Chinese Hackers Compromised Organizations in 70 Nations, Warn US Federal Agencies

5Mind. The Meme Platform
The Epoch Times Header

Companies are advised to constantly update their apps and software, and patch known network vulnerabilities to prevent such attacks.

A ransomware group called “Ghost” is exploiting the network vulnerabilities of various organizations to gain access to their systems, according to a joint advisory issued by multiple U.S. federal agencies.

“Beginning early 2021, Ghost actors began attacking victims whose internet-facing services ran outdated versions of software and firmware,” the Cybersecurity and Infrastructure Security Agency (CISA) said in the Feb. 19 joint advisory. “Ghost actors, located in China, conduct these widespread attacks for financial gain.”

The attacks have targeted schools and universities, government networks, critical infrastructure, technology and manufacturing companies, health care, and several small and mid-sized businesses.

“This indiscriminate targeting of networks containing vulnerabilities has led to the compromise of organizations across more than 70 countries, including organizations in China,” CISA, the FBI, and the Multi-State Information Sharing and Analysis Center said in the advisory.

Ghost actors are also associated with other names such as Cring, Crypt3r, HsHarada, Hello, Wickrme, Phantom, Rapture, and Strike.

The criminals use publicly available code to exploit “common vulnerabilities and exposures” of their targets to secure access to servers. They leverage vulnerabilities in servers running Adobe ColdFusion, Microsoft Exchange, and Microsoft SharePoint.

Threat actors use tools to “collect passwords and/or password hashes to aid them with unauthorized logins and privilege escalation or to pivot to other victim devices,” the warning read. Attackers typically spend only a few days on their target’s networks.

The advisory recommended that organizations patch known network vulnerabilities by applying “timely security updates” to firmware, software, and operating systems.

Organizations must train users to recognize phishing attempts, it said. Entities should identify, investigate, and issue alerts regarding any “abnormal network activity.”

“Maintain regular system backups that are known-good and stored offline or are segmented from source systems,” the advisory added.

“Ghost ransomware victims whose backups were unaffected by the ransomware attack were often able to restore operations without needing to contact Ghost actors or pay a ransom.”

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.
00:07:48

Mr. Monsanto Goes to Washington: The Casey Means Confirmation Hearing

The recent Senate Health Committee hearing for Surgeon General nominee Casey Means went as predicted.

The Planned “NATO Bank” Is Expected To Finance Europe’s Impending Arms Race With Russia

RT drew attention in late January to a report by Izvestia about the West’s alleged plans to launch a “Defense, Security, and Resilience Bank” (DSRB) by 2027.

The Iran War Allows Congress to Make Itself Relevant Again

Congress has made itself irrelevant by submitting to presidential power. The Iran War gives Congress the ability to refuse to spend on undeclared wars.

Albin Sadar Cartoons

Over the past twelve years, Albin Sadar has drawn cartoons for conservative websites like American Thinker, American Greatness, and now for The Thinking Conservative.

Hanoi Jane Typifies Hollywood Idiocy

After the United States and Israel launched military operations in Iran, wacky Jane Fonda decided to insert herself into the news again.

Minnesota Sues Federal Government Over Medicaid Funding Freeze

Minnesota filed a lawsuit on March 2 to block the federal government from withholding $243 million in Medicaid funds.

Mamdani’s Universal Free Child Care Ready for 2,000 New York City 2-Year-Olds

Two thousand 2-year-olds will be enrolled in child care not costing their parents a penny, NYC Mayor Mamdani and NY Gov. Hochul announced.

Father of Georgia High School Shooting Suspect Found Guilty of Murder Charges

A Georgia jury found a father guilty of murder for giving his son a rifle prosecutors say was used in a deadly 2024 school shooting, holding him responsible.

Texas Gov. Abbott Warns of Possible Iranian Terrorist ‘Sleeper Cells’ in His State

“We made clear to the public that the state of Texas is taking seriously the possibility of terrorist activity, lone wolf, lone wolf activity,” Abbott said.

Trump Meets Germany’s Merz at White House, Says Berlin Aligned With US on Iran

German Chancellor Merz met with President Trump at the White House, with the Trump saying Berlin is aligned with Washington on the Iran War.

President Donald Trump Gives Update on Operation Epic Fury

Over the past 36 hours, the US and its partners have launched Operation Epic Fury, one of the largest, most complex, most overwhelming military offensives the world has ever seen.

Trump Announces US Military Sank 9 Iranian Navy Ships

President Trump said that the U.S. military has sunk nine Iranian naval ships and “largely destroyed” the regime’s naval headquarters.

Trump Agrees to Talk to New Iranian Leadership

President Donald Trump has agreed to open discussions with Iran’s newly established leadership following the death of Supreme Leader Ali Khamenei.
spot_img

Related Articles

Popular Categories

MAGA Business Central