Amnesty International Canada experienced a security breach on October 5 with the ultimate conclusion being that state-sponsored Chinese hackers penetrated the system for espionage purposes.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Chinese hackers linked to the advanced persistent threat actor UNC6508 breached North American research facilities via web applications and evaded detection for over a year.
The Metropolitan Transportation Authority says that Chinese hackers breached three computers in the New York subway via Ivanti’s Pulse Connect Secure VPN critical vulnerabilities.
Chinese hackers infiltrated Vatican's computer networks ahead of the high-profile talks between the Catholic Church and the Chinese government on the operations of the Church in China.
Security researchers believe that Chinese hackers are to blame for the attack in part because of the "selective" nature of the targets that were chosen for follow-on compromise via malicious software updates. Notepad++ is a free and broadly popular piece of software that is thought to have tens of millions of users worldwide.
At least 30,000 U.S. organizations are victims of an unusually aggressive Chinese cyber-espionage unit exploiting vulnerabilities in Microsoft Exchange mail Server software. The previously unknown state-sponsored Chinese hackers identified as...
Cybereason recently exposed a multi-year cyber espionage operation carried out by Chinese hackers where they follow their targets moving from country to country by hopping from one breached network to another.
The Chinese hackers, a state-backed team referred to as "Salt Typhoon," were spotted stealing data from ISPs and planting backdoors and other capabilities meant for use in future cyber attacks.
State-backed Chinese hackers can modify Cisco routers without being detected and install custom firmware that allows for persistent access, according to a new joint cybersecurity advisory published by CISA and both US and Japanese law enforcement agencies.
Chinese hackers have attempted to interfere in US elections before. Anonymous official sources have spoken out claiming that this year's free-ranging espionage campaign is seeking phone data from senior officials and leading candidates regardless of party affiliation.










