華企業).
An employee at the company used the affected computer to transfer an operating system to the drives and test their storage capacity, transmitting the malware to 54 units, the bureau said.
Random sampling of the thumb drives, which were sourced from various contractors, failed to discover the malware, it added.
Distribution was halted in the afternoon of Dec. 12, after members of the public complained that drives had been flagged by their anti-virus programs, it said, adding that 20 drives have been recovered while 34 “remain in the wild.”
The server receiving the data from the malware was shut down after the bureau took measures to address the issue, it said.
National Police Agency Director-General Chen Chia-chin (陳家欽) and National Security Council cybersecurity adviser Lee Der-tsai (李德財) were briefed on the incident, an anonymous source said.
National security officials are unhappy that a Presidential Office event was compromised and concerned that the event might have been deliberately targeted by a hacker group, the source said, adding that they have demanded the bureau launch another probe.
The bureau has apologized to the Presidential Office and other government agencies that participated in the expo, the source said.
GREATER NUMBER: The sorties might have been a response to the US and the EU expressing concern on Friday over China’s ‘provocations’ in the Taiwan Strait Twenty-five Chinese military aircraft and four naval ships were detected around Taiwan from 6am Saturday to 6am yesterday, including eight airplanes that had crossed the median line of the Taiwan Strait and another two that entered Taiwan’s air defense identification zone (ADIZ). The People’s Liberation Army (PLA) aircraft that entered Taiwan’s southwestern ADIZ were a Y-8 anti-submarine plane and a BZK-005 uncrewed aerial vehicle, the Ministry of National Defense said. The aircraft that flew across the median line include two Sukhoi Su-30 fighter jets, four J-16 multipurpose fighters and two J-10 jets, the ministry’s official Web site showed. Taiwan’s armed forces monitored the
Mask easing: Teachers are allowed to take their masks off while lecturing indoors, but students should keep theirs on, as COVID-19 measures ease this week The Ministry of Education (MOE) yesterday released new on-campus COVID-19 prevention guidelines, stating that masks can be taken off while exercising, singing, dancing, performing, taking photographs, dining, drinking, video and voice recording, hosting events, presenting speeches and lecturing outdoors. Large outdoor events organized by schools should comply with the mask regulations issued by the Central Epidemic Command Center (CECC), it added. The new guidelines came into effect yesterday, and people in Taiwan are no longer required to wear masks outdoors for the first time since May 19 last year. The CECC announced the easing of the mask mandate on Monday, adding that it
LUNAR NEW YEAR PEAK: Taiwanese who are in China should get vaccinated and consider returning early, as infection rates are expected to increase, the CECC said China faces five major problems once COVID-19 begins spreading there, with a peak in infections likely during the Lunar New Year holidays, Deputy Minister of Health and Welfare Victor Wang (王必勝), who heads the Central Epidemic Command Center (CECC), said yesterday. Wang wrote on Facebook that according to the center’s data, the increasing number of COVID-19 cases in China is worth noting, as the new Omicron subvariants BF.7 and BA.5.2 spreading in China are highly infectious and are more transmissible than the previously dominating Omicron subvariants. “The virus cannot be eliminated even under China’s strict control measures,” he wrote. “Its policy
‘SEXUAL ASSAULT’: Taipei prosecutors said that cooperation agreements between Taiwan and the Czech Republic grant Czech officials protection against prosecution The Taipei District Prosecutors’ Office yesterday reaffirmed that it would not charge a Czech official with sexual assault because he is protected by diplomatic immunity. The office released a statement saying it has verified that the man works for the Czech Economic and Cultural Office Taipei’s foreign affairs corps and is thereby protected from criminal prosecution. A foreign graduate student in Taiwan had filed a complaint alleging that the section head of the Czech Economic and Trade Section had sexually assaulted her on April 21 last year. The woman said the Czech official had invited her to his home and then forced her