The Chinese hackers have been active since mid-2021 and targeted critical infrastructure organisations in the US territory of Guam and in other parts of the US as part of a stealthy spying and information gathering campaign, Microsoft said in a new report.
Organisations targeted by the hackers cover the maritime, transportation, communications, utility and government sectors, among others.
In a separate advisory released on Wednesday, the FBI, National Security Agency and other US and Western security agencies said they believe the Chinese hackers could apply the same stealthy techniques against critical sectors “worldwide.”
Beijing hit back against the allegations on Thursday, calling them “a collective disinformation campaign of the Five Eyes coalition” – referring to the intelligence sharing grouping made up of the US, Britain, Canada, Australia and New Zealand, whose security agencies jointly issued the advisory.
“The United States is expanding new channels to spread disinformation. This is not the first time, and it will not be the last,” Mao said.
China has grown increasingly aggressive in the region, including militarising islands to assert contested claims in the South China Sea, in recent years in what US officials view as alarming expansionism from Beijing.
Microsoft declined to comment beyond its public blog post on Wednesday when CNN asked for specific information supporting the tech firm’s conclusion that Chinese hackers were preparing disruptive capabilities for future crises.
China’s Embassy in Washington, DC also disputed the allegations.
Read Related Also: Nayland Colege student secretly records teacher's extraordinarily swearword-riddled meltdown
“The allegation by the US side that the Chinese government is ‘supporting hacking’ is completely distorting the truth,” embassy spokesman Liu Pengyu said in an email when asked for comment on the Microsoft report.
US officials regularly cite China as the most persistent and prolific government hacking threat facing the US.
Chinese hackers are too frequently going “unidentified and undeterred” in their infiltrations of US organisations, Jen Easterly, director of the US Cybersecurity and Infrastructure Security Agency, said in February.
“Over the last decade, Russia has targeted a variety of critical infrastructure sectors in operations that we do not believe were designed for immediate effect,” said John Hultquist, chief analyst at security firm Mandiant, which is owned by Google. “China has done the same in the past, targeting the oil and gas sector.
“Chinese cyberthreat actors are unique among their peers in that they have not regularly resorted to destructive and disruptive cyberattacks,” Hultquist said.
The Microsoft report “is a rare opportunity to investigate and prepare for this threat.”
Countries with the highest military expenditure in the world