Pakistanis angry over detentions in Times Sq. case Monday, May 24, 2010
ISLAMABAD – Relatives of three men detained by Pakistan for alleged links to the suspect in the attempted Times Square bombing say the men are innocent.
They
AFP - Thursday, August 6TAIPEI (AFP) - - Taiwan's Beijing-friendly government on Wednesday denied boycotting an Australian film festival amid a row over the e
BERLIN (Reuters) - Chancellor Angela Merkel suffered a double blow on Thursday as a senior party ally in east German
Minister seeks closure of anti-Berlusconi websites Wednesday, December 16, 2009
ROME (AFP) - – The Italian government moved Tuesday to close down Internet sites encouraging further violence against Prime Minister Silvio Berlusconi, who
By ELAINE KURTENBACH,AP Business Writer AP - Wednesday, March 18SHANGHAI - Asia's stock market rally seemed to be running out of steam Wednesday, despite an
Edition:
U.S.
Africa
Arabic
Argentina
Brazil
Canada
China
France
Germany
India
Italy
Japan
Latin America
Mexico
Russia
Spain
United Kingdom
Home
Business
Business Home
Economy
Technology
Media
Small Business
Green Business
Legal
Deals
Earnings
Summits
Business Video
Markets
Markets Home
U.S. Markets
European Markets
Asian Markets
Global Market Data
Indices
M&A
Stocks
Bonds
Currencies
Commodities
Futures
Funds
peHUB
World
World Home
U.S.
Brazil
China
Euro Zone
Japan
Mexico
Russia
Afghan Journal
Africa Journal
India Insight
Global News Journal
Pakistan: Now or Never?
World Video
Politics
Politics Home
Front Row Washington
Politics Video
Technology
Technology Home
MediaFile
Science
Tech Video
Opinion
Opinion Home
Chrystia Freeland
Felix Salmon
Breakingviews
George Chen
Bernd Debusmann
Gregg Easterbrook
James Pethokoukis
James Saft
John Wasik
Christopher Whalen
Ian Bremmer
Mohamed El-Erian
Lawrence Summers
The Great Debate
Unstructured Finance
Newsmaker
MuniLand
Money
Money Home
Analyst Research
Global Investing
MuniLand
Reuters Money
Alerts
Watchlist
Portfolio
Stock Screener
Fund Screener
Personal Finance Video
Life & Culture
Health
Sports
Arts
Faithworld
Business Traveler
Left Field
Entertainment
Oddly Enough
Lifestyle Video
Pictures
Pictures Home
Reuters Photographers
Full Focus
Video
Article
Comments (0)
Editor's Choice
U.S. says insurers must fully cover birth control
Government hankers for hackers
Analysis: Gas engines at center of efficiency drive
Heat, thunderstorms and tropical storms on tap
U.S. nuclear fund for waste, not deficit: panel
TV product placement a junk food ad loophole
Exclusive: Nine Google complainants in EU probe
Himalaya glaciers shrinking on global warming
Reuters Money: Consumer-driven health plans
Video: Japan's quake back to life on giant globe
Follow Reuters
Facebook
Twitter
RSS
YouTube
Read
US STOCKS-Massive rout spells trouble for Wall Street
02 Aug 2011
20-million year-old ape skull found in Uganda
02 Aug 2011
HIV epidemics emerging in Middle East, North Africa: study
02 Aug 2011
Putin says U.S. is "parasite" on global economy
01 Aug 2011
Analysis: Obama suffers political setback in debt deal
|
1:52am EDT
Discussed
245
Putin says U.S. is a ”parasite” on global economy
216
Vote delayed on debt bill as default date looms
167
Debt compromise eyed under deadline squeeze
Watched
Israel unveils missile video
Mon, Aug 1 2011
Scientists warn of "Planet of the Apes" scenario
Sat, Jul 30 2011
5 things you don't know about the debt deal
8:42am EDT
Biggest-ever series of cyber attacks uncovered, U.N. hit
Tweet
Share this
Email
Print
Related News
Q+A: Massive cyber attack dubbed "Operation Shady RAT"
12:11am EDT
Analysis & Opinion
The myth of the irrational Murdoch
Recent corporate disclosures reflect unease over U.S. debt ceiling impasse
Related Topics
Technology »
United Nations »
Cyber Crime »
Josh Mayeux, network defender, works at the Air Force Space Command Network Operations & Security Center at Peterson Air Force Base in Colorado Springs, Colorado July 20, 2010.
Credit: Reuters/Rick Wilking
By Jim Finkle
BOSTON |
Wed Aug 3, 2011 12:11am EDT
BOSTON (Reuters) - Security experts have discovered the biggest series of cyber attacks to date, involving the infiltration of the networks of 72 organizations including the United Nations, governments and companies around the world.
Security company McAfee, which uncovered the intrusions, said it believed there was one "state actor" behind the attacks but declined to name it, though one security expert who has been briefed on the hacking said the evidence points to China.
The long list of victims in the five-year campaign include the governments of the United States, Taiwan, India, South Korea, Vietnam and Canada; the Association of Southeast Asian Nations (ASEAN); the International Olympic Committee (IOC); the World Anti-Doping Agency; and an array of companies, from defense contractors to high-tech enterprises.
In the case of the United Nations, the hackers broke into the computer system of the UN Secretariat in Geneva in 2008, hid there unnoticed for nearly two years, and quietly combed through reams of secret data, according to McAfee.
"Even we were surprised by the enormous diversity of the victim organizations and were taken aback by the audacity of the perpetrators," McAfee's vice president of threat research, Dmitri Alperovitch, wrote in a 14-page report released on Wednesday.
"What is happening to all this data ... is still largely an open question. However, if even a fraction of it is used to build better competing products or beat a competitor at a key negotiation (due to having stolen the other team's playbook), the loss represents a massive economic threat."
