Live data from Hacker News

PRC Targeting of Commercial Telecommunications Infrastructure

fbi.gov

81–90 of 157 posts

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#81
post #56

Earlier quoted context omitted.

We've had multiple bills proposed by multiple countries for government mandated backdoors. Multiple articles refer to how these bills would create backdoors, multiple computer security experts say the bills would create backdoors in the software. Under your definition of the word they'd all be using the word incorrectly because logically no bill could create a legal backdoor by definition. It's seems there's a semant…

These articles use the word "backdoor" for effect, for example https://www.schneier.com/blog/archives/2021/08/apple-adds-a-... >. The bills you refer to by multiple countries simply want their own in-house wiretapping apparatus, because they don't want to be dependent on the US. Specifically, I'm thinking of EU's "chat control". Ironically those who oppose it are unwittingly doing the bidding for a more powerful US.…

No they use the word backdoor because there is no better word for these pathwatys/purposefully created weak spots in access to the software. Seriously please give me one that emphasises the security detriment to the 1st party user and i'll happily use it instead.

I'll also add that ironically those who don't oppose these bills are unwittingly doing the bidding of strategic adversaries as demonstrated quite adequately by the PRC here.

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#82
post #35

I was working with MISP[0], an open-source threat intelligence sharing platform, and came across a really interesting dataset from the Australian Strategic Policy Institute on China's technology research institutions[1]. I liked the data so much I built a quick cross-filter visualization on top of it to help explore it[2]. The data offers a fairly comprehensive and interesting perspective on China's research prioriti…

https://raw.githubusercontent.com/MISP/misp-galaxy/refs/head...

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#84
post #45
post #35

I was working with MISP[0], an open-source threat intelligence sharing platform, and came across a really interesting dataset from the Australian Strategic Policy Institute on China's technology research institutions[1]. I liked the data so much I built a quick cross-filter visualization on top of it to help explore it[2]. The data offers a fairly comprehensive and interesting perspective on China's research prioriti…

> we are falling far behind in many areas, including cyber security In terms of quantity and quality of talent, I don't think the western world would fall behind China, especially with their strict control of information. Most people there will have difficulty independently learning about cybersecurity. The difference is that most talent is captured by the private sector with higher compensation or bounties. Meanwhil…

Any state actor who puts in the effort can get pretty good, and some countries make a very specific effort in this area. North Korea is one. Imagine the brightest people in your state (say, population 26 million) were all nudged into one very specific talent funnel, with the goal of stealing money for the government.

China is different. Not quite as focused in terms of sheer government directive, but just think of the Chinese people you do know and extrapolate out the level of effort and talent. Being overconfident seems like a mistake.

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#85
post #47
post #45

Earlier quoted context omitted.

> we are falling far behind in many areas, including cyber security In terms of quantity and quality of talent, I don't think the western world would fall behind China, especially with their strict control of information. Most people there will have difficulty independently learning about cybersecurity. The difference is that most talent is captured by the private sector with higher compensation or bounties. Meanwhil…

> Most people there will have difficulty independently learning about cybersecurity. Speaking from my own limited anecdata, but since the 90s in order to use the internet in China you basically had to be somewhat proficient in "cybersecurity" just because of all the required hoops to jump through. There were definitely a lot of script kiddies, but the Chinese exploit scene (amateur and professional) has always been b…

Western society is criminalizing and repressing such culture, so China has already won because they fail at doing the same.

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#86
post #45
post #35

I was working with MISP[0], an open-source threat intelligence sharing platform, and came across a really interesting dataset from the Australian Strategic Policy Institute on China's technology research institutions[1]. I liked the data so much I built a quick cross-filter visualization on top of it to help explore it[2]. The data offers a fairly comprehensive and interesting perspective on China's research prioriti…

> we are falling far behind in many areas, including cyber security In terms of quantity and quality of talent, I don't think the western world would fall behind China, especially with their strict control of information. Most people there will have difficulty independently learning about cybersecurity. The difference is that most talent is captured by the private sector with higher compensation or bounties. Meanwhil…

That doesn’t sound like China at all. Having worked in Beijing for 9 years, they pay techies fairly well, not USA FAANG well, but better than Japan, much of Europe, Korea, even Singapore. So there is a lot of private sector movement in these areas, not just government. Information is easily obtained, piracy rates are still very high so it’s not like anything is really locked down behind a paywall. There are plenty of hackers who are in it with a passion, not just for the money, much like you’d find in the states or anywhere in the developed world.

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#87
post #45
post #35

I was working with MISP[0], an open-source threat intelligence sharing platform, and came across a really interesting dataset from the Australian Strategic Policy Institute on China's technology research institutions[1]. I liked the data so much I built a quick cross-filter visualization on top of it to help explore it[2]. The data offers a fairly comprehensive and interesting perspective on China's research prioriti…

> we are falling far behind in many areas, including cyber security In terms of quantity and quality of talent, I don't think the western world would fall behind China, especially with their strict control of information. Most people there will have difficulty independently learning about cybersecurity. The difference is that most talent is captured by the private sector with higher compensation or bounties. Meanwhil…

> In terms of quantity

At the very least China is generally gonna have everyone else beat on quantity of people involved in quite a lot of things.

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#88
post #45

Earlier quoted context omitted.

> we are falling far behind in many areas, including cyber security In terms of quantity and quality of talent, I don't think the western world would fall behind China, especially with their strict control of information. Most people there will have difficulty independently learning about cybersecurity. The difference is that most talent is captured by the private sector with higher compensation or bounties. Meanwhil…

That doesn’t sound like China at all. Having worked in Beijing for 9 years, they pay techies fairly well, not USA FAANG well, but better than Japan, much of Europe, Korea, even Singapore. So there is a lot of private sector movement in these areas, not just government. Information is easily obtained, piracy rates are still very high so it’s not like anything is really locked down behind a paywall. There are plenty of…

Hahahhahahah no way. Salaries in Japan, Korea, Singapore are WAY better than China.

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#89
post #85
post #47

Earlier quoted context omitted.

> Most people there will have difficulty independently learning about cybersecurity. Speaking from my own limited anecdata, but since the 90s in order to use the internet in China you basically had to be somewhat proficient in "cybersecurity" just because of all the required hoops to jump through. There were definitely a lot of script kiddies, but the Chinese exploit scene (amateur and professional) has always been b…

Western society is criminalizing and repressing such culture, so China has already won because they fail at doing the same.

They are very clear about who is a valid target though. I think you’ll quickly find that those attacking domestic targets rapidly disappear.

Re: PRC Targeting of Commercial Telecommunications Infrastructure

#90

Whenever I see these news & FBI releases about Chinese state-sponsored hackers breaching systems in America, I wonder whether the same thing happens over there: American malware and hacker groups attacking & laying landmines in China's internet infrastructure, although the Chinese may not publicize these exploits because their system opts to maintain an air of invincibility.

Yes, the US famously has breached foreign infrastructure. In Confessions of an Economic Hitman[0], Josh Perkins discusses how he knows on good authority the US could shutdown the Japanese electrical grid with relative ease if needed, which an ally. Imagine what they do to perceived enemies. [0]: https://www.goodreads.com/book/show/2159.Confessions_of_an_E... This book was on of my favorite books to site in extemporan…

The US could do a great many things to Japan with relative ease, given their (relatively) enormous military presence in the country.
Post reply on HN