NATIONAL NEWS

Microsoft Exchange Hack Caused By China, US And Allies Say

Jul 19, 2021, 11:21 AM | Updated: 11:22 am

FILE: A signage of Microsoft is seen on March 13, 2020, in New York City. (Photo by Jeenah Moon/Get...

FILE: A signage of Microsoft is seen on March 13, 2020, in New York City. (Photo by Jeenah Moon/Getty Images)

(Photo by Jeenah Moon/Getty Images)

WASHINGTON (AP) — The Biden administration and Western allies formally blamed China on Monday for a massive hack of Microsoft Exchange email server software and accused Beijing of working with criminal hackers on ransomware and other illicit cyber operations.

The announcements, though not accompanied by sanctions against the Chinese government, were intended as a forceful condemnation of activities a senior Biden administration official described as part of a “pattern of irresponsible behavior in cyberspace.” They highlighted the ongoing threat from Chinese government hackers even as the administration remains consumed with trying to curb ransomware attacks from Russia-based syndicates that have targeted critical infrastructure.

The broad range of cyberthreats from Beijing disclosed on Monday included a ransomware attack from government-affiliated hackers that has targeted victims — including in the U.S. — with demands for millions of dollars. U.S officials allege that China’s Ministry of State Security has been using criminal contract hackers who have engaged in cyber extortion schemes and theft for their own profit, officials said.

Meanwhile, the Justice Department on Monday announced charges against four Chinese nationals who prosecutors said were working with the Ministry of State Security in a hacking campaign that targeted dozens of computer systems, including companies, universities and government entities. The defendants are accused of stealing trade secrets and confidential business information.

Unlike in April, when public finger-pointing of Russian hacking was paired with a raft of sanctions against Moscow, the Biden administration did not announce any actions against Beijing. Nonetheless, a senior administration official who briefed reporters said that the U.S. has confronted senior Chinese officials and that the White House regards the multination public shaming as sending an important message.

Even without fresh sanctions, the actions Monday are likely to exacerbate tensions with China at a delicate time. Just last week, the U.S. issued separate stark warnings against transactions with entities that operate in China’s western Xinjiang region, where China is accused of repressing Uyghur Muslims and other minorities. Then on Friday, the administration advised American firms of the deteriorating investment and commercial environment in Hong Kong, where China has been cracking down on democratic freedoms it had pledged to respect in the former British colony.

The European Union and Britain also called out China. The EU said malicious cyber activities with “significant effects” that targeted government institutions, political organizations and key industries in the bloc’s 27 member states could be linked to Chinese hacking groups. The U.K.’s National Cyber Security Centre said the groups targeted maritime industries and naval defense contractors in the U.S. and Europe and the Finnish parliament.

In a statement, EU foreign policy chief Josep Borrell said the hacking was “conducted from the territory of China for the purpose of intellectual property theft and espionage.”

The Microsoft Exchange cyberattack “by Chinese state-backed groups was a reckless but familiar pattern of behaviour,” U.K. Foreign Secretary Dominic Raab said.

NATO, in its first public condemnation of China for hacking activities, called on Beijing to uphold its international commitments and obligations “and to act responsibly in the international system, including in cyberspace.” The alliance said it was determined to “actively deter, defend against and counter the full spectrum of cyber threats.”

That hackers affiliated with the Ministry of State Security were engaged in ransomware was surprising and concerning to the U.S. government, the senior administration official said. But the attack, in which an unidentified American company received a high-dollar ransom demand, also gave U.S. officials new insight into what the official said was “the kind of aggressive behavior that we’re seeing coming out of China.”

The majority of the most damaging and high-profile recent ransomware attacks have involved Russian criminal gangs. Though the U.S. has sometimes seen connections between Russian intelligence agencies and individual hackers, the use of criminal contract hackers by the Chinese government “to conduct unsanctioned cyber operations globally is distinct,” the official said.

The Microsoft Exchange hack that months ago compromised tens of thousands of computers around the world was swiftly attributed to Chinese cyber spies by private sector groups. An administration official said the government’s attribution to hackers affiliated with China’s Ministry of State Security took until now in part because of the discovery of the ransomware and for-profit hacking operations and because the administration wanted to pair the announcement with guidance for businesses about tactics that the Chinese have been using.

An advisory Monday from the FBI, the National Security Agency and the Cybersecurity and Infrastructure Security Agency laid out specific techniques and ways that government agencies and businesses can protect themselves.

