London Daily

Focus on the big picture.

China state-sponsored actor carries out 'attack' on US critical infrastructure, Microsoft says

China state-sponsored actor carries out 'attack' on US critical infrastructure, Microsoft says

Microsoft says that Volt Typhoon is a state-sponsored actor of the PRC

China state-sponsored cyber actor Volt Typhoon is targeting critical infrastructure organizations in the U.S., according to Microsoft.

Microsoft warned Wednesday that Volt Typhoon, a cyber actor linked to the People's Republic of China, is targeting critical infrastructure organizations in the U.S.


Microsoft said in a Wednesday post that the company has "uncovered stealthy and targeted malicious activity focused on post-compromise credential access and network system discovery aimed at critical infrastructure organizations in the United States."

"The attack is carried out by Volt Typhoon," Microsoft said. Volt Typhoon is a Chinese state-sponsored actor that focuses on "espionage and information gathering."

"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement reads.

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) and international cybersecurity authorities issued a joint Cybersecurity Advisory (CSA) warning the agencies believe Volt Typhoon, which they noted is associated with the People's Republic of China, "could apply the same techniques" against infrastructure networks across the U.S. and "other sectors worldwide."

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) acknowledged it is aware of Volt Typhoon's activities threatening U.S. critical infrastructure organizations and issued warning along with international cybersecurity authorities.


The CSA explained Volt Typhoon's primary tactics, techniques and procedures (TTPs) is "living off the land," which allows it to avoid detection by using built-in network administration tools to blend in with normal Windows systems and fly under the radar of third-party endpoint detection and response products.

The agencies recommend organizations take steps to tighten up their cybersecurity in light of the threat, such as hardening domain controllers, monitoring event logs, limiting port proxy usage, investigating any unusual IP addresses and reviewing firewall configurations.

Newsletter

Related Articles

London Daily
0:00
0:00
Close
World Court Orders Immediate Halt to Israeli Offensive in Gaza
Understanding FLiRT COVID Variants and Their Impact
Baltic NATO Members to Construct 'Drone Wall'
Global Life Expectancy Dropped By 2 Years Due To COVID-19
Macron Halts New Caledonia Voting Reform After Riots
Rishi Sunak Shelves Rwanda and Smoking Policies Ahead of Election
US Refuses World Court Jurisdiction
China Conducts Surprise Military Drills Around Taiwan
Grim Polls Predict Major Loss for PM Rishi Sunak
Rishi Sunak's Campaign for UK Election: Key Issues Highlighted
German Property Crisis Worsens as Foreign Investment Declines
Princess of Wales's Taskforce Calls for Business Investment in Early Childhood
Campaign Groups Condemn UK Report on Protests
Former Royal Marine Charged with Espionage Found Dead
Australian PM Calls for Julian Assange's Freedom
ICC Seeks Arrest Warrants for Israeli and Hamas Leaders
UK's Infected Blood Scandal: Conclusion Nears After Seven Years
Julian Assange Granted Right to Challenge US Extradition
Congo Army Thwarts Attempted Coup Involving Americans and a British Citizen
Ireland's Homeless Gain Voting Rights
Blinken orders crackdown on Israel-Hamas leaks
Julian Assange Faces US Extradition: Key Facts
Jacob Zuma Takes Campaign to ANC Stronghold Soweto
Attempted Assassination of Slovakia PM Robert Fico: Investigation Ongoing
What Happens If an Iranian President Dies in Office?
Spain Recalls Ambassador After Argentina President's Remarks
Rishi Sunak Faces Cabinet Backlash Over Proposed Changes to Foreign Student Visas
Rwanda Denies Entry to Human Rights Researcher
Iranian President Ebrahim Raisi Reportedly Killed in Helicopter Crash
Blue Origin Resumes Space Tourism with 90-Year-Old Ed Dwight
Rishi Sunak and Wife Akshata Murty Wealthier Than King Charles
New Dutch Government Drives Wedge Through EU Liberals
Iranian President Raisi Missing After Helicopter Goes Down
Freemasons and ‘Global War Party’ Accused of Conspiring Against Georgia
Poland Supports Rolls-Royce's Nuclear Power Plant Initiative
European Ports Overflow with Unsold Electric Vehicles
Esprit Files for Bankruptcy in Europe, Putting Hundreds of Jobs at Risk
Chevron Halts North Sea Drilling Amid Rising Tax Burden
Jeremy Hunt Accused of Exaggerating Conservatives' Economic Record
Victoria Atkins Discusses Historical Gender Bias in the NHS
Dublin and Monaghan Bombings 50th Anniversary: Calls for Justice
Rishi Sunak and Akshata Murty’s Wealth Rises to £651 Million
New Caledonia Riots Escalate After French Voting Rights Change
Renters Face Fierce Competition as Listing Times Shrink
Surge in Fake Science: 19 journals shut down due to fraudulent papers from 'paper mills'
Global Birthrates Decline, Raising Economic and Social Concerns
Boeing Faces Possible Prosecution Over 737 MAX Settlement Violation
Prisoner Escapes in France as Two Officers Killed in Van Ambush
German Court Rules AfD Can Be Monitored for Extremism
Jacob Rees-Mogg Criticizes Bank of England’s Inflation Strategy
×