US Cyberattacks Hit China’s Military Industrial Complex: A New Front in Cyber Warfare
In a recent revelation, the Foreign Ministry of China has underscored the growing concern over the United States’ cyberattacks targeting Chinese institutions. These alarming findings highlight the US as a leading cyber threat to China, showcasing a pattern of malicious cyber activities aimed at undermining national security.
The Cyber Security Association of China has detailed two significant incidents of cyberattacks, asserting that US intelligence agencies have increasingly focused on Chinese high-tech military industrial universities, research institutes, and enterprises. The goal of these attacks appears to be the theft of sensitive research data and crucial information related to military design, development, and manufacturing.
One notable incident involved the exploitation of a vulnerability in the Microsoft Exchange email system. The attackers managed to infiltrate and control the email servers of a prominent Chinese defense enterprise. Here are some critical details from this case:
- From July 2022 to July 2023, the attackers maintained control over the company’s domain controller server.
- More than 50 critical internal devices were commandeered using this server as a pivot.
- Data-stealing malware was planted on the enterprise’s outward-facing servers to ensure continued access.
- Multiple covert channels were established within the enterprise’s network for the purpose of data exfiltration.
- Over 40 network assaults were launched, utilizing IP addresses from various countries, including Germany, Finland, South Korea, and Singapore.
- Emails containing sensitive information related to military industrial product design plans were stolen from 11 individuals, including senior management.
Another alarming case occurred between July and November 2024, where US intelligence agencies targeted a Chinese military industrial enterprise involved in the communication and satellite internet sector. In this incident, vulnerabilities in electronic file systems were exploited. Key points include:
- The attackers used IP addresses from Romania and the Netherlands to obscure their true identity.
- This approach reflects a highly targeted and covert method, posing significant threats to the security of China’s defense and military industrial sectors.
The Cyber Security Association emphasized that in 2024 alone, more than 600 cyberattacks were reported from foreign state-sponsored advanced persistent threat groups, with a significant focus on China’s defense and military industries. This data underscores the critical need for vigilance in the face of ongoing cyber threats.
In light of these findings, Foreign Ministry spokesman Guo Jiakun criticized the US for utilizing its allies in Europe and neighboring regions to execute these cyberattacks. He highlighted the hypocrisy of the US, which claims victimhood while simultaneously engaging in aggressive cyber activities against China.
“China firmly believes that cybersecurity is a common challenge that all nations must address collectively through dialogue and cooperation,” Guo Jiakun stated. He reassured that China remains committed to implementing necessary measures to protect its cybersecurity.
As the global landscape becomes increasingly intertwined with digital interactions, the importance of cybersecurity cannot be overstated. China’s response emphasizes the need for collaboration and mutual respect among nations to tackle these pressing challenges.
In conclusion, the ongoing cyberattacks attributed to US intelligence agencies highlight a critical issue that transcends national borders. Protecting sensitive data and ensuring national security in the military sector is paramount for China. The revelations serve as a wake-up call for all nations to prioritize cybersecurity and engage in cooperative strategies to combat cyber threats effectively.
Through continued vigilance and cooperative efforts, China aims to safeguard its interests and contribute to a more secure cyberspace for all nations involved.