'Chinese hackers target remote conferencing gear'

Advertisement
By Reuters | Updated: 1 August 2013 14:30 IST
A Chinese hacking group tied to the breach of security company RSA two years ago has targeted a maker of audio-visual conference equipment in a likely attempt to tap into boardroom and other high-level remote meetings.

Security researchers at Dell Inc's SecureWorks unit were able to monitor the computers used by the group to process communications from machines infected with stealthy software for stealing data, according to a paper they are releasing today.

Although the researchers could not tell what information was being extracted, they were able to discover many of the companies and offices unknowingly transmitting information. The compromised computers were in five different offices of a global maker of conferencing equipment, said SecureWorks researchers Joe Stewart and Don Jackson.

"I think they were looking for the source code," Stewart told Reuters, because that would help them find flaws they could use to eavesdrop in further attacks.

Advertisement

"If your final target is this vendor's customers of the conferencing product, you would want to be able to connect on their premises."

Advertisement

Stewart declined to identify the manufacturer, but he has notified both the company and law enforcement. Researchers had previously found security flaws in high-end conferencing gear and the new findings suggest they are a prime target.

As a hacking strategy, such a multi-step effort would track with other major attacks, including the one on RSA, a unit of EMC Corp.

Advertisement

In that case, the hackers took information that helped them duplicate the rapidly changing passwords on SecurID tokens used by defense contractors and others to authenticate users when they log in remotely. The contractors were the real targets in that case, researcher said.

Stewart attributed the new round of attacks to a prolific group based in Beijing that he and others have studied for years. Stewart's paper with Jackson tracks only one of the three dozen sophisticated malicious software programs that group favors.

Advertisement

That one family of code has hundreds of variants and has been used in at least 64 campaigns, including the penetration of the audio-visual equipment company, Stewart said. The same program has been used against government offices and 10 industries, including mining, media and communications.

Of the infections the researchers were able to identify, the greatest number were in Japan, followed by India, South Korea, Taiwan and the United States.

Stewart said the Beijing group is probably as big as the Shanghai-based crew that drew wide attention in February after security firmMandiant said it was a specific unit within China's People's Liberation Army. China disputed the report and said it does not hack Western companies.

Although characteristics of both the Beijing and Shanghai groups sometimes show up inside the same compromised company, the Beijinggroup tends to focus more on activists, including those involved with Tibetan issues, Stewart said.

He has cataloged about 275 families of malicious software to date.

© Thomson Reuters 2013

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Hackers, Internet
Advertisement

Related Stories

Popular Mobile Brands
  1. Android's New Feature Lets First Responders See What's Happening Around You
  2. Poco X8 Pro Listed on BIS Certification Website, Could Launch in India Soon
  3. Realme 16 Pro Series Confirmed to Launch in India Soon
  4. Vivo X300, Vivo X300 Pro Go on Sale in India: Price, Offers, Features
  5. Samsung Galaxy S26 Ultra Listed on FCC Website With This Flagship Chipset
  6. Foldable Phone Market to Surge in 2026 on Apple, Samsung Launches: IDC
  7. Instagram's Latest Edits Update Adds New Templates, Customisation and More
  8. OpenAI Rolls Out GPT-5.1-Powered ChatGPT Personalities in India
  9. Samsung Galaxy S26 Could Miss Camera Upgrades to Keep Prices in Check
  10. Apple's 2026 iPad Lineup Reportedly Leaked
  1. Apple’s 2026 iPad Lineup Reportedly Leaked; A19 iPad and M4 iPad Air Said to Debut
  2. Google Announces Emergency Live Video for Sharing Visual Information with Emergency Services on Android
  3. Astronomers Spot the Longest Gamma-Ray Burst Ever Seen: What You Need to Know
  4. Operation Undead Is Now Streaming: Where to Watch the Thai Horror Zombie Drama
  5. Aaromaley OTT Release: When, Where to Watch the Tamil Romantic Comedy Online
  6. Mamta Child Factory Now Streaming on Ultra Play: Know Everything About Plot, Cast, and More
  7. Assassin's Creed Mirage, Wo Long: Fallen Dynasty Reportedly Coming to PS Plus Game Catalogue in December
  8. Samsung Galaxy S26 to Miss Camera Upgrades as Company Focuses on Price Control: Report
  9. Realme Narzo 90 Series Display, Battery Specifications Confirmed Ahead of December 16 Launch in India
  10. Google Is Reportedly Testing AI Mode Integration Within Chrome Browser
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.