Chinese Hackers Compromised Organizations in 70 Nations, Warn US Federal Agencies

5Mind. The Meme Platform
The Epoch Times Header

Companies are advised to constantly update their apps and software, and patch known network vulnerabilities to prevent such attacks.

A ransomware group called “Ghost” is exploiting the network vulnerabilities of various organizations to gain access to their systems, according to a joint advisory issued by multiple U.S. federal agencies.

“Beginning early 2021, Ghost actors began attacking victims whose internet-facing services ran outdated versions of software and firmware,” the Cybersecurity and Infrastructure Security Agency (CISA) said in the Feb. 19 joint advisory. “Ghost actors, located in China, conduct these widespread attacks for financial gain.”

The attacks have targeted schools and universities, government networks, critical infrastructure, technology and manufacturing companies, health care, and several small and mid-sized businesses.

“This indiscriminate targeting of networks containing vulnerabilities has led to the compromise of organizations across more than 70 countries, including organizations in China,” CISA, the FBI, and the Multi-State Information Sharing and Analysis Center said in the advisory.

Ghost actors are also associated with other names such as Cring, Crypt3r, HsHarada, Hello, Wickrme, Phantom, Rapture, and Strike.

The criminals use publicly available code to exploit “common vulnerabilities and exposures” of their targets to secure access to servers. They leverage vulnerabilities in servers running Adobe ColdFusion, Microsoft Exchange, and Microsoft SharePoint.

Threat actors use tools to “collect passwords and/or password hashes to aid them with unauthorized logins and privilege escalation or to pivot to other victim devices,” the warning read. Attackers typically spend only a few days on their target’s networks.

The advisory recommended that organizations patch known network vulnerabilities by applying “timely security updates” to firmware, software, and operating systems.

Organizations must train users to recognize phishing attempts, it said. Entities should identify, investigate, and issue alerts regarding any “abnormal network activity.”

“Maintain regular system backups that are known-good and stored offline or are segmented from source systems,” the advisory added.

“Ghost ransomware victims whose backups were unaffected by the ransomware attack were often able to restore operations without needing to contact Ghost actors or pay a ransom.”

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.
00:02:04

Forged on the frontier

George Washington is widely known as a general and president, but his early life remains obscured by myth, legend, and misunderstanding.
00:02:52

A bobblehead too far

The Orioles did not just hand out a bobblehead. They sent a message that the legacy of their own players is not enough to draw.

Congress fumbles college sports

College sports landscape is a dumpster fire and every sports reporter, broadcaster and fan believes Congress needs to stay out of it.

The Hating Game

The Democrat Party game show should be titled "The Hating Game", played by pitting one class, race, or identity against another for political power.
00:09:50

The Invasion Of The Ballot Snatchers

As election results loom, California faces ballot controversies in a real-life political drama that raises concerns about election integrity.
00:03:28

Vance and Iranian Negotiators in Switzerland for Peace Talks

The negotiations are set to take place on Sunday...

FBI, DOJ Announce Arrest of Most Wanted Fraudster Herbert Leon Kimble

One of the FBI’s Most Wanted Fraudsters, Herbert Leon Kimble, who is accused of a $1.2 billion Medicare fraud, was captured in the Philippines on June 11.
00:03:31

California Declares State of Emergency Over Los Angeles Warehouse Fire, Smoke

California Gov. Gavin Newsom declared an emergency as a massive Los Angeles warehouse fire burns for a fourth day, prompting aid.
00:02:06

13th Consecutive Month of Zero Releases at Southern Border: CBP

Border Patrol released zero illegal immigrants into the United States at the southwest border for the 13th straight month in May.

Banning Hospitals’ Certain Contracts Could Save Americans $45 Billion, Report Finds

A ban on certain contracts between hospital systems and health insurers could save Americans around $45 billion, according to a report.
00:01:33

Trump Unveils New Air Force One Plane

President Trump unveiled the plane that will serve as the new Air Force One, a Boeing 747-8 luxury jet that was gifted to the US by the Qatari government in 2025.
00:01:27

Trump Threatens 100 Percent Tariff on French Wines Over Digital Services Tax

Trump threatened to impose a 100% tariff on French wines and champagne unless France eliminates its digital services tax on large American tech companies.

Trump Heads to G7 Summit in France: Here’s What to Expect

U.S. President Donald Trump is en route to France on June 15 to attend the annual G7 summit, just hours after announcing a deal with Iran.
spot_img

Related Articles

Popular Categories

MAGA Business Central