ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Trojans from China attacking UK

Dan Ilet silicon.com

Published: 30 Jun 2005 15:55 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Malicious programs the UK government has said are attacking key business and government bodies are being sent from computers in China, according to an email security firm.

But experts at MessageLabs said it would be inaccurate to conclude Chinese hackers are responsible for the Trojan horse attacks as the servers could be controlled remotely from anywhere.

Mark Sunner, CTO for MessageLabs, said: "MessageLabs can confirm that the source of the IP addresses originates in China. But there's a much bigger and broader problem here. The 'China' word is not meaningless but it doesn't mean they are the perpetrators."

Earlier this month the British government's National Infrastructure Security Co-ordination Centre (NISCC) claimed that waves of "industrial-strength" Trojan attacks were hitting 300 organisations in the critical national infrastructure (CNI). The CNI is made up of key financial, transport, military, health, energy and government organisations.

Although NISCC would not disclose the exact origin of the Trojan attacks, it said they were coming from the Far East.

Yesterday MessageLabs said it had intercepted 17 new Trojans that appeared to be the sort NISCC had warned of. But they were targeted at one company, not at the whole CNI. Sunner said these attacks always aim at a small number of organisations, and the terms "information warfare" and "industrial strength" were misleading in this context.

"We are not making these claims," he said. "We need to be careful that we are not influencing people that way. In the case of these targeted attacks, it's one-offs. The reality is that we've seen a number of source IP addresses in China. But when you try and trace a botnet, quite frequently you often find that it originates from another botnet."

But Bob Ayers, former director of the Computer Emergency Response Team for the US Department of Defense and MD of consulting firm Ayers & Associates, was sceptical that the attacks were coming from China.

He said: "I'm not entirely of the opinion that 'these attacks are coming from China' is accurate. It's not what I would call a government initiative — I don't see how they can know who's doing it. There's no way you can differentiate."

He added: "You can spoof a site address and make it look as if it's coming from China. The question is what is NISCC doing about it? Is it just sending out alerts? I have a feeling that it is and is providing a citizen's advice bureau."

When contacted, antivirus companies Computer Associates, F-Secure, Kaspersky Labs and Sophos refused to say where the Trojan attacks stemmed from.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
102 out of 180 people found this useful


Full Talkback thread

1 comment

  1. INTERNET RECOGNISES NO TERRITORY It is premature t... PRAVEEN DALAL

Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

Oracle HR, Prince 2, SQL scripts, AIM, UML 6 Mth - Cheshire

Oracle HR, Prince 2, SQL scripts, AIM, UML Methodology My client based in Cheshire is urgently seeking an Oracle HR Application developer to work on ...

PHP MySQL Developer - South West

Huxley Associates Client is currently looking for a PHP Developer. If this role is of interest to you please apply immediately to Adam Mace at Huxley ...

Oracle Project Manager

The purpose of the role is to join a virtual team of Project Managers, liasing between all sites (including Mexico, USA, China, India,) on a huge ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment