Please ensure Javascript is enabled for purposes of website accessibility
Security Firm: Chinese Hackers Broke Into Email Security Appliance in Spying Campaign
By admin
Published 2 years ago on
June 15, 2023

Share

Getting your Trinity Audio player ready...

Suspected state-backed Chinese hackers used a security hole in a popular email security appliance to break into the networks of hundreds of public and private sector organizations globally, nearly a third of them government agencies including foreign ministries, the cybersecurity firm Mandiant said Thursday.

“This is the broadest cyber espionage campaign known to be conducted by a China-nexus threat actor since the mass exploitation of Microsoft Exchange in early 2021,” Charles Carmakal, Mandiant’s chief technical officler, said in a emailed statement. That hack compromised tens of thousands of computers globally.

In a blog post Thursday, Google-owned Mandiant expressed “high confidence” that the group exploiting a software vulnerability in Barracuda Networks’ Email Security Gateway was engaged in “espionage activity in support of the People’s Republic of China.” It said the activivity began as early as October.

The hackers sent emails containing malicious file attachments to gain access to targeted organizations’ devices and data, Mandiant said. Of those organizations, 55% were from the Americas, 22% from Asia Pacific and 24% from Europe, the Middle East and Africa and they included foreign ministries in Southeast Asia, foreign trade offices and academic organizations in Taiwan and Hong Kong. the company said.

Mandiant said the majority impact in the Americas may partially reflect the geography of Barracuda’s customer base.

Barracuda announced on June 6 that some of its its email security appliances had been hacked as early as October, giving the intruders a back door into compromised networks. The hack was so severe the California company recommended fully replacing the appliances.

After discovering it in mid-May, Barracuda released containment and remediation patches but the hacking group, which Mandiant identifies as UNC4841, altered their malware to try to maintain access, Mandiant said. The group then “countered with high frequency operations targeting a number of victims located in at least 16 different countries.”

Mandiant said the targeting at both the organizational and individual account levels, focused on issues that are high policy priorities for China, particularly in the Asia Pacific region. It said the hackers searched for email accounts of people working for governments of political or strategic interest to China at the time they were participating in diplomatic meetings with other countries.

The U.S. government has accused Beijing of being its principal cyberespionage threat, with state-backed Chinese hackers stealing data from both the private and public sector.

China says the U.S. also engages in cyberespionage against it, hacking into computers of its universities and companies.

RELATED TOPICS:

DON'T MISS

Judge Says Fresno Can Change Street Names: Cesar Chavez Blvd Lawsuit Tossed

DON'T MISS

The Aga Khan, Spiritual Leader of Ismaili Muslims and a Philanthropist, Dies at 88

DON'T MISS

Trump Wants US to Take Ownership of Gaza and Redevelop It After Palestinians Are Resettled

DON'T MISS

Fresno High-Speed Chase Ends in Arrests After Crash, Standoff

DON'T MISS

NFL Commish Calls Chiefs Conspiracy Theory ‘Ridiculous’ but Terrell Owens Floats One

DON'T MISS

Where Will Californians Rally During Nationwide Protest Against Trump Administration?

DON'T MISS

Estee Lauder to Cut up to 7,000 Jobs as Sales Slide

DON'T MISS

Visalia Police Arrest Three, Seize Ghost Gun and Drugs

DON'T MISS

Mexico Deploys 10,000 National Guard Members to US Border: What to Know

DON'T MISS

Trump Says the ‘Gaza Thing Has Never Worked’

UP NEXT

The Aga Khan, Spiritual Leader of Ismaili Muslims and a Philanthropist, Dies at 88

UP NEXT

Trump Wants US to Take Ownership of Gaza and Redevelop It After Palestinians Are Resettled

UP NEXT

Fresno High-Speed Chase Ends in Arrests After Crash, Standoff

UP NEXT

NFL Commish Calls Chiefs Conspiracy Theory ‘Ridiculous’ but Terrell Owens Floats One

UP NEXT

Where Will Californians Rally During Nationwide Protest Against Trump Administration?

UP NEXT

Estee Lauder to Cut up to 7,000 Jobs as Sales Slide

UP NEXT

Visalia Police Arrest Three, Seize Ghost Gun and Drugs

UP NEXT

Mexico Deploys 10,000 National Guard Members to US Border: What to Know

UP NEXT

Trump Says the ‘Gaza Thing Has Never Worked’

UP NEXT

First Military Flight Departs to Send Migrants to Guantanamo Bay

Fresno High-Speed Chase Ends in Arrests After Crash, Standoff

8 hours ago

NFL Commish Calls Chiefs Conspiracy Theory ‘Ridiculous’ but Terrell Owens Floats One

8 hours ago

Where Will Californians Rally During Nationwide Protest Against Trump Administration?

8 hours ago

Estee Lauder to Cut up to 7,000 Jobs as Sales Slide

8 hours ago

Visalia Police Arrest Three, Seize Ghost Gun and Drugs

9 hours ago

Mexico Deploys 10,000 National Guard Members to US Border: What to Know

9 hours ago

Trump Says the ‘Gaza Thing Has Never Worked’

10 hours ago

First Military Flight Departs to Send Migrants to Guantanamo Bay

10 hours ago

A Tale of Two Local Districts: Implementing the CA Classroom Cell Phone Ban

11 hours ago

Hawaii Volcano Produces Tall Lava Fountaining in Latest Episode of Kilauea Eruption

11 hours ago

Judge Says Fresno Can Change Street Names: Cesar Chavez Blvd Lawsuit Tossed

Shortly after renaming eight miles of streets in south Fresno to honor labor organizer Cesar Chavez, a group of business owners and resident...

6 hours ago

6 hours ago

Judge Says Fresno Can Change Street Names: Cesar Chavez Blvd Lawsuit Tossed

The Aga Khan, spiritual head of Ismaili Muslims, listens to a speech during the inauguration of the restored 16th century Humayun's Tomb in New Delhi, India, Sept. 18, 2013. (AP File)
7 hours ago

The Aga Khan, Spiritual Leader of Ismaili Muslims and a Philanthropist, Dies at 88

7 hours ago

Trump Wants US to Take Ownership of Gaza and Redevelop It After Palestinians Are Resettled

A hit-and-run response in Fresno led to a high-speed chase, crash, and standoff, ending in two arrests after police intervention. (CHP)
8 hours ago

Fresno High-Speed Chase Ends in Arrests After Crash, Standoff

8 hours ago

NFL Commish Calls Chiefs Conspiracy Theory ‘Ridiculous’ but Terrell Owens Floats One

The 50501 Movement, a grassroots protest effort organizing demonstrations in all 50 states on February 5 to oppose fascism, emphasizes peaceful action and local participation, with planned protests at key sites, including California’s state Capitol. (GV Wire Composite)
8 hours ago

Where Will Californians Rally During Nationwide Protest Against Trump Administration?

8 hours ago

Estee Lauder to Cut up to 7,000 Jobs as Sales Slide

Three people were arrested on Tuesday, Feb. 4, 2025, in Visalia after police found a ghost gun, high-capacity magazines, and drugs during a search warrant. (Visalia PD)
9 hours ago

Visalia Police Arrest Three, Seize Ghost Gun and Drugs

Help continue the work that gets you the news that matters most.

Search

Send this to a friend