Pakistanis angry over detentions in Times Sq. case Monday, May 24, 2010
ISLAMABAD – Relatives of three men detained by Pakistan for alleged links to the suspect in the attempted Times Square bombing say the men are innocent.
They
AFP - Thursday, August 6TAIPEI (AFP) - - Taiwan's Beijing-friendly government on Wednesday denied boycotting an Australian film festival amid a row over the e
BERLIN (Reuters) - Chancellor Angela Merkel suffered a double blow on Thursday as a senior party ally in east German
Minister seeks closure of anti-Berlusconi websites Wednesday, December 16, 2009
ROME (AFP) - – The Italian government moved Tuesday to close down Internet sites encouraging further violence against Prime Minister Silvio Berlusconi, who
By ELAINE KURTENBACH,AP Business Writer AP - Wednesday, March 18SHANGHAI - Asia's stock market rally seemed to be running out of steam Wednesday, despite an
Edition:
U.S.
Africa
Arabic
Argentina
Brazil
Canada
China
France
Germany
India
Italy
Japan
Latin America
Mexico
Russia
Spain
United Kingdom
Home
Business
Business Home
Economy
Davos 2012
Technology
Media
Small Business
Legal
Deals
Earnings
Summits
Business Video
The Freeland File
Markets
Markets Home
U.S. Markets
European Markets
Asian Markets
Global Market Data
Indices
M&A
Stocks
Bonds
Currencies
Commodities
Futures
Funds
peHUB
World
World Home
U.S.
Brazil
China
Euro Zone
Japan
Mexico
Russia
India Insight
World Video
Reuters Investigates
Decoder
Politics
Politics Home
Election 2012
Issues 2012
Candidates 2012
Tales from the Trail
Political Punchlines
Supreme Court
Politics Video
Tech
Technology Home
MediaFile
Science
Tech Video
Tech Tonic
Opinion
Opinion Home
Chrystia Freeland
John Lloyd
Felix Salmon
Jack Shafer
David Rohde
Bernd Debusmann
Nader Mousavizadeh
Lucy P. Marcus
David Cay Johnston
Bethany McLean
Edward Hadas
Hugo Dixon
Ian Bremmer
Mohamed El-Erian
Lawrence Summers
Susan Glasser
The Great Debate
Steven Brill
Geraldine Fabrikant
Breakingviews
Equities
Credit
Private Equity
M&A
Macro & Markets
Politics
Breakingviews Video
Money
Money Home
Global Investing
MuniLand
Unstructured Finance
Linda Stern
Mark Miller
John Wasik
James Saft
Analyst Research
Alerts
Watchlist
Portfolio
Stock Screener
Fund Screener
Personal Finance Video
Money Clip
Life
Health
Sports
Arts
Faithworld
Business Traveler
Entertainment
Oddly Enough
Lifestyle Video
Pictures
Pictures Home
Reuters Photographers
Full Focus
Video
Reuters TV
Reuters News
Article
Comments (0)
Follow Reuters
Facebook
Twitter
RSS
YouTube
Read
Obama administration rejects Keystone oil pipeline
4:07pm EST
7 charged in $62 million Dell insider-trading case
4:15pm EST
Divers suspend search of capsized Italy liner
|
1:43pm EST
Pockets of Internet go dark to protest piracy bills
|
3:44pm EST
Italy disaster ship crew fought to save passengers
10:49am EST
Discussed
145
Buffett to GOP: You pay and so will I
123
Romney opens 21-point lead in South Carolina: Reuters/Ipsos poll
84
Ohio woman loses appeal on ”White Only” pool sign
Watched
Audio of ship evacuation call released
Tue, Jan 17 2012
Amateur video shows cruise ship evacuation
Mon, Jan 16 2012
Planes, blades, automobiles at new James Bond exhibit
Mon, Jan 16 2012
Suspicion grows China was behind hack of U.S. commission
Tweet
Share this
Email
Print
Related News
Fake memo but real code? India-U.S. hacking mystery deepens
Wed, Jan 11 2012
U.S. authorities probe U.S.-China commission email hack
Tue, Jan 10 2012
UPDATE 3-U.S. authorities probe U.S.-China commission email hack
Tue, Jan 10 2012
China urges tighter Internet security after series of data leaks
Fri, Dec 30 2011
Analysis & Opinion
Unravelling India: Part 1
China’s economic data (still) not credible
Related Topics
Politics »
Tech »
Media »
China »
By Mark Hosenball
WASHINGTON |
Wed Jan 18, 2012 3:20pm EST
WASHINGTON (Reuters) - Suspicion is growing that operatives in China, rather than India, were behind the hacking of emails of an official U.S. commission that monitors relations between the United States and China, U.S. officials said.
News of the hacking of the U.S.-China Economic and Security Review Commission surfaced earlier this month when an amateur "hacktivist" group purporting to operate in India published what it said was a memo from an Indian Military Intelligence unit to which extracts from commission e-mails were attached.
But U.S. officials who spoke to Reuters on condition of anonymity said the roundabout way the commission's emails were obtained strongly suggests the intrusion originated in China, possibly by amateurs, and not from India's spy service.
A large cache of raw email data from the security breach, reviewed by Reuters, indicates that the principal target of the intruders was not the commission, but instead a Washington-based non-governmental pro-trade group called the National Foreign Trade Council (NFTC).
The trade council is headed by William Reinsch, a former top U.S. Commerce Department official who until recently served as the U.S.-China Commission's chairman.
A large proportion of the raw email traffic downloaded by the hackers consists of messages to and from Reinsch at his NFTC email address. Many of the emails were spam, but some related to the work of the commission, which was set up by Congress to take a critical look at a wide range of U.S. dealings with China.
