Live data from Hacker News

China-based campaign breached satellite, defense companies: Symantec

reuters.com

1–10 of 33 posts

Re: China-based campaign breached satellite, defense companies: Symantec

#2
Choose your type of "China" hacking:

- Chinese IP address

- IP address that links back to something China

- IP range that belongs to a Chinese cloud provider

- Chinese hacker group (admittedly most of them are reallocated in south east asia)

- botnet located in mainland China

- Government sponsored action

There are so many articles directly jumping into conclusion of the last type.

Re: China-based campaign breached satellite, defense companies: Symantec

#3
post #2

Choose your type of "China" hacking: - Chinese IP address - IP address that links back to something China - IP range that belongs to a Chinese cloud provider - Chinese hacker group (admittedly most of them are reallocated in south east asia) - botnet located in mainland China - Government sponsored action There are so many articles directly jumping into conclusion of the last type.

1. The Chinese government is more than capable of stopping all of the types you listed.

2. There is history of the Chinese government using its hackers to attack projects and companies it dislikes (see Github DDoS for a high-profile recent example).

3. The US intelligence community has stated that in many cases, the Chinese government is behind attacks. I might distrust the US intelligence community, but this is not something they need to lie about.

4. When Obama and Xi agreed that the US and China would stop infiltrating each other's networks, the breaches stopped.

There is one more thing I almost forgot to mention. The point you made is actually more applicable to Russia. Over the past decade, the Russian government has taken the approach of allowing hackers on Russian soil to operate more or less without any legal consequence so long as their attacks do not target Russian entities. When Putin talks about "patriotic individuals" being behind the hacks on the DNC, I believe him. That does not mean he (or the people arouhd him doing his bidding) was not privy to what was going on or that those patriotic individuals did not receive suggestions on what a good target and a good strategy might be.

Re: China-based campaign breached satellite, defense companies: Symantec

#6
post #4

I wonder how did this random post with only 14 points and one comment got to front page

For reference, the following post is currently on the front page with 16 points and one comment:

https://news.ycombinator.com/item?id=17349519

As Dang noted, it's not unusual at all.

Re: China-based campaign breached satellite, defense companies: Symantec

#7
post #2

Choose your type of "China" hacking: - Chinese IP address - IP address that links back to something China - IP range that belongs to a Chinese cloud provider - Chinese hacker group (admittedly most of them are reallocated in south east asia) - botnet located in mainland China - Government sponsored action There are so many articles directly jumping into conclusion of the last type.

1. The Chinese government is more than capable of stopping all of the types you listed. 2. There is history of the Chinese government using its hackers to attack projects and companies it dislikes (see Github DDoS for a high-profile recent example). 3. The US intelligence community has stated that in many cases, the Chinese government is behind attacks. I might distrust the US intelligence community, but this is not…

> 1. The Chinese government is more than capable of stopping all of the types you listed.

I dont think this is technically possible.

Or you are assuming vastly more advanced technologies possessed by Chinese government.

From what we know from Chinese tech company and track record, I doubt this is true.

> 2. ... (see Github DDoS for a high-profile recent example).

Links?

> 3. The US intelligence community has stated that in many cases, the Chinese government is behind attacks. I might distrust the US intelligence community, but this is not something they need to lie about.

They have all the benefit to lie about it:

- Create fear for adversaries. It used to be USSR, now its CCP.

- Assume the moral high-ground for their own surveillance or espionage activities, both domestically and internationally.

- Setup the stage for error-increasing budget for their long-term survivability.

- Cover up their incompetency of guarding national secrets (the adversary is so strong that our defense is not sufficient)

These are just some random possibilities, insiders can give probably much more.

> 4. When Obama and Xi agreed that the US and China would stop infiltrating each other's networks, the breaches stopped.

Links?

Re: China-based campaign breached satellite, defense companies: Symantec

#8
post #2

Choose your type of "China" hacking: - Chinese IP address - IP address that links back to something China - IP range that belongs to a Chinese cloud provider - Chinese hacker group (admittedly most of them are reallocated in south east asia) - botnet located in mainland China - Government sponsored action There are so many articles directly jumping into conclusion of the last type.

1. The Chinese government is more than capable of stopping all of the types you listed. 2. There is history of the Chinese government using its hackers to attack projects and companies it dislikes (see Github DDoS for a high-profile recent example). 3. The US intelligence community has stated that in many cases, the Chinese government is behind attacks. I might distrust the US intelligence community, but this is not…

> this is not something they need to lie about.

Of course it is, if the reporting entity is politically motivated at all.

Re: China-based campaign breached satellite, defense companies: Symantec

#9
post #2

Choose your type of "China" hacking: - Chinese IP address - IP address that links back to something China - IP range that belongs to a Chinese cloud provider - Chinese hacker group (admittedly most of them are reallocated in south east asia) - botnet located in mainland China - Government sponsored action There are so many articles directly jumping into conclusion of the last type.

My favorite is when the term state-sponsored hacker never applies to US actions

Re: China-based campaign breached satellite, defense companies: Symantec

#10
There's always news of China hacking the US... Is China more competent, or do they report on it less (I'm sure the latter is true to some degree.) Is there any data on the volume of hacks on the two sides? I understand that Obama and Xi agreed to show mutual restraint, which would imply some reciprocity from the US, but to what extent?
Post reply on HN