Suspected Chinese hackers break into foreign ministries' email servers

Source Cryptopolitan

Suspected Chinese hackers have broken into Microsoft Exchange email servers used by foreign ministries, according to new findings from Palo Alto Networks.

The security company’s Unit 42 division has been tracking the group for nearly three years. Researchers said the operation is a long-running effort to read and collect the private communications of diplomats across the world.

Unit 42 confirmed the hackers had full access to search for information inside the email servers of some ministries. They specifically hunted for terms tied to a China-Arab summit held in Riyadh, Saudi Arabia, in 2022, said senior researcher Lior Rochberger.

The team said the hackers also searched for the names of Chinese President Xi Jinping and Peng Liyuan, his wife, in connection to that summit. Researchers declined to identify which countries were hit but said the activity “align consistently with the People’s Republic of China (PRC) economic and geopolitical interests.”

Researchers track hackers to Phantom Taurus campaign

“When I found them searching for specific diplomatic keywords and then exfiltrating emails from embassies and military operations, I realized this was a serious intelligence collection effort,” Rochberger said. Palo Alto Networks calls the hacking group Phantom Taurus.

The company said the breaches went beyond simple spying, showing a focus on strategic events and military movements.

Liu Pengyu, a spokesperson for the Chinese Embassy in Washington, responded that hacking is a problem for all countries, including China, and that the government opposes all forms of cyberattacks.

“Cyberspace is highly virtual, difficult to trace, and involves a diverse range of actors,” he said. “Tracing the source of cyber attacks is a complex technical issue, that requires solid and full evidence.”

The Palo Alto Networks report also highlighted how suspected Chinese hackers are now targeting industries worldwide. On September 24, Alphabet Inc.’s Google stated that a Chinese group had compromised US technology companies.

Earlier in September, suspected attackers impersonated the Republican chair of the House Select Committee on China in attempts to steal sensitive data on trade negotiations, according to the committee.

Assaf Dahan, director of threat intelligence at Palo Alto Networks, said many of Phantom Taurus’ breaches had a “tight correlation to specific geopolitical events or military maneuvers.” The report also said that other espionage activities sought information related to countries, including Afghanistan and Pakistan.

Join a premium crypto trading community free for 30 days - normally $100/mo.

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
Nvidia CEO Just Crowned the “Next Trillion-Dollar” Chip Stock and It Went Up 33%Nvidia CEO Jensen Huang called Marvell Technology the next trillion-dollar company at Computex on June 2. Marvell shares jumped about 33% in a single session, their biggest one-day gain on record. The
Author  Beincrypto
Jun 04, Thu
Nvidia CEO Jensen Huang called Marvell Technology the next trillion-dollar company at Computex on June 2. Marvell shares jumped about 33% in a single session, their biggest one-day gain on record. The
placeholder
All hope seems lost for a Bitcoin recovery this year. Is it really over?Bitcoin is back in the danger zone, as prices fell to their lowest level since January on Thursday after selling pressure got worse across the crypto market. Bitcoin’s price is currently at $63,300, down by over 16% for the week. Over the past seven days, Bitcoin has lost about 13% and slipped into the $67,000...
Author  Cryptopolitan
Jun 04, Thu
Bitcoin is back in the danger zone, as prices fell to their lowest level since January on Thursday after selling pressure got worse across the crypto market. Bitcoin’s price is currently at $63,300, down by over 16% for the week. Over the past seven days, Bitcoin has lost about 13% and slipped into the $67,000...
placeholder
SpaceX IPO draws record Wall Street fanfare, but valuation math gives analysts pauseSpaceX is set to launch the largest IPO in U.S. history as early as June 12 at a valuation near $1.75 trillion.  With more than 555 million Class A shares set to be listed at $135 each, with the aim of raising roughly $75 billion, there’s not a shortage of opinions on whether investors should...
Author  Cryptopolitan
Jun 05, Fri
SpaceX is set to launch the largest IPO in U.S. history as early as June 12 at a valuation near $1.75 trillion.  With more than 555 million Class A shares set to be listed at $135 each, with the aim of raising roughly $75 billion, there’s not a shortage of opinions on whether investors should...
placeholder
Trump’s Explosive Interview Walkout Buried a Bigger Message for MarketsPresident Donald Trump endorsed lower interest rates and declared that growth does not cause inflation before walking out of a Meet the Press interview with NBC’s Kristen Welker.The walkout clip now d
Author  Beincrypto
2 hours ago
President Donald Trump endorsed lower interest rates and declared that growth does not cause inflation before walking out of a Meet the Press interview with NBC’s Kristen Welker.The walkout clip now d
placeholder
Bitcoin Supply In Loss Crosses Critical Threshold — Bullish Reversal Next?After days of steep downward movement, the price of Bitcoin appears to have found a somewhat reliable anchor around the $60,000 region. However, recent on-chain data suggests that the premier
Author  Cryptopolitan
2 hours ago
After days of steep downward movement, the price of Bitcoin appears to have found a somewhat reliable anchor around the $60,000 region. However, recent on-chain data suggests that the premier
goTop
quote