Australian government accuses China-backed hacker group of stealing passwords, usernames from unnamed networks
The Australian Cyber Security Centre has alleged that cyber security firms backed by Chinese authorities stole passwords and usernames from unnamed Australian networks in 2022.
"The PRC state-sponsored cyber group has previously targeted organisations in various countries, including Australia and the United States, and the techniques highlighted below are regularly used by other PRC state-sponsored actors globally. Therefore, the authoring agencies believe the group, and similar techniques remain a threat to their countries’ networks as well," the advisory issued by the Australian Cyber Security Centre.
"This group has previously been reported as being based in Haikou, Hainan Province, PRC and receiving tasking from the PRC MSS, Hainan State Security Department," the advisory said.
In the activity summer, the report said APT40 has repeatedly targeted Australian networks as well as government and private sector networks in the region, and the threat they pose to our networks is ongoing.
"The tradecraft described in this advisory is regularly observed against Australian networks," the advisory said.
APT40 possesses the capability to rapidly transform and adapt exploit proof-of-concept(s) (POCs) of new vulnerabilities and immediately utilise them against target networks possessing the infrastructure of the associated vulnerability.
APT40 regularly conducts reconnaissance against networks of interest, including networks in the authoring agencies’ countries, looking for opportunities to compromise its targets.
This regular reconnaissance postures the group to identify vulnerable, end-of-life or no longer maintained devices on networks of interest, and to rapidly deploy exploits.
The report said APT40 continues to find success exploiting vulnerabilities from as early as 2017.
"This report details the findings of the ASD’s ACSC investigation into the successful compromise of the organisation’s network between July and September 2022," the advisory said.
IBNS
Senior Staff Reporter at Northeast Herald, covering news from Tripura and Northeast India.
Related Articles

Democrats release Epstein emails suggesting Trump ‘knew about the girls’, White House calls it ‘fake narrative’
In a major political flashpoint, Democrats on the House Oversight Committee on Wednesday released a set of emails linked to Jeffrey Epstein, claiming they raise “serious questions” about former U.S. President Donald Trump’s knowledge of Epstein’s alleged sexual abuse and trafficking of minors.

'How many wives?' Trump asks Syrian President Ahmed al-Sharaa in historic White House meeting
In a moment few could have predicted, US President Donald Trump on Monday hosted Syrian President Ahmed al-Sharaa at the White House, marking the first-ever official visit by a Syrian head of state to the United States since Syria gained independence from France in 1946.

Virgin Atlantic passenger who threatened to gang-rape and kill flight attendant has term tripled
London/IBNS: A British man who threatened to gang-rape and murder an air stewardess on a Virgin Atlantic flight has had his sentence tripled after a court found his original punishment too lenient.

Watch: Tesla’s self-driving tech saves driver from 75 mph head-on collision — Elon Musk reacts!
Tech entrepreneur Elon Musk has shared a video on X showing a Tesla vehicle narrowly avoiding a head-on collision, crediting the company’s Full Self-Driving (FSD) system for the quick response.
Latest News

Passenger held at Agartala airport with 7 gold biscuits hidden inside rectum

Steering Committee finalizes venue for 44th Agartala Book Fair at Hapania amid controversy

Democrats release Epstein emails suggesting Trump ‘knew about the girls’, White House calls it ‘fake narrative’

Maharashtra wedding turns violent as groom stabbed on stage! Videographer chases attacker with drone

