Chinese Hackers Compromised Organizations in 70 Nations, Warn US Federal Agencies

5Mind. The Meme Platform
The Epoch Times Header

Companies are advised to constantly update their apps and software, and patch known network vulnerabilities to prevent such attacks.

A ransomware group called “Ghost” is exploiting the network vulnerabilities of various organizations to gain access to their systems, according to a joint advisory issued by multiple U.S. federal agencies.

“Beginning early 2021, Ghost actors began attacking victims whose internet-facing services ran outdated versions of software and firmware,” the Cybersecurity and Infrastructure Security Agency (CISA) said in the Feb. 19 joint advisory. “Ghost actors, located in China, conduct these widespread attacks for financial gain.”

The attacks have targeted schools and universities, government networks, critical infrastructure, technology and manufacturing companies, health care, and several small and mid-sized businesses.

“This indiscriminate targeting of networks containing vulnerabilities has led to the compromise of organizations across more than 70 countries, including organizations in China,” CISA, the FBI, and the Multi-State Information Sharing and Analysis Center said in the advisory.

Ghost actors are also associated with other names such as Cring, Crypt3r, HsHarada, Hello, Wickrme, Phantom, Rapture, and Strike.

The criminals use publicly available code to exploit “common vulnerabilities and exposures” of their targets to secure access to servers. They leverage vulnerabilities in servers running Adobe ColdFusion, Microsoft Exchange, and Microsoft SharePoint.

Threat actors use tools to “collect passwords and/or password hashes to aid them with unauthorized logins and privilege escalation or to pivot to other victim devices,” the warning read. Attackers typically spend only a few days on their target’s networks.

The advisory recommended that organizations patch known network vulnerabilities by applying “timely security updates” to firmware, software, and operating systems.

Organizations must train users to recognize phishing attempts, it said. Entities should identify, investigate, and issue alerts regarding any “abnormal network activity.”

“Maintain regular system backups that are known-good and stored offline or are segmented from source systems,” the advisory added.

“Ghost ransomware victims whose backups were unaffected by the ransomware attack were often able to restore operations without needing to contact Ghost actors or pay a ransom.”

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Conservative Against Trump Are Dead to Me!

Youth today use the expression “sus” when something is suspicious and many traditionally pro-Trump conservative podcasters have become extremely sus.

Fat Propaganda Roundup: ‘Housing Inequity’

Rampant obesity doesn’t afflict parts of the world that don’t have drive-thrus, don’t spray toxics on cash crops and refuse to walk anywhere for any reason.

The Rich and the Dead

Regarding taxes, New York Governor Kathy Hochul believes she can induce wealthy former Empire State citizens to return after telling them to leave town.

Bob Mueller Died and Dodged a Bullet

Newly released information about Obama and Clinton means Mueller was a knowing participant in an attempt to overthrow a dually elected president.

Intelligence Assessment: Biden-Era CIA Framed Housewives as Domestic Terrorists

That tradwife food blogger obsessed with organic food and eliminating microplastics was, per Biden’s CIA, a Trojan horse for a Fourth Reich.

Jury Finds Meta, Google Liable in Social Media Addiction Trial

A Los Angeles jury on March 25 found Google and Meta liable in a landmark social media addiction trial.

Pentagon Signs New Deals to Boost Wartime Missile Production

The Pentagon struck agreements with major defense firms to speed production of key weapons systems heavily used in early stages of U.S. and Israeli operations against Iran.

‘I’m Done’: Robert Malone Exits CDC Vaccine Advisory Role

Dr. Robert Malone an adjunct prof. at Louisiana State Univ. noted judge deemed him unfit though he has decades of experience in the vaccine field.

FedEx Rolls Out Same-Day Delivery Service

FedEx launched a same-day delivery service as shipping and retail companies compete to meet growing customer expectations for near-instant order fulfillment.

Markwayne Mullin Sworn In as DHS Secretary

Former Oklahoma Senator Markwayne Mullin was sworn in at the White House as the new Secretary of the Department of Homeland Security (DHS).
00:27:39

US Looking to Seize Iranian Defectors’ Money: Bessent

Treasury Sec. Scott Bessent said that the US is moving to seize funds transferred abroad by Iranian defectors, so it can be to returned to the Iranian people.

Trump Says He’s ‘Not Putting Troops Anywhere’ Amid Iran War

President Donald Trump met with Japanese Prime Minister Sanae Takaichi to discuss the Iran war, saying he is not inclined to send U.S. ground troops.

US Agencies Terminated or Reduced 95 Wasteful Contracts Worth $2 Billion: DOGE

Federal agencies canceled or scaled back 95 wasteful contracts worth up to $2B in the last four weeks, saving taxpayers $757M.
spot_img

Related Articles

Popular Categories

MAGA Business Central