-
Indonesia deploys hundreds of soldiers to tackle Borneo fires
-
Duplantis locked in on 'grinding' for big bars
-
The last lap: Fans, drivers bid fond farewell to Dutch GP
-
Stokes says decision to leave Headingley off Ashes roster 'shambolic'
-
Silesia Diamond League: four events to watch
-
New arrival Rodri to miss Elche opener: Barca's Flick
-
Russell wins Dutch GP sprint race, Antonelli fourth
-
Atletico's Alvarez to return against Villarreal: Simeone
-
Mercedes driver George Russell wins Dutch GP sprint race
-
Dozens of civilians killed, kidnapped as jihadists clash in Nigeria
-
Ukraine strikes kill two children after Russia's deadly mall attack
-
Former envoys urge joint French, UK action on Palestinian territories
-
Pope visits San Marino, before addressing Italian political gathering
-
Australia lead by 101 in 2nd Bangladesh Test as 18 wickets fall on day one
-
Trump tariffs heap up as Canada tries to curb US reliance
-
'Aura' battles leap from social media to Latin America streets
-
Australia lose three wickets after skittling Bangladesh for 64
-
US, Canada fail to reach trade pact to avert Trump tariffs
-
Bangladesh all out for 64 in 2nd Test after Starc masterclass
-
Sudan farms lie barren as El Nino leaves Nile banks dry
-
Odyssey effect: stars sell Greece to a new wave of US tourists
-
Arctic shipping a daunting prospect in hotly contested region
-
South Korea to send first container ship through Arctic route
-
In US, rare earths extracted from coal mine wastewater
-
Starc takes 5-11 to leave Bangladesh reeling in 2nd Test
-
Nakashima pounds Fritz, Bejlek beats Keys in Cincinnati upsets
-
Injured Rune withdraws from US Open
-
Canadian negotiator says 'more work to do' on US trade deal
-
Nakashima knocks out Fritz to reach Cincinnati semi-finals
-
'Solid' Clark takes solo lead at BMW Championship
-
Ukraine says 'cynical' Russian strike on shopping centre killed 16
-
Arteta hails Arsenal's desire after perfect start to title defence
-
TikTok to pay $400 mn settlement in US children's privacy case
-
Betis down Real Sociedad in La Liga opener
-
MLS fines Messi for striking an opponent
-
Mexican governor resumes job despite US drug charges
-
Gouiri double fires Marseille past Strasbourg in Ligue 1 opener
-
Arsenal rout Coventry to open Premier League season in style
-
Mavericks buy out Thompson, now reportedly bound for Heat
-
Giant-killer Bejlek overhauls Keys to reach Cincinnati semi-finals
-
England v Pakistan first Test: Three talking points
-
Man Utd agree deal for Brighton midfielder Baleba: reports
-
US, Canada push to seal trade deal as deadline nears
-
Werro wins Lausanne 800m, well off world record pace
-
One dead, three wounded after sword attack at Swedish high school
-
China mulls bid to host 2028 UN climate talks: sources
-
Ukraine says 'cynical' Russian strike on shopping centre killed 15
-
Jones becomes third Englishman to join Inter this summer
-
US Supreme Court allows White House ballroom construction for now
-
Mexican governor wanted on US drug charges returns to job
US, Microsoft warn Chinese hackers attacking 'critical' infrastructure
State-sponsored Chinese hackers have infiltrated critical US infrastructure networks, the United States, its Western allies and Microsoft said Wednesday while warning that similar espionage attacks could be occurring globally.
Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets, but said "malicious" activity had also been detected elsewhere in the United States.
It said the hacking, dubbed "Volt Typhoon", had started in mid-2021 and was likely aimed at hampering the United States if there was conflict in the region.
"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement said.
"In this campaign, the affected organizations span the communications, manufacturing, utility, transportation, construction, maritime, government, information technology, and education sectors.
"Observed behavior suggests that the threat actor intends to perform espionage and maintain access without being detected for as long as possible."
Microsoft's statement coincided with an advisory released by US, Australian, Canadian, New Zealand and UK authorities.
They said a "state-sponsored cyber actor" from China was behind Volt Typhoon and that the hacking was likely occurring globally.
"This activity affects networks across US critical infrastructure sectors, and the authoring agencies believe the actor could apply the same techniques against these and other sectors worldwide," the advisory said.
The United States and its allies said the activities involved "living off the land" tactics, which take advantage of built-in network tools to blend in with normal Windows systems.
It warned that the hacking could then incorporate legitimate system administration commands that appear "benign".
-'Highly sophisticated'-
Microsoft said Volt Typhoon tried to blend into normal network activity by routing traffic through compromised small office and home office network equipment, including routers, firewalls and VPN hardware.
"They have also been observed using custom versions of open-source tools," Microsoft said.
Microsoft and the security agencies released guidelines for organisations to try and detect and counter the hacking.
The director of the US Cybersecurity and Infrastructure Security Agency, Jen Easterly, also released a warning related to Volt Typhoon.
"For years, China has conducted operations worldwide to steal intellectual property and sensitive data from critical infrastructure organizations around the globe," Easterly said.
"Today's advisory, put out in conjunction with our US and international partners, reflects how China is using highly sophisticated means to target our nation's critical infrastructure.
"This joint advisory will give network defenders more insights into how to detect and mitigate this malicious activity."
China offered no immediate response to the allegations. But it routinely denies carrying out state-sponsored cyber attacks.
China in turn regularly accuses the United States of cyber espionage.
While China and Russia have long targeted critical infrastructure, Volt Typhoon offered new insights into Chinese hacking, according to John Hultquist, chief analyst at US cybersecurity company Mandiant.
"Chinese cyberthreat actors are unique among their peers in that they have not regularly resorted to destructive and disruptive cyberattacks," he said.
"As a result, their capability is quite opaque.This disclosure is a rare opportunity to investigate and prepare for this threat."
I.Matar--SF-PST