Live data from Hacker News

U.S. and key allies accuse China of Microsoft Exchange cyberattacks

axios.com

121–130 of 267 posts

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#121
post #78

Earlier quoted context omitted.

China goes down, so does aapl and tsla and our entire economy. Until the American voter is more powerful that the collected business interests of those mega-corps, China will be our most favored trade partner, even as they commit war crimes against the American people (in theory :)

[flagged]

>I wouldn't have even cared about Hong Kong.

Then you are fool

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#122

There is so much doubt in this comment section around the validity of the accusations. We have a number of countries putting forward the knowledge they have mutually agreed upon. What is shared is known to a high degree of certainty. Any details that are questionable would not have been shared prematurely.

The nature of comment sections like this don’t matter in the slightest if anyone is actually worried about it affecting anything, this isn’t copyright reform.

Exchange being hacked has 0 relevance to HN commenters, their knowledge, or their influence. Absolutely nobody cares about the technical specifics, or technical effects of this. This is an exec level political issue, and is more related to the recent trade wars than infosec.

There is a frankly stupid amount of bipartisan US consensus on confronting China. MENA is being put to simmer. A form of “rapprochement” with Russia is underway, and the EU & NATO are barking when told.

The comparisons to the Iraq war are apt in the sense there’s essentially nothing anyone outside those circles can do about this.

Bonus points for the fact there’s 0 chance of this going kinetic anytime soon, so no blood, guts, and (non climate) refugees to affect PR going forward.

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#123
post #26

Earlier quoted context omitted.

Apparently you haven't read it at all These activities can be linked to the hacker groups known as Advanced Persistent Threat 40 and Advanced Persistent Threat 31 and have been conducted from the territory of China for the purpose of intellectual property theft and espionage.

Doesn't China own 51% of all companies?

Not necessarily, there are different ways to control companies in China. The big and important ones tend to be JVs and the Chinese have various ways to control the board, whether it's 51% directly or via proxy. For smaller ones, they mostly just have a small CCP cell that reads CCP literature. It's like bible study groups, but on XJP, apparently.

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#124

Earlier quoted context omitted.

> The idea that these attacks are just being made up or we don't have evidence who executed them is either willfully ignorant (a google search will provide plenty of evidence) or actively malicious. Tools to fake such attribution and evidence were literally part of the leaked NSA/Equation Group toolkit.

and yet, we were able to accurately attribute the code released in that leak as being developed by NSA.

We know it was the NSA because of leaked NSA documents that admitted to the affiliation. Not from the tools themselves.

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#125

Earlier quoted context omitted.

> The idea that these attacks are just being made up or we don't have evidence who executed them is either willfully ignorant (a google search will provide plenty of evidence) or actively malicious. Tools to fake such attribution and evidence were literally part of the leaked NSA/Equation Group toolkit.

Sure, and we should be willing to entertain skepticism of specific incidents when justified. The idea that there's no such thing as real attribution, that it's always fabricated based on political convenience, is just unproductive nihilism.

There is such a thing as real attribution. Just not from IPs and tools that are easily faked. You need more than that, and indeed there were many cases were we got more than that.

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#126

Earlier quoted context omitted.

Due to the level of control the Chinese government imposes on all the corporations within it, is it fair to say that such acts can't be done without the cooperation on some level of the govt? As opposed to many western countries where the companies might be patriotic, but they have minimal fear of taking on the government in general in the courts if they feel they are in the right. Perhaps Chinese companies have the…

No. It is not. China is a big country and the Chinese government does not control everything that is going on. Most hacking is done by kids with computers and uses trivial exploits: easy to guess passwords or security holes that are left unpatched for years after they are documented. Fairly regularly I get a phone call from a guy with a strong accent claiming to be from Microsoft support. No one blames the Indian or…

Chinese citizens cannot even mention recent historical events on in private messages on the internet without approval from the government, and you're trying to tell us that some "kids with computers" were able to carry out a sophisticated years-long cyberattack? "Kids with computers" might be plausible in a free country, but not in China.

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#128

There is so much doubt in this comment section around the validity of the accusations. We have a number of countries putting forward the knowledge they have mutually agreed upon. What is shared is known to a high degree of certainty. Any details that are questionable would not have been shared prematurely.

I would be happy to believe them if they released more technical details. Otherwise, just sounds like a typical "best-guess" based on geopolitical considerations.

For example, the NYTimes just published a piece about a "Rogue" section of the Commerce Department that used racial profiling targeting Chinese Americans:

https://www.nytimes.com/2021/07/16/us/politics/commerce-depa...

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#129

Earlier quoted context omitted.

Sure, and we should be willing to entertain skepticism of specific incidents when justified. The idea that there's no such thing as real attribution, that it's always fabricated based on political convenience, is just unproductive nihilism.

There is such a thing as real attribution. Just not from IPs and tools that are easily faked. You need more than that, and indeed there were many cases were we got more than that.

Agreed, but this seems to be one of the cases where we got more than that. I don't have time to read the indictment in a ton of depth, but it tells a very detailed story about some of the hackers and how they organized the hacking; it's not just "the IP matched so it's gotta be them".

Re: U.S. and key allies accuse China of Microsoft Exchange cyberattacks

#130
China has been accused of hacking and/or electronic spying by other states.

Russia has been accused of hacking and/or electronic spying by other states.

North Korea has been accused of hacking and/or electronic spying by other states.

And yes, the US and quite a few European states -- and many other countries -- have also been accused of hacking and/or electronic spying by other states[a].

All these governments are playing with explosives: The right spark at the wrong place at the wrong time can start a fire.

Seemingly "minor" incidents have triggered wars in the past.[b]

--

[a] Including via highly-targeted malware such as https://en.wikipedia.org/wiki/Stuxnet

[b] For example, https://en.wikipedia.org/wiki/Pig_War_(1859) , https://en.wikipedia.org/wiki/Marco_Polo_Bridge_Incident , https://en.wikipedia.org/wiki/Football_War , https://en.wikipedia.org/wiki/Assassination_of_Archduke_Fran... -- to name a few off the top of my head.

Post reply on HN