Get the latest tech news

Chinese Spies Spent Months Inside Aerospace Engineering Firm's Network Via Legacy IT


The Register's Jessica Lyons reports: Chinese state-sponsored spies have been spotted inside a global engineering firm's network, having gained initial entry using an admin portal's default credentials on an IBM AIX server. In an exclusive interview with The Register, Binary Defense's Director of S...

The Register's Jessica Lyons reports: Chinese state-sponsored spies have been spotted inside a global engineering firm's network, having gained initial entry using an admin portal's default credentials on an IBM AIX server. In an exclusive interview with The Register, Binary Defense's Director of Security Research John Dwyer said the cyber snoops first compromised one of the victim's three unmanaged AIX servers in March, and remained inside the US-headquartered manufacturer's IT environment for four months while poking around for more boxes to commandeer. It's worth noting the Feds have issued multiple security alerts this year about Beijing's spy crews including APT40 and Volt Typhoon, which has been accused of burrowing into American networks in preparation for destructive cyberattacks.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Chinese

Chinese

Photo of network

network

Photo of months

months

Related news:

News photo

FBI Director Announces Chinese Botnet Disruption, Exposes Flax Typhoon Hacker Group’s True Identity at Aspen Cyber Summit. | Joint operation with partners released botnet’s grip on thousands of devices.

News photo

Xiaomi's alleged tri-fold appears in new Chinese database listing

News photo

US Government 'Took Control' of a Botnet Run by Chinese Government Hackers, Says FBI Director