McAfee learned of the extent of the hacking campaign in March this year, when its researchers discovered logs of the attacks while reviewing the contents of a "command and control" server that they had discovered in 2009 as part of an investigation into security breaches at defense companies.
It dubbed the attacks "Operation Shady RAT" and said the earliest breaches date back to mid-2006, though there might have been other intrusions as yet undetected. (RAT stands for "remote access tool," a type of software that hackers and security experts use to access computer networks from afar).
Some of the attacks lasted just a month, but the longest -- on the Olympic Committee of an unidentified Asian nation -- went on and off for 28 months, according to McAfee.
"Companies and government agencies are getting raped and pillaged every day. They are losing economic advantage and national secrets to unscrupulous competitors," Alperovitch told Reuters.
"This is the biggest transfer of wealth in terms of intellectual property in history," he said. "The scale at which this is occurring is really, really frightening."
CHINA CONNECTION?
He said that McAfee had notified all the 72 victims of the attacks, which are under investigation by law enforcement agencies around the world. He declined to give more details, such as the names of the companies hacked.
Jim Lewis, a cyber expert with the Center for Strategic and International Studies, was briefed on the discovery by McAfee. He said it was very likely that China was behind the campaign because some of the targets had information that would be of particular interest to Beijing.
The systems of the IOC and several national Olympic Committees were breached in the run-up to the 2008 Beijing Games, for example.
And China views Taiwan as a renegade province, and political issues between them remain contentious even as economic ties have strengthened in recent years.
"Everything points to China. It could be the Russians, but there is more that points to China than Russia," Lewis said.
He added that the U.S. and Britain have capabilities to pull off this kind of campaign, but said, "We wouldn't spy on ourselves and the Brits wouldn't spy on us."
McAfee, which was acquired by Intel Corp this year, would not comment on whether China was responsible. Security researchers who work for large corporations are often reluctant to link governments to cyber attacks out of fear it could hurt their business in those countries.
HACKERS CONFERENCE
The UN said it was aware of the report, and that it has started an investigation to ascertain if there was an intrusion.
"The idea is to look into the entire Geneva network," said Farhan Haq, Deputy Spokesperson for the UN Secretary-General, adding that it was difficult to quantify the potential damage without knowing exactly what had been attacked.
He declined to be drawn on who might be behind the attacks. When asked what would happen if it turned out to be China, he said: "We'll have to cross that bridge once we find out what happened to our network."
McAfee released the report to coincide with the start of the Black Hat conference in Las Vegas on Wednesday, an annual gathering of security professionals and hackers who use their skills to promote security and fight cyber crime.
In the scorching desert heat, they will meet to talk about a series of recent headline-grabbing hacks, such as on Lockheed Martin Corp, the International Monetary Fund, Citigroup Inc, Sony Corp and EMC Corp's RSA Security.
Experts will disclose security vulnerabilities in commonly used software, computers, services and electronics to help companies and governments combat criminal hackers.
The activist groups Anonymous and Lulz Security have recently grabbed the spotlight for temporarily shutting down some high-profile websites and defacing others.
But attacks like Operation Shady RAT are far more costly and often undisclosed, as victims fear reputational damage or attention from other hackers. McAfee sees Operation Shady RAT as the tip of the iceberg.
"I am convinced that every company in every conceivable industry with significant size and valuable intellectual property and trade secrets has been compromised (or will be shortly), with the great majority of the victims rarely discovering the intrusion or its impact," Alperovitch wrote in the report.
"In fact, I divide the entire set of Fortune Global 2000 firms into two categories: those that know they've been compromised and those that don't yet know."
(Additional reporting from Tom Miles in Geneva, editing by Tiffany Wu, Martin Howell)
Technology
United Nations
Cyber Crime
Related Quotes and News
Company
Price
Related News
Tweet this
Link this
Share this
Digg this
Email
Reprints
We welcome comments that advance the story through relevant opinion, anecdotes, links and data. If you see a comment that you believe is irrelevant or inappropriate, you can flag it to our editors by using the report abuse links. Views expressed in the comments do not represent those of Reuters. For more information on our comment policy, see http://blogs.reuters.com/fulldisclosure/2010/09/27/toward-a-more-thoughtful-conversation-on-stories/
Comments (0)
Be the first to comment on reuters.com.
Add yours using the box above.
Social Stream (What's this?)
Edition:
U.S.
Africa
Arabic
Argentina
Brazil
Canada
China
France
Germany
India
Italy
Japan
Latin America
Mexico
Russia
Spain
United Kingdom
Back to top
Reuters.com
Business
Markets
World
Politics
Technology
Opinion
Money
Pictures
Videos
Site Index
Mobile
Legal
Bankruptcy Law
California Legal
New York Legal
Securities Law
Support & Contact
Contact Us
Advertise With Us
Connect with Reuters
Twitter
Facebook
LinkedIn
Our Flagship financial information platform incorporating Reuters Insider
An ultra-low latency infrastructure for electric trading and data distribution
A connected approach to governance, risk and compliance
Our next generation legal research platform
Our global tax workstation
Thomsonreuters.com
About Thomson Reuters
Investor Relations
Careers
Contact Us
Thomson Reuters is the world's largest international multimedia news agency, providing investing news, world news, business news, technology news, headline news, small business news, news alerts, personal finance, stock market, and mutual funds information available on Reuters.com, video, mobile, and interactive television platforms. Thomson Reuters journalists are subject to an Editorial Handbook which requires fair presentation and disclosure of relevant interests.
NYSE and AMEX quotes delayed by at least 20 minutes. Nasdaq delayed by at least 15 minutes. For a complete list of exchanges and delays, please click here.