-
England No 8 Pollock could move abroad or switch sports amid contract stand-off
-
Trump rejects 'hoax' warnings that AI could destroy humanity
-
Canada makes pitch as safe place to invest in 'uncertain world'
-
Houthis say Saudi Arabia hits Yemen with 54 strikes after attack on bases
-
In-form Malen fires Roma to Serie A summit
-
Why the far right is losing ground in Sweden
-
IOC visits Lyon amid leadership turmoil for 2030 Winter Olympics
-
Ex-Ireland fly-half O'Gara extends deal as La Rochelle coach
-
New York seizes 12 celeb deep-fake porn sites
-
Russian attacks on Ukraine railways escalating every week: rail CEO to AFP
-
Jesse Eisenberg channels emotional intensity into 'The Debut'
-
France, Iraq deepen energy, defence ties during Zaidi visit
-
Alarm over AI grows as divided US Congress struggles to act
-
Trump says Ukraine, Russia agree not to hit energy targets
-
PopDEX Surpasses $61M TVL and $2B Trading Volume in Closed Beta
-
Nigeria's Dangote refinery launches continent's biggest IPO
-
Oasis announce new 2027 world tour
-
Trump blasts 'sick conspiracy' against AI as warnings mount
-
Women athletes condemn 'sexualised' Sydney Sweeney commercial
-
For Laura Linney, role in Parkinson's-themed movie marked a turning point
-
UN calls for 'urgent action' to rein in AI in face of 'unprecedented risks'
-
Doctors face life sentence over Greek pop star's death
-
Russia intensifies attacks seeking to intimidate Ukraine, Europe
-
Trump moves to axe power plant climate rules
-
Richarlison not in Spurs League Cup squad: De Zerbi
-
Slow the AI race? Investors weigh the potential cost
-
French defence group Thales calls on governments to regulate AI
-
Philippine Muslim enclave votes for parliament after deadly shooting
-
Three talking points from the Spanish Grand Prix
-
Germany seeks guarantees from Italy's UniCredit over Commerzbank takeover
-
Saudi football body vows action against Jota chants, Ronaldo urges life ban
-
Liverpool will have to accept 'ups and downs', says Iraola
-
North Korea win 10-0 in Asian Games football mismatch
-
Inaugural Ultimate a hit with the athletes, says Coe
-
Nigerian oil refinery Dangote launches IPO
-
Oil gains on Mideast supply fears, AI warnings rattle tech firms
-
Houthis target Saudi base as Iran denies involvement in Yemen war
-
Mourinho praises 'incredible' Guler amid battle for minutes
-
Sweden faces political uncertainty after election thriller
-
Ozempic-maker Novo Nordisk slims down to 'Novo'
-
How a Chapman Student Revived the Forgotten History of San Francisco's Lavender Panthers
-
STARCARES-Renovated Court In Thailand Grows Into a Shared Space for School and Community
-
Philippine Muslim enclave heads to polls after deadly shooting
-
Oil prices extend gains on Mideast supply fears, tech leads losses
-
New coach won't use AI in bid to make South Korea fans happy
-
Beds too short in 'worst-ever' Asian Games rooms, say South Korea
-
J-VISIONS Vol. 4 Now Online: Read English Articles on Japanese Corporate IR
-
Synapse Analytics Secures US$13m Led by Partech to Drive AI-Powered Decisioning for Financial Institutions
-
In DR Congo streets, ex-hoods get tough on litter -- and locals
-
Bougainville leader says violence won't stop Panguna mine reopening
US, Microsoft warn Chinese hackers attacking 'critical' infrastructure
State-sponsored Chinese hackers have infiltrated critical US infrastructure networks, the United States, its Western allies and Microsoft said Wednesday while warning that similar espionage attacks could be occurring globally.
Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets, but said "malicious" activity had also been detected elsewhere in the United States.
It said the hacking, dubbed "Volt Typhoon", had started in mid-2021 and was likely aimed at hampering the United States if there was conflict in the region.
"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement said.
"In this campaign, the affected organizations span the communications, manufacturing, utility, transportation, construction, maritime, government, information technology, and education sectors.
"Observed behavior suggests that the threat actor intends to perform espionage and maintain access without being detected for as long as possible."
Microsoft's statement coincided with an advisory released by US, Australian, Canadian, New Zealand and UK authorities.
They said a "state-sponsored cyber actor" from China was behind Volt Typhoon and that the hacking was likely occurring globally.
"This activity affects networks across US critical infrastructure sectors, and the authoring agencies believe the actor could apply the same techniques against these and other sectors worldwide," the advisory said.
The United States and its allies said the activities involved "living off the land" tactics, which take advantage of built-in network tools to blend in with normal Windows systems.
It warned that the hacking could then incorporate legitimate system administration commands that appear "benign".
-'Highly sophisticated'-
Microsoft said Volt Typhoon tried to blend into normal network activity by routing traffic through compromised small office and home office network equipment, including routers, firewalls and VPN hardware.
"They have also been observed using custom versions of open-source tools," Microsoft said.
Microsoft and the security agencies released guidelines for organisations to try and detect and counter the hacking.
The director of the US Cybersecurity and Infrastructure Security Agency, Jen Easterly, also released a warning related to Volt Typhoon.
"For years, China has conducted operations worldwide to steal intellectual property and sensitive data from critical infrastructure organizations around the globe," Easterly said.
"Today's advisory, put out in conjunction with our US and international partners, reflects how China is using highly sophisticated means to target our nation's critical infrastructure.
"This joint advisory will give network defenders more insights into how to detect and mitigate this malicious activity."
China offered no immediate response to the allegations. But it routinely denies carrying out state-sponsored cyber attacks.
China in turn regularly accuses the United States of cyber espionage.
While China and Russia have long targeted critical infrastructure, Volt Typhoon offered new insights into Chinese hacking, according to John Hultquist, chief analyst at US cybersecurity company Mandiant.
"Chinese cyberthreat actors are unique among their peers in that they have not regularly resorted to destructive and disruptive cyberattacks," he said.
"As a result, their capability is quite opaque.This disclosure is a rare opportunity to investigate and prepare for this threat."
F.Wilson--AT