Australian government accuses China-backed hacker group of stealing passwords, usernames from unnamed networks
The Australian Cyber Security Centre has alleged that cyber security firms backed by Chinese authorities stole passwords and usernames from unnamed Australian networks in 2022.
"The PRC state-sponsored cyber group has previously targeted organisations in various countries, including Australia and the United States, and the techniques highlighted below are regularly used by other PRC state-sponsored actors globally. Therefore, the authoring agencies believe the group, and similar techniques remain a threat to their countries’ networks as well," the advisory issued by the Australian Cyber Security Centre.
"This group has previously been reported as being based in Haikou, Hainan Province, PRC and receiving tasking from the PRC MSS, Hainan State Security Department," the advisory said.
In the activity summer, the report said APT40 has repeatedly targeted Australian networks as well as government and private sector networks in the region, and the threat they pose to our networks is ongoing.
"The tradecraft described in this advisory is regularly observed against Australian networks," the advisory said.
APT40 possesses the capability to rapidly transform and adapt exploit proof-of-concept(s) (POCs) of new vulnerabilities and immediately utilise them against target networks possessing the infrastructure of the associated vulnerability.
APT40 regularly conducts reconnaissance against networks of interest, including networks in the authoring agencies’ countries, looking for opportunities to compromise its targets.
This regular reconnaissance postures the group to identify vulnerable, end-of-life or no longer maintained devices on networks of interest, and to rapidly deploy exploits.
The report said APT40 continues to find success exploiting vulnerabilities from as early as 2017.
"This report details the findings of the ASD’s ACSC investigation into the successful compromise of the organisation’s network between July and September 2022," the advisory said.
IBNS
Senior Staff Reporter at Northeast Herald, covering news from Tripura and Northeast India.
Related Articles

US: National Guard member Sarah Beckstrom, who was shot by Afghan national Rahmanullah Lakanwal, dies, announces Trump
US President Donald Trump on Thursday announced that one of the National Guard members, who was shot by a gunman in Washington DC, close to the White House, has died.

Horror in Hong Kong: Deadly fire disaster leaves 94 dead and a city in shock
The death toll in the Hong Kong high-rise housing complex blaze, one of the deadliest recorded in the region in recent times, has touched 94, media reports said.

Gunfire near White House: Two National Guard soldiers shot as Afghan national suspect arrested
Two National Guard soldiers were critically injured on Wednesday after they were shot by a gunman, identified as an Afghan national, less than two blocks from the White House, authorities said.

Horror in Hong Kong: Death toll hits 44 as massive blaze continues, hundreds missing
The death toll from a massive fire that swept through residential apartments in Hong Kong’s Tai Po district has climbed to 44, with around 270 people still unaccounted for, authorities said on Thursday.
Latest News

Delhi air pollution worsenses, AQI deteriorates to 384; several NCR pockets in 'severe' category

US: National Guard member Sarah Beckstrom, who was shot by Afghan national Rahmanullah Lakanwal, dies, announces Trump

Horror in Hong Kong: Deadly fire disaster leaves 94 dead and a city in shock

Apple expands again: Fifth India store launching in Noida’s DLF Mall on December 11

