-
Saints win south coast derby after Eckert's suspended 'Spygate' ban
-
Djibouti boat wreck leaves 139 migrants dead, 84 missing: UN
-
Zheng beats Andreeva to become first home player to win China Open
-
Drone hits Russia's Yandex in third reported attack
-
Young pretender Seixas threatens to rule cycling after sensational year
-
Shelton dumped out in Shanghai but Zverev ploughs on
-
Serie A stalemate as Roma held by Como
-
Top seed Zverev digs deep to reach Shanghai last 16
-
Prince Harry, Meghan to carry out first joint engagement since UK return: reports
-
Pope to be operated on for lump on lung
-
Last Ceuta migrant camp removed ahead of Spanish king's visit
-
India's 'cockroach' leaders vow to keep up election protests
-
Ukraine to stop refinery strikes when Russia curbs energy attacks: Zelensky
-
Pope says to be operated in 'coming days' for lung nodule
-
Pakistan imposes emergency rule in Imran Khan's provincial stronghold
-
Ukraine irrelevant to Russia and IOC's relationship: Russian minister
-
Manchester City brace for hostile Liverpool reception after guilty verdict
-
Brennan keeps his cool in Japan for third PGA Tour victory
-
Brazil's Lula accuses Meta of election interference
-
Bezzecchi wins in Indonesia as Martin retakes MotoGP championship lead
-
South Korea completes trial of Arctic shipping route
-
US Open finalist Shelton dumped out in Shanghai third round
-
アレックス・ボディ、CRIFとともに透明性の高い投資と徹底した資金洗浄防止に注力
-
India releases 'cockroach' leaders as movement calls for more protests
-
Brennan holds off Schauffele for PGA Tour win in Japan
-
Ο ALEX BODI δίνει έμφαση, σε συνεργασία με την CRIF, στις διαφανείς επενδύσεις και στη συστηματική πρόληψη της νομιμοποίησης εσόδων από παράνομες δραστηριότητες
-
ALEX BODI satsar tillsammans med CRIF på transparenta investeringar och ett konsekvent arbete mot penningtvätt
-
ALEX BODI sází ve spolupráci s CRIF na transparentní investice a důslednou prevenci praní špinavých peněz
-
ALEX BODI stawia wraz z CRIF na przejrzyste inwestycje i konsekwentne przeciwdziałanie praniu pieniędzy
-
एलेक्स बोदी क्रिफ के सहयोग से पारदर्शी निवेश और धनशोधन की कड़ाई से रोकथाम पर ज़ोर देते हैं
-
알렉스 보디, CRIF와 함께 투명한 투자와 철저한 자금세탁방지에 주력
-
ALEX BODI 攜手 CRIF,推動透明投資並貫徹洗錢防制
-
ALEX BODI turns to CRIF for transparent investment and rigorous money laundering prevention
-
Indian court releases 'cockroach' movement leaders from detention
-
The 'cockroach' protests against India's election body
-
Indonesia releases eight orangutans rescued from fires to protected forest
-
Power, water, jobs: Google on India data centre concerns
-
Russian Yandex data centre operations disrupted after drone strike
-
Google faces backlash against India data centre
-
Architect fights to save India's past, built on 'stone, tears and sweat'
-
Trump urges Zelensky replacement as diesel row rages
-
Hurricane Simon strengthens as it nears western Mexico
-
New Yorkers snap up discarded subway signs, seats at annual sale
-
'Everyone is angry': Okinawans fearful and frustrated after killing
-
Messi nets brace to win in first match after Argentina exit
-
Trump's trade wars sting US manufacturers ahead of midterms
-
Ravindra fit for New Zealand ODI series against India
-
Kenyan great Kipchoge wins first marathon in three years
-
All Blacks lose four players for second Wallabies Test
-
Barca extend perfect streak, Real Madrid survive Vinicius red
US, Microsoft warn Chinese hackers attacking 'critical' infrastructure
State-sponsored Chinese hackers have infiltrated critical US infrastructure networks, the United States, its Western allies and Microsoft said Wednesday while warning that similar espionage attacks could be occurring globally.
Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets, but said "malicious" activity had also been detected elsewhere in the United States.
It said the hacking, dubbed "Volt Typhoon", had started in mid-2021 and was likely aimed at hampering the United States if there was conflict in the region.
"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement said.
"In this campaign, the affected organizations span the communications, manufacturing, utility, transportation, construction, maritime, government, information technology, and education sectors.
"Observed behavior suggests that the threat actor intends to perform espionage and maintain access without being detected for as long as possible."
Microsoft's statement coincided with an advisory released by US, Australian, Canadian, New Zealand and UK authorities.
They said a "state-sponsored cyber actor" from China was behind Volt Typhoon and that the hacking was likely occurring globally.
"This activity affects networks across US critical infrastructure sectors, and the authoring agencies believe the actor could apply the same techniques against these and other sectors worldwide," the advisory said.
The United States and its allies said the activities involved "living off the land" tactics, which take advantage of built-in network tools to blend in with normal Windows systems.
It warned that the hacking could then incorporate legitimate system administration commands that appear "benign".
-'Highly sophisticated'-
Microsoft said Volt Typhoon tried to blend into normal network activity by routing traffic through compromised small office and home office network equipment, including routers, firewalls and VPN hardware.
"They have also been observed using custom versions of open-source tools," Microsoft said.
Microsoft and the security agencies released guidelines for organisations to try and detect and counter the hacking.
The director of the US Cybersecurity and Infrastructure Security Agency, Jen Easterly, also released a warning related to Volt Typhoon.
"For years, China has conducted operations worldwide to steal intellectual property and sensitive data from critical infrastructure organizations around the globe," Easterly said.
"Today's advisory, put out in conjunction with our US and international partners, reflects how China is using highly sophisticated means to target our nation's critical infrastructure.
"This joint advisory will give network defenders more insights into how to detect and mitigate this malicious activity."
China offered no immediate response to the allegations. But it routinely denies carrying out state-sponsored cyber attacks.
China in turn regularly accuses the United States of cyber espionage.
While China and Russia have long targeted critical infrastructure, Volt Typhoon offered new insights into Chinese hacking, according to John Hultquist, chief analyst at US cybersecurity company Mandiant.
"Chinese cyberthreat actors are unique among their peers in that they have not regularly resorted to destructive and disruptive cyberattacks," he said.
"As a result, their capability is quite opaque.This disclosure is a rare opportunity to investigate and prepare for this threat."
P.Anderson--BTB