-
Niger junta says it is back in control after soldiers' mutiny
-
Djokovic kicks off latest Grand Slam quest under US Open lights
-
Erasmus calls Rennie barbs over Springbok scrumming 'nonsense'
-
'Sorry' De Zerbi won't panic after Spurs shambles
-
Lawrence's fifty leaves Pakistan facing record chase to level England series
-
UN, Nepal warn of climate threat after deadly floods
-
Netanyahu condemns settler attack in flashpoint West Bank village
-
USTA boss says structure of new player council not yet set
-
Munoz saves Iraola in Liverpool draw, big-spending Spurs lose again
-
Tiny Elversberg stun Leverkusen on Bundesliga debut, Dortmund beat Hamburg
-
Newcastle condemn dismal Spurs to second successive defeat
-
Three Texas Tech softball players hurt in jet ski collision
-
James Cleverly leaves shadow cabinet to seek London mayoralty
-
Police appeal for footage after life-threatening Stratford assault
-
Baladi Map app turns Lebanon’s local problems into a public record
-
Family searches for Boston engineer missing after Nepal-Tibet floods
-
Thirty-seven Mumbai pilgrims return after Nepal flood disruption
-
Dolly Parton’s Imagination Library leaves global children’s reading legacy
-
Ankle ligament tear ends Neeraj Chopra’s 2026 season
-
BMC rejects negligence claims in three Rajawadi Hospital maternity cases
-
Chinchpoklicha Chintamani begins 2026 arrival procession in Parel
-
Chembur man held over alleged poisoning of woman’s soft drink
-
Cyberabad civic body demolishes 19 unauthorised structures
-
Andhra Pradesh Speaker seeks stronger sports quota and school facilities
-
About 50 Karnataka travellers return from Nepal as 24 remain missing
-
Kolkata police register new FIR against Mamata Banerjee over rally timing
-
French campaign sharpens as far right accuses left over civil disobedience calls
-
India and China have not named two new border meeting sites
-
Court orders JIPMER assessment of Durai Dayanidhi before money-laundering trial
-
Tamil Nadu and NUS agree to expand postgraduate and research links
-
Chennai councillors unite across parties to demand ward development funds
-
Tamil Nadu goalball team’s national silver highlights need for wider support
-
Tambaram civic groups seek action on eight long-pending issues
-
Rural Tamil Nadu students present 64 technology projects at IIT-M research park
-
Matt Leinart assesses Arch Manning and the leading names in college football
-
Felony assaults on older New Yorkers rise sharply, police data show
-
Los Angeles triplets weigh 19.3 pounds in unusually heavy birth
-
New finds strengthen case for Bethsaida at Sea of Galilee site
-
Editorial questions Letitia James’ record as New York attorney general
-
Five college football games that could shape the 2026 season
-
In London, son's agonising wait for news of parents missing in Nepal-Tibet floods
-
Norway's King Haakon VIII pays tribute to late father in first speech
-
Ivory Coast captain Kessie snubs Juventus to rejoin Atalanta
-
South Africa survive onslaught to beat New Zealand and level series
-
Strasbourg fight back to beat Lens in Ligue 1
-
Study Examines Why Women Have Consensual Sex Without Initial Desire
-
Chennai Sets ₹100 Crore Flood-Readiness Plan for Vulnerable Areas
-
Milo Yiannopoulos Arrives in UK Following U.S. Deportation
-
Bryan Kohberger Seeks Judge’s Removal From Post-Conviction Case
-
Madurai Students Join Walkathon Promoting Drug-Free Lives
US, Microsoft warn Chinese hackers attacking 'critical' infrastructure
State-sponsored Chinese hackers have infiltrated critical US infrastructure networks, the United States, its Western allies and Microsoft said Wednesday while warning that similar espionage attacks could be occurring globally.
Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets, but said "malicious" activity had also been detected elsewhere in the United States.
It said the hacking, dubbed "Volt Typhoon", had started in mid-2021 and was likely aimed at hampering the United States if there was conflict in the region.
"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement said.
"In this campaign, the affected organizations span the communications, manufacturing, utility, transportation, construction, maritime, government, information technology, and education sectors.
"Observed behavior suggests that the threat actor intends to perform espionage and maintain access without being detected for as long as possible."
Microsoft's statement coincided with an advisory released by US, Australian, Canadian, New Zealand and UK authorities.
They said a "state-sponsored cyber actor" from China was behind Volt Typhoon and that the hacking was likely occurring globally.
"This activity affects networks across US critical infrastructure sectors, and the authoring agencies believe the actor could apply the same techniques against these and other sectors worldwide," the advisory said.
The United States and its allies said the activities involved "living off the land" tactics, which take advantage of built-in network tools to blend in with normal Windows systems.
It warned that the hacking could then incorporate legitimate system administration commands that appear "benign".
-'Highly sophisticated'-
Microsoft said Volt Typhoon tried to blend into normal network activity by routing traffic through compromised small office and home office network equipment, including routers, firewalls and VPN hardware.
"They have also been observed using custom versions of open-source tools," Microsoft said.
Microsoft and the security agencies released guidelines for organisations to try and detect and counter the hacking.
The director of the US Cybersecurity and Infrastructure Security Agency, Jen Easterly, also released a warning related to Volt Typhoon.
"For years, China has conducted operations worldwide to steal intellectual property and sensitive data from critical infrastructure organizations around the globe," Easterly said.
"Today's advisory, put out in conjunction with our US and international partners, reflects how China is using highly sophisticated means to target our nation's critical infrastructure.
"This joint advisory will give network defenders more insights into how to detect and mitigate this malicious activity."
China offered no immediate response to the allegations. But it routinely denies carrying out state-sponsored cyber attacks.
China in turn regularly accuses the United States of cyber espionage.
While China and Russia have long targeted critical infrastructure, Volt Typhoon offered new insights into Chinese hacking, according to John Hultquist, chief analyst at US cybersecurity company Mandiant.
"Chinese cyberthreat actors are unique among their peers in that they have not regularly resorted to destructive and disruptive cyberattacks," he said.
"As a result, their capability is quite opaque.This disclosure is a rare opportunity to investigate and prepare for this threat."
A.F.Rosado--PC