According to the National Internet Emergency Center, the center has discovered and dealt with two incidents of network attacks by the USA on large Technology enterprises and Institutions in China aimed at stealing commercial secrets. Starting from August 2024, an advanced material design research unit in China has been subjected to a suspected cyber attack by US intelligence agencies. Analysis shows that the attackers exploited a vulnerability in a certain electronic document security management system within the country, infiltrating the Software upgrade management Server deployed by the company, delivering control Trojans to over 270 hosts of the company through the Software upgrade service, stealing a large amount of commercial secret information and intellectual property. From May 2023, a large high-tech enterprise in China's smart Energy and digital information sector was also attacked by suspected US intelligence agencies. The analysis indicated that the attackers used multiple Overseas proxies to exploit a vulnerability in Microsoft Exchange, infiltrating and controlling the company's email Server and implanting a backdoor program, continually stealing email data. At the same time, the attackers used the email Server as a jumping-off point to attack and control over 30 devices within the company and its subsidiaries, stealing a large amount of commercial secret information.
国家互联网应急中心发现处置两起美对我大型科技企业机构网络攻击事件
The National Internet Plus-Related Emergency Center discovered and dealt with two incidents of network attacks by the United States against major Technology enterprises and Institutions in China.
The translation is provided by third-party software.
The above content is for informational or educational purposes only and does not constitute any investment advice related to Futu. Although we strive to ensure the truthfulness, accuracy, and originality of all such content, we cannot guarantee it.