-
Brazil football clubs face massive sponsorship blow from betting ban
-
West Bank's violent settlers part of a new generation fuelled by ideology
-
ChatGPT maker wants to be the App Store for AI as safety concerns grow
-
US-led coalition ends mission in Iraq
-
Women fight fires and sexism in Indonesian Borneo
-
Pope-backed White Sox join Braves with MLB playoff wins
-
Forsling's OT blast lifts Florida over Carolina in NHL opener
-
NBA close to picking new $12-13bn Vegas team owners: report
-
Hurricane Polo sweeps over Mexico's Pacific coast, heads inland
-
LA28 Olympics torch relay to visit all 50 states
-
Grynspan pulls ahead in race to lead UN: diplomat
-
Spain brush aside Croatia in Nations League, England down Czechs
-
Trump touts AI boss pledge to self-regulate
-
Trump hails 'morally binding' AI self-regulation pledge
-
Oil down, but stocks lower as bond yields rise
-
Yamal inspires Spain to Croatia romp on World Cup homecoming
-
England break down stubborn Czechs to claim first Nations League win
-
UN to hold fourth informal poll of secretary-general candidates
-
UN Security Council extends Haiti anti-gang force by 6 months
-
Who are the Emiratis behind crisis-hit Manchester City?
-
Manchester City guilty of Premier League charges: What comes next?
-
Singer Angelique Kidjo urges Africans to 'create together'
-
Man City chief Soriano slams Premier League 'conspiracy theory'
-
Alleged Rihanna mansion shooter mentally fit for trial, says judge
-
Hurricane Polo sweeps over Mexico's Pacific coast
-
Mystery over UK airbase scare as police find petrol not explosives
-
Man City must be relegated after guilty verdict says club's former chairman
-
OpenAI unveils low-cost AI model, a day after shelving Astra upgrade
-
German far-right aims to lead Saxony-Anhalt govt in December
-
Premier League confirms Man City guilty of serious financial breaches
-
Little damage as Hurricane Polo sweeps over Mexico's Pacific coast
-
Brazil's Lula turns to Bad Bunny tune to criticise Trump ahead of polls
-
Manchester City guilty of breaking financial rules - Premier League
-
Nigerian dancer eyes world record after seven-day marathon
-
FIFA boss Infantino blasted as would-be 'emperor' by UEFA's Ceferin
-
Swiss regulator concludes Julius Baer bank probe
-
Stocks move lower despite oil prices dropping
-
Brazil's patron saint pulled into latest election scrap
-
AI driving up innovation investment: UN
-
Football overload leaves players near 'breaking point', warns Tebas
-
UN Security Council extends Haiti mission by 6 months
-
Paris Eiffel Tower says chief to step down after uproar over removing women staff
-
Man Utd do not deserve medals if Man City stripped of titles: Rooney
-
Amaze Holdings (NYSE: AMZE) Executes Binding LOI to Acquire BullionFX | Alchemy, a Decentralized Gold-Backed Financial Ecosystem for Valued at US$155 Million
-
Vana Completes Expanded Staking as Part of the Vega Upgrade, Publishes Expanded VANA Token Economics
-
Clashes between French teens, police as school blockades intensify
-
Spain to cap gas price hikes, extend fuel discounts
-
Stocks move sideways despite oil moving lower
-
'We just need rain': Germany's Rhine river hits new low
-
African leaders to gather in Egypt for business summit
US, Microsoft warn Chinese hackers attacking 'critical' infrastructure
State-sponsored Chinese hackers have infiltrated critical US infrastructure networks, the United States, its Western allies and Microsoft said Wednesday while warning that similar espionage attacks could be occurring globally.
Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets, but said "malicious" activity had also been detected elsewhere in the United States.
It said the hacking, dubbed "Volt Typhoon", had started in mid-2021 and was likely aimed at hampering the United States if there was conflict in the region.
"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement said.
"In this campaign, the affected organizations span the communications, manufacturing, utility, transportation, construction, maritime, government, information technology, and education sectors.
"Observed behavior suggests that the threat actor intends to perform espionage and maintain access without being detected for as long as possible."
Microsoft's statement coincided with an advisory released by US, Australian, Canadian, New Zealand and UK authorities.
They said a "state-sponsored cyber actor" from China was behind Volt Typhoon and that the hacking was likely occurring globally.
"This activity affects networks across US critical infrastructure sectors, and the authoring agencies believe the actor could apply the same techniques against these and other sectors worldwide," the advisory said.
The United States and its allies said the activities involved "living off the land" tactics, which take advantage of built-in network tools to blend in with normal Windows systems.
It warned that the hacking could then incorporate legitimate system administration commands that appear "benign".
-'Highly sophisticated'-
Microsoft said Volt Typhoon tried to blend into normal network activity by routing traffic through compromised small office and home office network equipment, including routers, firewalls and VPN hardware.
"They have also been observed using custom versions of open-source tools," Microsoft said.
Microsoft and the security agencies released guidelines for organisations to try and detect and counter the hacking.
The director of the US Cybersecurity and Infrastructure Security Agency, Jen Easterly, also released a warning related to Volt Typhoon.
"For years, China has conducted operations worldwide to steal intellectual property and sensitive data from critical infrastructure organizations around the globe," Easterly said.
"Today's advisory, put out in conjunction with our US and international partners, reflects how China is using highly sophisticated means to target our nation's critical infrastructure.
"This joint advisory will give network defenders more insights into how to detect and mitigate this malicious activity."
China offered no immediate response to the allegations. But it routinely denies carrying out state-sponsored cyber attacks.
China in turn regularly accuses the United States of cyber espionage.
While China and Russia have long targeted critical infrastructure, Volt Typhoon offered new insights into Chinese hacking, according to John Hultquist, chief analyst at US cybersecurity company Mandiant.
"Chinese cyberthreat actors are unique among their peers in that they have not regularly resorted to destructive and disruptive cyberattacks," he said.
"As a result, their capability is quite opaque.This disclosure is a rare opportunity to investigate and prepare for this threat."
P.Anderson--BTB