Microsoft, US Say Chinese Hackers Targeted 'Critical' Infrastructure; Warn Against Similar Global Attacks

Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets.

Advertisement
By Agence France-Presse | Updated: 25 May 2023 15:15 IST
Highlights
  • The hacking, dubbed "Volt Typhoon", had started in mid-2021
  • China offered no immediate response to the allegations
  • China in turn regularly accuses the United States of cyber espionage

China routinely denies carrying out state-sponsored cyber attacks

State-sponsored Chinese hackers have infiltrated critical US infrastructure networks, the United States, its Western allies and Microsoft said Wednesday while warning that similar espionage attacks could be occurring globally.

Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets, but said "malicious" activity had also been detected elsewhere in the United States.

Advertisement

It said the hacking, dubbed "Volt Typhoon", had started in mid-2021 and was likely aimed at hampering the United States if there was conflict in the region.

"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement said.

Advertisement

"In this campaign, the affected organizations span the communications, manufacturing, utility, transportation, construction, maritime, government, information technology, and education sectors.

"Observed behavior suggests that the threat actor intends to perform espionage and maintain access without being detected for as long as possible."

Advertisement

Microsoft's statement coincided with an advisory released by US, Australian, Canadian, New Zealand and UK authorities.

They said a "state-sponsored cyber actor" from China was behind Volt Typhoon and that the hacking was likely occurring globally.

Advertisement

"This activity affects networks across US critical infrastructure sectors, and the authoring agencies believe the actor could apply the same techniques against these and other sectors worldwide," the advisory said.

The United States and its allies said the activities involved "living off the land" tactics, which take advantage of built-in network tools to blend in with normal Windows systems.

It warned that the hacking could then incorporate legitimate system administration commands that appear "benign".

-'Highly sophisticated'- Microsoft said Volt Typhoon tried to blend into normal network activity by routing traffic through compromised small office and home office network equipment, including routers, firewalls and VPN hardware.

"They have also been observed using custom versions of open-source tools," Microsoft said.

Microsoft and the security agencies released guidelines for organisations to try and detect and counter the hacking.

The director of the US Cybersecurity and Infrastructure Security Agency, Jen Easterly, also released a warning related to Volt Typhoon.

"For years, China has conducted operations worldwide to steal intellectual property and sensitive data from critical infrastructure organizations around the globe," Easterly said.

"Today's advisory, put out in conjunction with our US and international partners, reflects how China is using highly sophisticated means to target our nation's critical infrastructure.

"This joint advisory will give network defenders more insights into how to detect and mitigate this malicious activity."

China offered no immediate response to the allegations. But it routinely denies carrying out state-sponsored cyber attacks.

China in turn regularly accuses the United States of cyber espionage.

While China and Russia have long targeted critical infrastructure, Volt Typhoon offered new insights into Chinese hacking, according to John Hultquist, chief analyst at US cybersecurity company Mandiant.

"Chinese cyberthreat actors are unique among their peers in that they have not regularly resorted to destructive and disruptive cyberattacks," he said.

"As a result, their capability is quite opaque.This disclosure is a rare opportunity to investigate and prepare for this threat."


Samsung Galaxy A34 5G was recently launched by the company in India alongside the more expensive Galaxy A54 5G smartphone. How does this phone fare against the Nothing Phone 1 and the iQoo Neo 7? We discuss this and more on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Lenovo Tab Plus Gen 2 Launched With JBL Speaker System
  2. Tecno Spark 50 Pro Unveiled With Helio G100 Ultimate, Sony LYT-600 Camera
  3. Samsung Galaxy Z Fold 8 Arrives on the US FCC Database With This Chipset
  4. Oppo Reno 16 Series Bags European Certification, Might Launch Globally Soon
  5. 007 First Light Review: Licence to Thrill
  6. Commodore Returns With a Callback 8020 Flip Phone to Curb Phone Addiction
  7. Redmi Turbo 5 With 7,540mAh Battery Arrives in India at This Price
  8. Athiradi OTT Release Date: When and Where to Watch it Online?
  9. OnePlus 16 Said to Feature 185Hz Refresh Rate Display
  10. Drishyam 3 OTT Release Date: When and Where to Watch Mohanlal's Crime Thriller Online?
  1. Samsung Galaxy Z Fold 8 Listed on US FCC Database With Snapdragon Chipset
  2. Spotify Upgrades Collaborative Playlists Feature With Emoji-Based Reactions for Tracks
  3. Huawei Patent Document Describes 'Vertical' Trifold Smartphone With Two Hinges
  4. US Regulator Urges FDIC for Better Coordination on Crypto, Blockchain Risks
  5. Lenovo Tab Plus Gen 2 Launched With Dimensity 7400 SoC, JBL Speaker System: Price, Specifications
  6. Commodore Callback 8020 Flip Phone With Sailfish OS Unveiled as 'Digital Detox' Smartphone
  7. WhatsApp Said to Be Developing View-Once Text Messages Feature for iOS App
  8. Oppo Reno 16 Series Key Features Revealed via European Certifications Ahead of Global Debut
  9. Redmi Turbo 5 vs Motorola Edge 70 Pro vs Samsung Galaxy A37 5G: Price in India, Specifications Compared
  10. Pudgy Penguins to Discontinue 'Pudgy Party' Mobile Game in Favour of New Web Based Game
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.