Reinsch told Reuters that the NFTC first became aware in November that large quantities of its message traffic had been hacked. He said that law enforcement authorities, including the FBI, had been quickly notified. The FBI has declined comment.
Reinsch said he could think of "no particular reason" why the Indian government or Indian hackers would be interested in him. By contrast, he and several other U.S. officials said that Chinese hackers, whether amateur or directly affiliated with Chinese government, would have great interest in the U.S.-China Commission's activities, both public and private.
SOFT TARGET
Sources familiar with the hacking and the related investigation said they draw two inferences from the fact that the principal target of the hack appears to have been Reinsch's email account at NFTC.
First of all, the sources said they found it difficult to believe anyone connected with India would have taken the time or effort to track down Reinsch or his NFTC account, whereas his chairmanship of the U.S.-China Commission made him a potential major target for Chinese hackers.
Secondly, said the sources, the fact that Reinsch's NFTC emails were the principal target suggests that whoever hacked them was hunting for a soft target with poor cyber-security. This suggests the hackers were amateurs rather than a foreign spy service.
Pinning down the origin and perpetrator of a particular cyber-intrusion can be fiendishly difficult, if not impossible, as hackers frequently take steps to mask their identity or appear that they are from a third country.
One official familiar with the matter said that it was possible that all the hacked email traffic, including messages related to the U.S.-China Commission, originated with the NFTC.
Under this scenario, the reason commission traffic was included in the hacked material was that it consisted of copies of commission messages which were sent to Reinsch at his NFTC email address. But other officials said it was also still possible some emails were stolen directly from the commission or private email accounts of other commissioners.
A person familiar with details of the incident and related investigation said the hacked emails spanned a six-month period from late March to late October last year. The source said that about 85 percent of the traffic consisted of emails incoming to the NFTC, with the other 15 percent being outgoing messages from NFTC's server.
The source said that there were significant gaps in the hacked traffic, covering both day-long and week-long periods, bolstering the notion the hacking was done by amateurs.
Investigators are still trying to determine if the hacker successfully targeted NFTC's local network or a network which fed messages to a mobile device used by Reinsch.
INDIAN MEMO
The purported Indian intelligence memo implied that the commission emails had somehow been hacked using know-how supplied to the Indian government by mobile phone companies who, as payback, were afforded greater access to the Indian market.
One of the mobile phone manufactures named in the purported memo, Apple, denied giving the Indian government backdoor access to its products. A second, Research in Motion, said the company does not typically comment on rumor or speculation, and a third manufacturer, Nokia, declined to comment.
Indian government officials and agencies declined repeated requests for comment on the alleged government document, although some former Indian officials labeled the memo a fabrication.
Two U.S. officials familiar with the hacking incident said they were puzzled why India would go to the trouble of hacking emails related to the U.S.-China Commission, since its work had little if anything to do with India, and Indian officials and diplomats had never showed much interest in its activities.
By contrast, the commission has been a regular target for what officials describe as persistent attempted hacking intrusions, many through the technique of "phishing," which involves sending bogus but convincing emails which purport to come from insiders but contain malicious code. Investigators strongly suspect these intrusions were launched by people from, or operating on behalf of, China.
A large proportion of the hacked traffic examined by Reuters appeared to be what could be categorized as spam, including summaries of news articles and political fundraising pitches.
Some hacked traffic from the U.S.-China Commission had potentially sensitive implications, however, including messages in which commission personnel discuss matters under deliberation by the organization. These issues included the commission's attitude toward alleged Chinese theft of intellectual property and congressional deliberations about alleged Chinese currency manipulation.
U.S. officials said there was no indication hackers managed to gain access to electronic files related to the commission's most sensitive project - a classified version of its annual public report. Electronic materials related to this project are kept on classified servers, isolated from the Internet, which are operated by agencies other than the commission itself, one official said.
(Editing by Eric Beech)
Politics
Tech
Media
China
Tweet this
Link this
Share this
Digg this
Email
Reprints
We welcome comments that advance the story through relevant opinion, anecdotes, links and data. If you see a comment that you believe is irrelevant or inappropriate, you can flag it to our editors by using the report abuse links. Views expressed in the comments do not represent those of Reuters. For more information on our comment policy, see http://blogs.reuters.com/fulldisclosure/2010/09/27/toward-a-more-thoughtful-conversation-on-stories/
Comments (0)
Be the first to comment on reuters.com.
Add yours using the box above.
Edition:
U.S.
Africa
Arabic
Argentina
Brazil
Canada
China
France
Germany
India
Italy
Japan
Latin America
Mexico
Russia
Spain
United Kingdom
Back to top
Reuters.com
Business
Markets
World
Politics
Technology
Opinion
Money
Pictures
Videos
Site Index
Legal
Bankruptcy Law
California Legal
New York Legal
Securities Law
Support & Contact
Support
Corrections
Advertise With Us
Connect with Reuters
Twitter
Facebook
LinkedIn
RSS
Podcast
Newsletters
Mobile
About
Privacy Policy
Terms of Use
Our Flagship financial information platform incorporating Reuters Insider
An ultra-low latency infrastructure for electronic trading and data distribution
A connected approach to governance, risk and compliance
Our next generation legal research platform
Our global tax workstation
Thomsonreuters.com
About Thomson Reuters
Investor Relations
Careers
Contact Us
Thomson Reuters is the world's largest international multimedia news agency, providing investing news, world news, business news, technology news, headline news, small business news, news alerts, personal finance, stock market, and mutual funds information available on Reuters.com, video, mobile, and interactive television platforms. Thomson Reuters journalists are subject to an Editorial Handbook which requires fair presentation and disclosure of relevant interests.
NYSE and AMEX quotes delayed by at least 20 minutes. Nasdaq delayed by at least 15 minutes. For a complete list of exchanges and delays, please click here.