Live data from Hacker News

Cyber Sleuths Track Hacker to China’s Military

wsj.com

41–50 of 57 posts

Re: Cyber Sleuths Track Hacker to China’s Military

#42

I mean isn't it already widely accepted that China has one of the world's largest and most active cyber warfare forces? When is the US going to get its shit together and start worrying about cyberdefenses?

>I mean isn't it already widely accepted that China has one of the world's largest and most active cyber warfare forces?

Do they? I thought the largest "cyber warfare force" (gotta love these buzzwords) was the NSA, and the US govt itself. The US practically controls the internet...

Re: Cyber Sleuths Track Hacker to China’s Military

#43

Having read many of these reports over the years, this one seems more manifesto than security report. It is full of carefully controlled language meant to appease a very specific audience: politicians and members of various agencies. A huge amount of space is dedicated to tenuous ties between physical military activities and espionage on the assumption that all chinese agencies are coordinating with each other, that…

It's as if China was the universal scapegoat for infosec people in the US... Wait, this is a known fact in infosec circles.

Re: Cyber Sleuths Track Hacker to China’s Military

#44

Earlier quoted context omitted.

Why do companies, security companies even, do something like this... " Below are the document checksums for Project_CAMERASHY_ThreatConnect_Copyright_2015.pdf MD5: b12f118840d0aa0d5ab2fb9aa052ede3 SHA1: dbd710751a6c32ba91401fb5e5623f46b4d2475f SHA256: da6b105f1e58f860ce67b2ad2db7b15ff7b637cfb37f7d0680a20eb633bcc741" ... when you are then providing both the PDF, and the list of its supposed hashes, over an unencrypted…

Well, not meaningless. You can monitor the original values of the hashes, and verify they haven't been changed. The PDFs will be copied around and around. Also - There is no known method to (within the lifetime of this universe) create a different document with the same MD5 and SHA1 and SHA256. Adding the MD5 doesn't weaken things, and might improve them.

Are you saying that some random ISP(s), some third party or even their hosting provider can't modify the PDFs and the sums on the fly to inject malware? Do you really think most people checks the sums?

Re: Cyber Sleuths Track Hacker to China’s Military

#45

Earlier quoted context omitted.

Ironical MSFT and FB are fawning over Xi's visit giving him the royal tours. China treats these two companies very poorly. Nearly all MSFT software in China is pirated. China bans FB partly for censorship and partly to protect internal social networking products.

MSFT and FB want to maintain and increase access to the 1.35 Billion people of China. Not ironic at all, those companies need to be in China even if treated poorly.

Facebook is completely blocked in China, as far as I'm aware. In fact, it's not just blocked, a DNS lookup of facebook.com is returns a bogus IP address. I can't see why Facebook would think that they have any hope of getting unblocked, unless they are willing to let China's censors do their thing with Facebook posts.

Re: Cyber Sleuths Track Hacker to China’s Military

#46
One of the most difficult aspects of cyber security is attribution. There's really no way to know for certain who did what. Also, it's easy and convenient (right now) for other nations to blame China as cover for their own cyber intrusions. Compromise a few systems in China, launch attacks from them then sit back and watch while others place blame.

Re: Cyber Sleuths Track Hacker to China’s Military

#47
post #43

Having read many of these reports over the years, this one seems more manifesto than security report. It is full of carefully controlled language meant to appease a very specific audience: politicians and members of various agencies. A huge amount of space is dedicated to tenuous ties between physical military activities and espionage on the assumption that all chinese agencies are coordinating with each other, that…

It's as if China was the universal scapegoat for infosec people in the US... Wait, this is a known fact in infosec circles.

A scapegoat would be innocent. I doubt even the Chinese would argue they haven't done anything. That's much of the problem generally and with this document specifically. If you latch onto things and investigate them to death you will in time run across actual wrongdoing. The danger is then that you cherry-pick these truths and spread them to each and every situation, giving the appearance of overwhelming wrongdoing. I think the people behind this document have done this knowingly.

Re: Cyber Sleuths Track Hacker to China’s Military

#49

WSJ, CNN, Fortune all lining up this latest PR story line right on cue. It's embarrassing to see the flailing of the US intelligence apparatus trying to take attention away from their own abuses of power.

If USA journalists had any self-respect remaining, it would be embarrassing to see the agencies' puppet hand run up the media's ass like this.

Re: Cyber Sleuths Track Hacker to China’s Military

#50
post #34

Earlier quoted context omitted.

MS technically has ability to shut off and cripple any pirated Windows over the wire if it wants to. But in this case, it has chosen not to for a lot of Asian countries. The reason? Market share. It wants users to get used to how Windows works, versus to other alternatives like Linux, Mac, etc.

Good observation. MS is willing to pay a high price for market share. For example, nobody wanted Windows Mobile, so they paid Nokia to install it. Failing that ( X-Box is another product they're paying customers to take, in exchange for living room share. It's lost billions overall since its beginning.

[deleted]
Post reply on HN