Monday, February 18, 2013

Report: An overwhelming number of Cyber-Attacks on America are coming from one particular army building in China


David Sanger, David Barboza, and Nicole Perlroth at the NYT are out with a huge report tonight on Chinese cyber-attacks on US companies.
The Times got their hands on an advanced copy of report by Mandiant, consequently the same cyber security firm the newspaper hired when it got hacked.
The details we have analyzed during hundreds of investigations convince us that the groups conducting these activities are based primarily in China and that the Chinese Government is aware of them.
Our analysis has led us to conclude that APT1 [Advanced Persistent Threat] is likely government-sponsored and one of the most persistent of China’s cyber threat actors.

Though the White House is "aware" of the Mandiant report, they come just short of naming the Chinese government, and one intelligence official told the Times with frustration, "There are huge diplomatic sensitivities here.”
“Either they are coming from inside Unit 61398,” Kevin Mandia, the founder and chief executive of Mandiant, told the Times in an interview last week, “or the people who run the most-controlled, most-monitored Internet networks in the world are clueless about thousands of people generating attacks from this one neighborhood.”
The article cites a report from cyber-security firm Mandiant (which can be downloaded here) which cites the existence of a building housing PLA Unit 61398.





No comments:

Translate