cyber daily logo

Breaking news and updates daily. Subscribe to our Newsletter

Breaking news and updates daily. Subscribe to our Newsletter X facebook linkedin Instagram Instagram

Chinese hackers target US, Europe and Asia corporations to uncover trade secrets

Security researchers have found Chinese government-linked hackers have tried to steal sensitive data from some three dozen manufacturing and technology firms in the US, Europe and Asia; shedding new light on Beijing’s alleged use of hacking to buttress its economy.

user iconReporter
Thu, 05 May 2022
Chinese hackers target US, Europe and Asia corporations to uncover trade secrets
expand image

According to a CNN report, the hackers targeted blueprints for producing materials with broad applications to the pharmaceutical and aerospace sectors, according to Boston-based security firm Cybereason. The firm discovered the activity last year but said the hacking campaign dates to at least 2019, and it suggested that reams of data could have been stolen in the interim.

The research is an unsettling reminder of the scope of the cyber threats facing US businesses and government agencies as the Biden administration attempts to thwart them. For all of the attention on potential Russian hacking due to the war in Ukraine, Chinas digital operatives have been very active.

Speaking with CNN, Assaf Dahan, Cybereasons research lead commented that its clearly industrial espionage, IP [intellectual property] theft at the highest level.


When asked to respond to the Cybereason report, Liu Pengyu, a spokesperson at the Chinese Embassy in Washington, claimed that China “will never encourage, support or condone cyber attacks”.

“China opposes groundless speculation and accusations on the issue of hacker attacks,” Liu said.

“If the firm really care [sic] about global cyber security, they should pay more attention to the cyber attacks by the US government-sponsored hackers on China and other countries,” Liu added.

Cyber security researchers and US officials have for years accused Chinese spy and military agencies of hacking and stealing trade secrets.

China “has a massive, sophisticated cyber theft program”, FBI Deputy Director Paul Abbate alleged in a speech last week to the American Hospital Association, and it conducts more cyber intrusions than all other nations in the world combined.

According to CNN, the FBI declined to comment on the Cybereason report.

US officials and cyber-intelligence analysts point to Chinas Made in 2025 plan, an ambitious state plan for achieving economic dominance, as a rubric for the types of companies whose data Chinese hackers have targeted.

The plan, released in 2015, calls for advancements in manufacturing in the aerospace and biomedical fields, among several others. The Justice Department has in the years since unsealed indictments accusing Chinese hackers of targeting those very sectors.

Chinese President Xi Jinping and then-US President Barack Obama in 2015 agreed that neither government would conduct or knowingly support cyber-enabled theft of intellectual property.

Some analysts noticed a temporary dip in Chinese hacking activity shortly after the agreement. However, Adam Meyers, senior vice president of intelligence at the cybersecurity firm CrowdStrike, suspects that any lull in Chinese economic espionage at the time may have been due to Xis restructuring of the Peoples Liberation Army.

At that period of time, in 2016, we started to see a major shift in Chinese intrusion operations to groups that are now associated with the Ministry of State Security, Meyers told CNN, referring to Chinas civilian intelligence agency.

China's global cyber-espionage campaigns have increasingly targeted big repositories of valuable data such as telecom and internet service providers, rather than single organisations, Meyers said.

I think that theyve really upped their game in terms of going after broader infrastructure, so its more difficult to really pinpoint that they were doing economic espionage, Meyers said.

In the hacking that Cybereason investigated, executives at the firm said they had first noticed the activity when the attackers breached an Asian subsidiary of a large manufacturing and technology firm.

But it would take months to successfully kick the hackers out of the network, showing how intent they were on their mission, according to Cybereason.

[Related: New report shows over 8 in 10 Aussie organisations have suffered ransomware attacks]

cyber daily subscribe
Be the first to hear the latest developments in the cyber industry.