TechCrunch News 01月18日
Treasury sanctions Salt Typhoon hacking group behind breaches of major US telecom firms
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

美国政府宣布对一家与“盐风”黑客组织有关联的中国公司实施制裁,该组织被指责进行了美国历史上最大的电信黑客攻击。财政部外国资产控制办公室(OFAC)制裁了四川聚信和网络科技有限公司,该公司被认为与中国支持的“盐风”黑客组织有直接联系。该组织曾渗透包括AT&T和Verizon在内的多家美国电信和互联网供应商,获取美国高级政府官员和政治人物的私人通信。此外,另一名与中国国安部有关联的个人,因参与美国财政部的黑客攻击也被制裁,该攻击利用被盗密钥远程访问了财政部员工的工作站。美国财政部表示将继续追究恶意网络行为者的责任。

🚨 美国财政部制裁了四川聚信和网络科技有限公司,原因是该公司与“盐风”黑客组织有直接关联,该组织被指进行了美国历史上最大的电信黑客攻击,入侵了多家美国电信和互联网供应商。

🕵️‍♂️ 黑客组织“盐风”不仅窃取了美国高级政府官员和政治人物的私人通信,还入侵了执法机构用于合法收集客户数据的系统,可能获取了美国监控的中国目标身份等敏感数据。

🛡️ 除制裁四川聚信和外,美国还制裁了一名上海的网络行为者尹克成,他被指与中国国安部有关联,并参与了对美国财政部的黑客攻击,该攻击利用了从BeyondTrust公司窃取的密钥。

🏛️ 美国财政部官员强调,将继续使用其权力追究针对美国人民、公司和政府的恶意网络行为者的责任,包括那些专门针对财政部的行为。

The U.S. government has announced sanctions against a Chinese organization with links to Salt Typhoon, the hacking group responsible for the largest telecoms hack in U.S. history

The Treasury Department’s Office of Foreign Assets Control (OFAC) announced on Friday that it had sanctioned a China-based cybersecurity company, known as Sichuan Juxinhe Network Technology, which it says is directly linked to the China-backed Salt Typhoon hacking group.

Salt Typhoon was recently identified as carrying out the largest telecommunications hack in U.S. history, after infiltrating at least nine U.S. telecom and internet providers, including AT&T and Verizon, to gain access to the private communications of senior U.S. government officials and political figures. 

The hackers also hacked into the systems that law enforcement agencies use for court-authorized collection of customer data, potentially accessing data sensitive data such as identities of Chinese targets of U.S. surveillance. 

In its press release on Friday, OFAC said that Sichuan Juxinhe had “direct involvement in the exploitation of these U.S. telecommunication and internet service provider companies.” 

Treasury hackers sanctioned

OFAC also announced sanctions against Yin Kecheng, a cyber actor in Shanghai, which U.S. officials claim was responsible for the recent widespread hack of the U.S. Treasury.

The hack, which took place in late December, saw hackers use a private key stolen from BeyondTrust — a cybersecurity company that provides identity access tech to large organizations and government departments — to gain remote access to certain Treasury employee workstations. 

The cyberattack allowed hackers — another China state-backed group known as Silk Typhoon — to target various departments within the U.S. Treasury, including its sanctions office.

According to OFAC, Yin Kecheng has been a cyber actor for over a decade and is affiliated with China’s Ministry of State Security, an intelligence and security agency responsible for the country’s foreign intelligence collection.

U.S. Treasury official Adewale O. Adeyemo said in a statement Friday: “The Treasury Department will continue to use its authorities to hold accountable malicious cyber actors who target the American people, our companies, and the United States government, including those who have targeted the Treasury Department specifically.”

Earlier this month, the U.S. government sanctioned another China-based cybersecurity company over its alleged links to a government-backed hacking group known as Flax Typhoon. The Treasury said the company, Integrity Technology Group, had been involved in “multiple computer intrusion incidents against U.S. victims,” including U.S. critical infrastructure.

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

网络安全 黑客攻击 美国制裁 中国公司 电信安全
相关文章