Hackers not linked to China's government: researcher
Last Updated: Tuesday, April 6, 2010 | 10:42 PM ET
CBC News
Related
Internal Links
External Links
(Note: CBC does not endorse and is not responsible for the content of external sites - links will open in new window)
University of Toronto researcher Nart Villeneuve says no hard evidence has been uncovered that links the hacker attacks to the Chinese government. (CBC)China-based hackers who stole data on India's missile systems, private correspondence of the Dalai Lama and Canadian visa applications appear not to be linked to the Chinese government, Canadian researchers say.
"I don’t doubt that some of the sensitive information that was acquired might eventually find its way to elements within the Chinese government that may find it useful," said Nart Villeneuve, one of the University of Toronto researchers who took part in the investigation that uncovered the hackers.
"But I don't think that there's any direct connection between the attackers and the government, at least at this time."
Villeneuve said it's "very unclear what the relationship is between any of these particular hacking groups and any specific element of the Chinese government."
He said that so far, no hard evidence has been uncovered that links the attacks to the Chinese government. He also pointed out that the hacking community is not monolithic.
"There are a lot of different groups with membership that focus on different types of activities," Villeneuve said.
He added: "In fact, we have had very healthy co-operation with the Chinese CERT (Computer Emergency Response Team), who are actively working to understand what we've uncovered. It’s been a very encouraging development for us."
The discovery was made by security researchers at the University of Toronto's Citizen Lab who worked for eight months with the Ottawa-based think-tank SecDev Group and U.S. researchers from the Shadowserver Foundation.
The team describes its findings in a report called Shadows in the Cloud: An investigation into Cyber Espionage 2.0, which was released Tuesday.
Ron Deibert, the Citizen Lab director, said researchers tracked the use of computer servers and discovered that someone had been stealing secret documents from the Indian government, the offices of the Dalai Lama, the United Nations and several other countries.
"Most of them are highly sensitive documents that have come from the Indian national security establishment," Deibert said, noting that some of the documents are marked "top secret" or "restricted."
"Some contain information that is definitely sensitive about troop movements and military procurement," he said.
Deibert said the researchers tracked servers used by the spies back to the city of Chengdu, China.
Villeneuve said there has been a growing trend that blurs the boundaries between cyber crime and cyber espionage as criminal networks are increasingly stealing sensitive information in addition to the typical things like credit card numbers and bank account numbers.
"In this particular case, the attackers disproportionately took sensitive information, but they also took financial information and personal information. They were somewhat indiscriminate in terms of the information that they stole from the compromised computers," he said.
A handful of Canadians were also victims.
When the cyber-spies hacked the Indian Embassy in Kabul's computers, they also stole confidential visa information on Canadians applying to travel from Kabul, Afghanistan, to New Delhi. Deibert said the network stole more than 700 documents.
Last March, researchers at the Citizen Lab released a report on a spy network they dubbed GhostNet. Researchers said it had infiltrated at least 1,295 computers, including 103 belonging to embassies, foreign ministries and other government offices around the world.
The GhostNet investigation began after members of the Tibetan exile community asked the authors to look into allegations that the Chinese were hacking into their computer systems.
The researchers eventually found a wider network of infected computers. In a report, researchers said three out of the four servers in the network were based in China while a fourth was in the United States.
China's government dismissed the GhostNet report, saying it was full of "lies" designed to hurt the country's image abroad.
Share Tools
Latest Toronto News Headlines
- Truck dangles on overpass after 401 crash in Ajax
- A section of Highway 401 is closed for hours after a tractor-trailer collides with an SUV, slides off the highway and hangs perilously over the roadway below. more »
- GO Transit train damaged by debris on tracks
- A GO Transit train is damaged after striking a short track section that appears to have been deliberately laid over the rails. more »
- Everest team unable to bring down Toronto woman's body
- Bad weather has hampered the recovery team that is attempting to bring down the body of a Toronto woman who died trying to climb Mt. Everest. more »
- Man shot dead in Oshawa
- A man in is mid-30s is dead after he was shot at a house in Oshawa on Friday night. more »
Top News Headlines
- Teen struck by lightning in Ottawa dies
- The victim of a Friday lightning strike during a storm in east Ottawa has died, CBC News has learned. more »
- Montreal protesters march in peaceful defiance
- The clanging of pots and pans sounded throughout Montreal's downtown core Saturday night and into early Sunday morning, as thousands of protesters marched on in peaceful — but loud — defiance of Bill 78. more »
- Outrage grows over Syria killings
- The deaths in Syria of over 90 people, including at least 32 children, has sparked international outrage and raised fears that the international peace plan is in tatters. more »
- Missing Winnipeg children found in Mexico
- Two Winnipeg children reported missing and possibly in Mexico have been found alive, according to unofficial reports from an agency that works to find missing people. more »
- Everest victim's husband says family not seeking government help
- Truck dangles on overpass after 401 crash in Ajax
- Brampton family seeks woman missing since Thursday
- GO Transit train damaged by debris on tracks
- 'Save me' last words of Mount Everest climber
- Timmins fire crews aided by calmer winds
- Everest team unable to bring down Toronto woman's body
- Man shot dead in Oshawa
- Serial carjacker gets life term for fatal crash

