Australian government accuses China-backed hacker group of stealing passwords, usernames from unnamed networks
The Australian Cyber Security Centre has alleged that cyber security firms backed by Chinese authorities stole passwords and usernames from unnamed Australian networks in 2022.
"The PRC state-sponsored cyber group has previously targeted organisations in various countries, including Australia and the United States, and the techniques highlighted below are regularly used by other PRC state-sponsored actors globally. Therefore, the authoring agencies believe the group, and similar techniques remain a threat to their countries’ networks as well," the advisory issued by the Australian Cyber Security Centre.
"This group has previously been reported as being based in Haikou, Hainan Province, PRC and receiving tasking from the PRC MSS, Hainan State Security Department," the advisory said.
In the activity summer, the report said APT40 has repeatedly targeted Australian networks as well as government and private sector networks in the region, and the threat they pose to our networks is ongoing.
"The tradecraft described in this advisory is regularly observed against Australian networks," the advisory said.
APT40 possesses the capability to rapidly transform and adapt exploit proof-of-concept(s) (POCs) of new vulnerabilities and immediately utilise them against target networks possessing the infrastructure of the associated vulnerability.
APT40 regularly conducts reconnaissance against networks of interest, including networks in the authoring agencies’ countries, looking for opportunities to compromise its targets.
This regular reconnaissance postures the group to identify vulnerable, end-of-life or no longer maintained devices on networks of interest, and to rapidly deploy exploits.
The report said APT40 continues to find success exploiting vulnerabilities from as early as 2017.
"This report details the findings of the ASD’s ACSC investigation into the successful compromise of the organisation’s network between July and September 2022," the advisory said.
IBNS
Senior Staff Reporter at Northeast Herald, covering news from Tripura and Northeast India.
Related Articles

Canada moves to lower banking costs, caps NSF fees at $10
Ottawa: The Canadian government has introduced new rules capping non-sufficient funds (NSF) fees at $10, significantly lowering charges that can reach as high as $50, in a move aimed at reducing banking costs for consumers.

Canada announces $10M security boost for Jewish institutions amid rising antisemitic attacks
Ottawa: Canada announced up to $10 million in new funding to strengthen security at Jewish community institutions across the country as police investigate a series of gunfire incidents targeting synagogues in the Greater Toronto Area (GTA).

US Tomahawk military mistakenly struck Iranian school, killing more than 175: Report
A US Tomahawk missile strike on an elementary school in Minab, Iran, killed more than 175 people, mostly children, according to a report by the New York Times.

Iran deploys elite unit to guard new Supreme Leader Mojtaba Khamenei after father’s killing
Iran has deployed an elite counterterrorism unit to protect its newly appointed Supreme Leader, Mojtaba Khamenei, following the assassination of his father, Ali Khamenei, in a joint US-Israeli strike, media reports said.
Latest News

Canada moves to lower banking costs, caps NSF fees at $10

Canada announces $10M security boost for Jewish institutions amid rising antisemitic attacks

US Tomahawk military mistakenly struck Iranian school, killing more than 175: Report

India condemns Hormuz ship attack, says commercial shipping must not be targeted

