By Interestana AI Editorial — AI-drafted, human-overseen. How we report
DOJ, FBI Link China-Backed Hackers to US Agency Breaches
The U.S. Department of Justice (DOJ) and the Federal Bureau of Investigation (FBI) have publicly attributed a series of significant cyber intrusions to a hacking group backed by the People's Republic of China. These breaches targeted multiple U.S. federal agencies and other organizations, marking a serious escalation in state-sponsored cyber espionage. The indictment unsealed on March 26, 2024, details the activities of seven Chinese nationals who allegedly operated as part of this malicious cyber activity, identified by cybersecurity researchers as the group "QTFY" or "Advanced Persistent Threat 40" (APT40).
According to court documents, the QTFY group engaged in a wide-ranging campaign of cyber intrusions spanning at least from 2011 to 2023. Their objectives were primarily focused on espionage, aiming to steal sensitive information from government agencies, academic institutions, and private companies across various sectors. The indictment specifically names individuals accused of participating in these activities, including Dong Jiazhi, Sun Kaoliang, and others, who are alleged to have worked for or on behalf of Chinese state-sponsored cyber operations. These operations were designed to facilitate China's economic development and to gain access to intellectual property and sensitive data.
The FBI and DOJ have emphasized that the indicted individuals are part of a broader network of Chinese hackers who have been responsible for numerous cyberattacks globally. The indictment states that these hackers utilized various sophisticated techniques, including spear-phishing campaigns, malware deployment, and exploiting software vulnerabilities, to gain unauthorized access to victim networks. The scope of the breaches is extensive, affecting entities within the United States and internationally, underscoring the pervasive threat posed by China-backed cyber actors. The investigation involved collaboration with international partners to track and attribute these activities.
This announcement by the DOJ and FBI serves as a stark warning regarding the persistent and evolving nature of cyber threats emanating from China. The agencies highlighted that the indicted individuals are believed to be operating from China and that the Chinese government has not taken action to stop these malicious activities. The U.S. government is committed to holding these actors accountable and to defending against such threats. The indictment details specific instances of hacking activities, including the compromise of email servers and the theft of sensitive data from various organizations, further illustrating the breadth and depth of the cyber espionage campaign. The prosecution aims to disrupt these operations and deter future attacks by making it clear that such actions will not go unpunished.
Original source — read the full reporting at the publisher:
Read on HousingWireGet the weekly AI digest
AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.