Chinese Hackers Compromised Organizations in 70 Nations, Warn US Federal Agencies

5Mind. The Meme Platform
The Epoch Times Header

Companies are advised to constantly update their apps and software, and patch known network vulnerabilities to prevent such attacks.

A ransomware group called “Ghost” is exploiting the network vulnerabilities of various organizations to gain access to their systems, according to a joint advisory issued by multiple U.S. federal agencies.

“Beginning early 2021, Ghost actors began attacking victims whose internet-facing services ran outdated versions of software and firmware,” the Cybersecurity and Infrastructure Security Agency (CISA) said in the Feb. 19 joint advisory. “Ghost actors, located in China, conduct these widespread attacks for financial gain.”

The attacks have targeted schools and universities, government networks, critical infrastructure, technology and manufacturing companies, health care, and several small and mid-sized businesses.

“This indiscriminate targeting of networks containing vulnerabilities has led to the compromise of organizations across more than 70 countries, including organizations in China,” CISA, the FBI, and the Multi-State Information Sharing and Analysis Center said in the advisory.

Ghost actors are also associated with other names such as Cring, Crypt3r, HsHarada, Hello, Wickrme, Phantom, Rapture, and Strike.

The criminals use publicly available code to exploit “common vulnerabilities and exposures” of their targets to secure access to servers. They leverage vulnerabilities in servers running Adobe ColdFusion, Microsoft Exchange, and Microsoft SharePoint.

Threat actors use tools to “collect passwords and/or password hashes to aid them with unauthorized logins and privilege escalation or to pivot to other victim devices,” the warning read. Attackers typically spend only a few days on their target’s networks.

The advisory recommended that organizations patch known network vulnerabilities by applying “timely security updates” to firmware, software, and operating systems.

Organizations must train users to recognize phishing attempts, it said. Entities should identify, investigate, and issue alerts regarding any “abnormal network activity.”

“Maintain regular system backups that are known-good and stored offline or are segmented from source systems,” the advisory added.

“Ghost ransomware victims whose backups were unaffected by the ransomware attack were often able to restore operations without needing to contact Ghost actors or pay a ransom.”

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

The Starobelsk Dormitory Bombing Reflects Horribly On Ukraine & Its Western Patrons

Three waves of Ukrainian drones struck a dormitory in Starobelsk last week in an attack that killed nearly two dozen students.

The cost of doing nothing

Tax dollars must not be used to advance an ideology that encourages children to reject their own bodies and embark on a lifetime of medicalization.

The Last Hurrah Of The Rino Establishment

RINO Senators and GOP elites see MAGA as the enemy, not Democrats, using the 2026 battles to reclaim Republican Party control in 2028.

Debt remembered and debt ignored

Memorial Day compels Americans to confront a word we avoid: debt— the kind carved into headstones at Arlington and cemeteries across the country.

When Coincidence Ceases to Persuade

Democratic leaders, media, celebrities, and elites contributed to a climate where political violence against one side of America feels increasingly justified.

US Military Needs 3 Years to Replenish Weapons Systems Used in Iran War, New Analysis Shows

The Iran war and continued aid to Ukraine have depleted U.S. weapons inventories that could take three or more years to replenish, according to CSIS.

Trump Rules Out Iran Sanctions Relief as He Advances Peace Talks

President Trump downplayed talk of immediate sanctions relief on Iran amid ongoing negotiations to secure a lasting peace agreement with Tehran.

Maryland Governor Signs Bill Banning Many Handguns, Triggering Lawsuit

Maryland’s governor on May 26 signed legislation that bans selling, buying, and receiving many handguns, prompting groups such as the NRA to sue.

Mullin Says DHS Drawing Up Plans to Stop Processing Immigration at Sanctuary City Airports

DHS is “drawing up plans” to halt customs and immigration processing at airports in sanctuary cities that do not cooperate with federal immigration efforts.

Trump Suggests Vance’s Anti-Fraud Efforts Could Save Social Security

The president made the comment at a Cabinet meeting...

Trump’s Triumphal Arch Approved by Federal Commission

A commission has approved President Donald Trump’s triumphal arch just outside of Washington, a key step toward making the project a reality.

Trump Details Military Complex Above and Below New White House Ballroom

Trump says planned White House ballroom will be the “safest building ever built,” serving ceremonial and national security purposes.

Senate Confirms 49 Trump Nominees, Including Key Energy Officials

The Senate has confirmed 49 nominees selected by President Trump, including officials tapped to oversee federal land management and energy policy.
spot_img

Related Articles

Popular Categories

MAGA Business Central