Mysterious Forces Hack Pro-Tibet, Save Darfur, Falun Gong Sites
March 26, 2008 10:15 AM
comment(s) - last by
Who could be behind the wave of online attacks that have the internet community seeing red?
A series of online strikes has been carried out in the last few months on several high profile international targets. Among those targets are the Falun Gong and pro-Tibetan liberation organizations. Also targeted is the Save Dafur campaign.
As Sherlocke Holmes might say, "The game is afoot!"
Internet Storm Center
, an news organization focusing on online threats,
announced this week
, "On Friday we reported on targeted attacks against various pro-Tibet non-governmental organizations (NGO) and communities, as well as Falun Gong and the Uyghurs."
One technique that is being used to attack these organizations is a fake memo with a malicious attachment. This memo claims to have a human rights report about Tibet attached. Analysts state that the memo uses several key social engineering tricks to lull the readers into a false sense of security. Among these are the use of pertinent language in the memo and official looking numbers and titles.
Even trickier, the attachment is actually two files -- a legitimate flier for a real life book on the state of Tibet and a separate malicious trojan binary.
Eight types of trojans have been employed by the attackers, including the well known
attacks. While some machines are merely crippled, others are maintained and controlled through remote access using the
tool. The majority of control servers were
identified to be on Chinese netblocks
. However some originated from the U.S., South Korea and Taiwan.
Tibet has been under Chinese rule since military occupation in 1951. The Falun Gong claims its a spiritual organization focusing on meditation, boasting as many as 70 million members in China. The organization has been labelled as a cult by China. China regularly breaks up its public practices and jails its leaders.
The Save Darfur group has been under heavy attack from hackers. The FBI is currently investigating these attacks, which they say
may have a possible Chinese connection
. The Save Darfur campaign is a rather altruistic-spirited, nonprofit group whose well-intentioned goal is to bring attention to the ongoing genocide in western Darfur region of Sudan.
Allyn Brooks-LaSure, a spokesman with the group, says the group contacted the FBI after someone last week gained unauthorized access to its email and web servers. While Brooks-LaSure is certain the identity of the attackers, he did note that the IP addresses of the hackers were located in China. He states, "Someone in Beijing is trying to send us a message."
The hackers appeared to have focused primarily on gathering data on the group. Save Darfur has been trying to convince China to pressure Sudan, one of its largest trading partners, into stopping the bloodshed. Experts warn that while the attacks appear to have originated in China, they may merely have been routed through China.
Groups affiliated with the Save Darfur group have also been hit. Among the attacks they have noticed are emails with malicious attachments, very similar to those used against the Tibetan organizations. FBI Spokeswoman Debbie Weierman confirmed that the FBI was investigating, stating that they were "looking into the matter."
With the latest rash of attacks, one is left to wonder -- who might want to attack Save Darfur, pro-Tibetan liberation and the Falun Gong? Is this just an innocent set of unrelated attacks, or perhaps is it, along with other attacks in past months, the sign of a
growing online military campaign
This article is over a month old, voting and posting comments is disabled
3/27/2008 2:54:46 AM
in good old day they use merc ,spy and criminal to do this ,these days hackers in exchange of some jail time
..maybe somewhere in tibet they have a lot of oil reserve or something value to china .. a good plot for c&c general 2.0
"I'm an Internet expert too. It's all right to wire the industrial zone only, but there are many problems if other regions of the North are wired." -- North Korean Supreme Commander Kim Jong-il
Cyber Tensions Flare Amongst U.S., Chinese Military
March 12, 2008, 5:28 PM
Chinese Hackers Take On the World with Ease
March 7, 2008, 7:26 PM
WSJ Report Implies That Google Leveraged Lobbying to Kill Antitrust Abuse Probe
March 25, 2015, 5:37 PM
Nationalist Hackers From Turkey Cause Chaos, Deface Dozens of Sites
March 16, 2015, 12:29 PM
Google Barrages Firefox Users With Warnings After Mozilla Snubs it for Yahoo!
March 16, 2015, 10:27 AM
More Than a Feeling: Facebook Removes "Feeling Fat" Emoji Amid Backlash
March 12, 2015, 4:23 PM
Apple-Exclusive "HBO Now" Debuts at $14.99/Month; Apple TV Price Cut to $69
March 9, 2015, 3:00 PM
ISIS Supporters Threaten "Charlie Hedbo style" Attack Against Twitter Employees
March 3, 2015, 4:26 PM
Most Popular Articles
HTC One M9 Launches Tomorrow Overseas
March 20, 2015, 2:33 PM
Windows 10 Build 10041 Rolls Out: What's New in Pictures Pt. 1
March 19, 2015, 2:45 PM
FAA Grants Amazon Prime Air an "Experimental Airworthiness Certificate"
March 19, 2015, 9:14 PM
Samsung, Dell, Pegatron to Preinstall Microsoft Office 365 on Android Devices
March 23, 2015, 4:02 PM
Acer Iconia Tab 10 is a Bargain at $200 w/ WXGA, $250 w/ WUXGA
March 20, 2015, 2:11 PM
Latest Blog Posts
Sceptre Airs 27", 120 Hz. 1080p Monitor/HDTV w/ 5 ms Response Time for $220
Dec 3, 2014, 10:32 PM
Costco Gives Employees Thanksgiving Off; Wal-Mart Leads "Black Thursday" Charge
Oct 29, 2014, 9:57 PM
"Bear Selfies" Fad Could Turn Deadly, Warn Nevada Wildlife Officials
Oct 28, 2014, 12:00 PM
The Surface Mini That Was Never Released Gets "Hands On" Treatment
Sep 26, 2014, 8:22 AM
ISIS Imposes Ban on Teaching Evolution in Iraq
Sep 17, 2014, 5:22 PM
More Blog Posts
Copyright 2015 DailyTech LLC. -
Terms, Conditions & Privacy Information