Security News

Four Microsoft Exchange Zero-Days Exploited by China
2021-03-04 19:03

Microsoft has issued an emergency Microsoft Exchange patch to fix four zero-day vulnerabilities currently being exploited by China. EDITED TO ADD (3/12): Exchange Online is not affected.

Microsoft fixes four zero-day flaws in Exchange Server exploited by China's ‘Hafnium’ spies to steal victims' data
2021-03-03 00:10

Microsoft says Beijing-backed hackers are exploiting four zero-day vulnerabilities in Exchange Server to steal data from US-based defense contractors, law firms, and infectious disease researchers. Gain access to an Exchange Server either using stolen passwords or by using zero-day vulnerabilities, and disguise themselves as a legitimate user.

AI Panel Urges US to Boost Tech Skills Amid China's Rise
2021-03-01 23:49

An artificial intelligence commission led by former Google CEO Eric Schmidt is urging the U.S. to boost its AI skills to counter China, including by pursuing "AI-enabled" weapons - something that Google itself has shied away from on ethical grounds. "We have to develop technology that preserves our Western values, but we have to be prepared for a world in which not everyone is doing that," said Andrew Moore, a commissioner and the head of Google Cloud AI. The group has the ear of top lawmakers from both parties, but has attracted criticism for including many members who work for tech companies with big government contracts, and who thus have a lot at stake in federal rules on emerging technology.

Malware attack that crippled Mumbai's power system came from China, claims infosec intel outfit Recorded Future
2021-03-01 16:05

Security intelligence firm Recorded Future's Insikt Group has written a paper alleging China was behind attacks on India's electricity grid. The attack is considered the probable source of Mumbai's power outage in October of the same year.

Security concerns arise over popular Clubhouse app after ties to China-based company revealed
2021-02-25 15:35

Concerns have been raised about the security of audio data on the popular new social media app Clubhouse, according to reports from the Stanford Internet Observatory and McAfee's Advanced Threat Research team. Clubhouse did not respond to requests for comment from TechRepublic but previously told the Stanford Internet Observatory that due to concerns about data privacy breaches, the company initially banned the app from Chinese users.

The perils of non-disclosure? China 'cloned and used' NSA zero-day exploit for years before it was made public
2021-02-23 00:50

A zero-day exploit said to have been developed by the NSA was cloned and used by Chinese government hackers on Windows systems years before the cyber-weapon was leaked online, it is claimed. Check Point put out a report on Monday digging into Chinese malware it calls Jian, and argues persuasively this particular software nasty was spawned sometime around 2014 from NSA exploit code that eventually leaked online in 2017.

China-Linked Hackers Exploited SolarWinds Flaw in U.S. Government Attack: Report
2021-02-03 12:12

Hackers believed to be from China have exploited a vulnerability in a SolarWinds product as part of a campaign targeting at least one U.S. government agency, Reuters reported on Tuesday. In late December, a few weeks after it came to light that Texas-based IT management solutions provider SolarWinds was targeted in a sophisticated supply chain attack, researchers from several organizations revealed that one of the pieces of malware they had analyzed, dubbed Supernova, had apparently been used by a second group that was not related to the supply chain attack.

If you want to leg it through China's Great Firewall, don't forget to pull on your newly darned Shadowsocks
2021-01-28 02:22

China's recent upgrades to its content-blocking Great Firewall can be circumvented, according to censorship fighters from the Great Firewall Report. Members of the group last year published a paper [PDF] detailing how China had improved the firewall to detect the use of Shadowsocks, a tool for using SOCKS5 proxies outside the Middle Kingdom to avoid the nation's internet blockades.

Outgoing FCC Chair Issues Final Security Salvo Against China
2021-01-25 21:16

Outgoing Federal Communications Chair Ajit Pai has issued a final warning about Chinese telcos at the end of a tenure spent cracking down on companies like Huawei, ZTE and China Telecom. Pai, a former telecommunications industry lobbyist and in-house counsel for Verizon, told Reuters that managing security threats against U.S. networks from Chinese espionage will be the "Biggest national security issue that regulators will face in the next four years."

Friday Squid Blogging: China Launches Six New Squid Jigging Vessels
2021-01-15 22:03

The 6 large-scale squid jigging vessels are normally operating vessels that returned to China earlier this year from the waters of Southwest Atlantic Ocean for maintenance and repair. These vessels left the port of Mawei on December 17, 2020 and are sailing to the fishing grounds in the international waters of the Southeast Pacific Ocean for operation.