A spokesperson for the Chinese Embassy in Washington did not immediately return an email seeking comment Monday. But a Chinese Foreign Ministry spokesperson has previously deflected blame for the Microsoft Exchange hack, saying that China “firmly opposes and combats cyber attacks and cyber theft in all forms” and cautioned that attribution of cyberattacks should be based on evidence and not “groundless accusations.”

___

Kelvin Chan in London contributed to this report.

___

Follow Eric Tucker on Twitter at http://www.twitter.com/etuckerAP.

KSL 5 TV Live

National News

FILE - This electron microscope image made available by the U.S. National Institutes of Health show...

Associated Press

CDC says it’s identified 1st documented cases of HIV transmitted through cosmetic needles

Three women who were diagnosed with HIV after getting “vampire facial” procedures at an unlicensed New Mexico medical spa are believed to be the first documented cases of people contracting the virus through a cosmetic procedure using needles, federal health officials said.

4 hours ago

Zendaya, a cast member in "Challengers," poses at the premiere of the film at the Regency Village T...

Lindsay Bahr, The Associated Press

Zendaya tennis movie ‘Challengers’ scores at weekend box office

The sexy tennis drama “ Challengers ” won the box office this weekend with $15 million in ticket sales, according to studio estimates Sunday.

5 hours ago

First responders work the scene after three Louisiana police officers were shot in a standoff Sunda...

Associated Press

3 Louisiana officers wounded by gunfire in standoff with shooting suspect, police say

Three Louisiana police officers were wounded by gunfire Sunday in a standoff with a man suspected of shooting three other people in the past week, authorities said.

6 hours ago

Disneyland Resort Cast Members, Courtney Griffith, left, hugs Angela Nichols after a news conferenc...

Mike Schneider, The Associated Press

California Disney characters are unionizing decades after Florida peers. Hollywood plays a role

During three years of working as a parade performer at the Disneyland Resort in Southern California, Zach Elefante always has had a second or third job to help him earn a living.

11 hours ago

Neighbors embrace Penny Thomsen outside of her home after multiple tornadoes ripped across the stat...

Nouran Salahieh and Robert Shackelford, CNN

At least 3 killed in Oklahoma tornado outbreak, severe storm threat active from Missouri to Texas

At least three people are dead, including an infant, after a tornado outbreak in Oklahoma overnight, as severe storms threaten more twisters, heavy rain and large hail from Missouri to Texas Sunday.

11 hours ago

Blue Springs Police used an innovative AI-driven camera to help solve a double homicide. (KCTV via ...

By Betsy Webster, KCTV via CNN

AI-enhanced camera technology helps solve murder

Kansas City, KS-MO Blue Springs Police used an innovative AI-driven camera to help solve a double homicide.

12 hours ago

Sponsored Articles

Women hold card for scanning key card to access Photocopier Security system concept...

Les Olson

Why Printer Security Should Be Top of Mind for Your Business

Connected printers have vulnerable endpoints that are an easy target for cyber thieves. Protect your business with these tips.

Modern chandelier hanging from a white slanted ceiling with windows in the backgruond...

Lighting Design

Light Up Your Home With These Top Lighting Trends for 2024

Check out the latest lighting design trends for 2024 and tips on how you can incorporate them into your home.

Technician woman fixing hardware of desktop computer. Close up....

PC Laptops

Tips for Hassle-Free Computer Repairs

Experiencing a glitch in your computer can be frustrating, but with these tips you can have your computer repaired without the stress.

Close up of finger on keyboard button with number 11 logo...

PC Laptops

7 Reasons Why You Should Upgrade Your Laptop to Windows 11

Explore the benefits of upgrading to Windows 11 for a smoother, more secure, and feature-packed computing experience.

Stylish room interior with beautiful Christmas tree and decorative fireplace...

Lighting Design

Create a Festive Home with Our Easy-to-Follow Holiday Prep Guide

Get ready for festive celebrations! Discover expert tips to prepare your home for the holidays, creating a warm and welcoming atmosphere for unforgettable moments.

Battery low message on mobile device screen. Internet and technology concept...

PC Laptops

9 Tips to Get More Power Out of Your Laptop Battery

Get more power out of your laptop battery and help it last longer by implementing some of these tips from our guide.

Microsoft Exchange Hack Caused By China, US And Allies Say