Sensitive data stolen in Australia defence hack, China hand suspected
AFP | Oct 12, 2017, 10:25 IST
SYDNEY: Sensitive data about Australia's F- 35 stealth fighter and P-8 surveillance aircraft programmes were stolen when a defence subcontractor was hacked using a tool widely used by Chinese cyber criminals, officials said today.
The 50-person aerospace engineering firm was compromised in July last year but the national cyber security agency, the Australian Signals Directorate (ASD), only became aware of the breach in November, technology website ZDNet Australia reported.
Some 30GB of "sensitive data" subjected to restricted access under the US government's International Traffic in Arms Regulations rules were stolen, ASD's Mitchell Clarke told a security conference yesterday according to ZDNet.
Clarke, who worked on the case and did not name the subcontractor, said information about the F-35, the US' latest generation of fighter jets, as well as the P8, an advanced submarine hunter and surveillance craft, were lifted.
Another document was a wireframe diagram of one of the Australian navy's new ships, where a viewer could "zoom in down to the captain's chair".
The hackers used a tool called "China Chopper" which according to security experts is widely used by Chinese actors, and had gained access via an internet-facing server, he said.
In other parts of the network, the subcontractor also used internet-facing services that still had their default passwords "admin" and "guest".
Those brought in to assess the attack nicknamed the hacker Alf after a character on the popular Australian soap "Home and Away", Clarke said.
The three month period where they were unaware of the breach they dubbed "Alf's Mystery Happy Fun Time".
Defence industry minister Christopher Pyne told reporters in Adelaide "the information they have breached is commercial".
"It is not classified and it is not dangerous in terms of the military," he said.
Pyne added that Australia was increasingly a target for cyber criminals as it was undertaking a massive 50 billion Australian dollar ($39 billion) submarine project which he described as the world's largest.
The nation has also committed to buy 72 F-35A aircraft for 17 billion dollar.
He would not comment who might be behind the breach, only stating that the government was spending billions of dollars on cyber security.
Western governments have long accused hackers in China of plundering industrial, corporate and military secrets.
The revelations came just days after Assistant Minister for Cyber Security Dan Tehan said there were 47,000 cyber incidents in the last 12 months, a 15 per cent jump from the previous year.
A key worry was 734 attacks that hit private sector national interest and critical infrastructure providers during the period, Tehan said.
Last year, the government's Cyber Security Centre revealed that foreign spies installed malicious software on the Bureau of Meteorology's system and stole an unknown number of documents.
The 50-person aerospace engineering firm was compromised in July last year but the national cyber security agency, the Australian Signals Directorate (ASD), only became aware of the breach in November, technology website ZDNet Australia reported.
Some 30GB of "sensitive data" subjected to restricted access under the US government's International Traffic in Arms Regulations rules were stolen, ASD's Mitchell Clarke told a security conference yesterday according to ZDNet.
Clarke, who worked on the case and did not name the subcontractor, said information about the F-35, the US' latest generation of fighter jets, as well as the P8, an advanced submarine hunter and surveillance craft, were lifted.
Another document was a wireframe diagram of one of the Australian navy's new ships, where a viewer could "zoom in down to the captain's chair".
The hackers used a tool called "China Chopper" which according to security experts is widely used by Chinese actors, and had gained access via an internet-facing server, he said.
In other parts of the network, the subcontractor also used internet-facing services that still had their default passwords "admin" and "guest".
Those brought in to assess the attack nicknamed the hacker Alf after a character on the popular Australian soap "Home and Away", Clarke said.
The three month period where they were unaware of the breach they dubbed "Alf's Mystery Happy Fun Time".
Defence industry minister Christopher Pyne told reporters in Adelaide "the information they have breached is commercial".
"It is not classified and it is not dangerous in terms of the military," he said.
Pyne added that Australia was increasingly a target for cyber criminals as it was undertaking a massive 50 billion Australian dollar ($39 billion) submarine project which he described as the world's largest.
The nation has also committed to buy 72 F-35A aircraft for 17 billion dollar.
He would not comment who might be behind the breach, only stating that the government was spending billions of dollars on cyber security.
Western governments have long accused hackers in China of plundering industrial, corporate and military secrets.
The revelations came just days after Assistant Minister for Cyber Security Dan Tehan said there were 47,000 cyber incidents in the last 12 months, a 15 per cent jump from the previous year.
A key worry was 734 attacks that hit private sector national interest and critical infrastructure providers during the period, Tehan said.
Last year, the government's Cyber Security Centre revealed that foreign spies installed malicious software on the Bureau of Meteorology's system and stole an unknown number of documents.
Get latest news & live updates on the go on your pc with News App. Download The Times of India news app for your device.
From around the web
More from The Times of India
From the Web
More From The Times of India
53 Yr-Old Man Uses This to Run Circles Around 20 Yr-Old Son
LCR HealthData Added 2.8 Trillion to Global GDP and Now Under Threat.
Entrepreneur | NCRInjured in an Auto Accident? You Probably Didn’t Get All..
Volleypost - Practical FinanceHere Are The Best Cell Phone Plans For Seniors
Yahoo SearchHow to “Fix” Hair Loss at Home
JuveTress
September inflation may hit six- month high on GST and public sector pay rise
Jharkhand gangster ‘worth Rs 500cr’ and wanted for shoe baron murder nabbed in Gurgaon
Army operating base attacked in Arunachal, NSCN(K) hand suspected
KMC lodges 4 FIRs in stolen trident lights case
Russian cybercrime suspect in Greek court for second extradition request
All Comments ()+^ Back to Top
Refrain from posting comments that are obscene, defamatory or inflammatory, and do not indulge in personal attacks, name calling or inciting hatred against any community. Help us delete comments that do not follow these guidelines by marking them offensive. Let's work together to keep the conversation civil.
HIDE