Chinese mastermind behind the Google hack found, government links discovered

The security consultant doesn't work directly with the government, but as a researcher his work and findings would have been accessible by the Chinese government and its agencies. It's a tenuous link without direct government ties and it's still possible that someone else hacked the author to get his code -- but it seems unlikely in my opinion, given the scale of the attack.
In further news, the attack itself came from Shanghai Jiaotong University and Lanxiang Vocational School, with the former boasting one of the best security departments in the country, replete with veteran government cyber commanders. Jiaotong has a very strictly-monitored and secure internal network too, making it unlikely that the Google attack could've been routed through it.
The plot will continue to thicken, but we may never see a real resolution. Just do the world a favor and upgrade from IE6 -- and pressure your system administrators to do the same!
[via ReadWriteWeb]













Comments
10
Subscribe to commentsSebastian AnthonyFeb 23rd 2010 9:42AM
I hope that wasn't racism. We furrow and frown upon racism.
DragonFeb 23rd 2010 11:36AM
Just a little clarification here for the Media:
Hacker = Good Guy (No damage is done)
Cracker = Bad Guy (Hacker + Bad intentions)
3tearFeb 23rd 2010 12:38PM
Sorry, I was just messing around. No offence intended.
(you can delete the comment if you want)
SlappyFeb 23rd 2010 12:42PM
I find it amusing that people are still unsure whether the Chinese government was involved.
Considering they monitor all internet traffic, they were at least aware of, if not actively engaged in, these activities.
AnthonyFeb 23rd 2010 3:12PM
I thought it was IE8 that was exploited in the attacks... or did I just remember wrong?
Charles LFeb 23rd 2010 4:55PM
Facts about Shandong Lanxiang Vocational can be found online easily, including complaints about their poor student accomodations, and tacky late night infomercial to attract attendance.
Does that sound like a "front operation"? It's a vocational school for junior high and highschool dropouts.
Facts are Lanxiang has no computer courses beyond Word and Excel operation, and its tacit connection with the military is 38 students from their culinary and mechanical progran enlisting after graduation.
Sebastian AnthonyFeb 23rd 2010 5:05PM
You know the specifics I gave were about Jiatong, yes? Not Lanxiang.
Charles LFeb 23rd 2010 5:27PM
Sebastian, let me quote you:
" Lanxiang Vocational School, which boasts one of the best security departments in the country, replete with former government cyber commanders"
This can not be farther from the truth.
Lanxiang has not computer course beyond Word and Excel. I don't know what your comment policy is, but if you email me I'll send you all the links I've found.
Sebastian AnthonyFeb 23rd 2010 6:27PM
Hey -- thanks for following up.
I _think_ my story got edited, but I'm not sure. Originally it read 'with the former school boasting' -- I'll edit it now to correct it :)
RosiemeowFeb 28th 2010 6:40PM
This is the biggest crock of propaganda ever spewed out of the White House. Google was a major contributor to the Obama campaign. China has the largest Internet population in the world. The *supposed* attack on Google was not sophisticated, if there was one at all which most with half a brain in the US understand. The CIA, SS, APNIC & CERT were all well aware of the so called port scans and "alleged" hacks supposedly originating from "China" and have been so for years, and have done nothing - the block of IP addresses they supposedly came from have contact information that is invalid, and could have easily been set up by anyone, anywhere. APNIC is well aware the IP address is registered with invalid information (FYI, APNIC is in Australia). After speaking with APCERT, there have been no port scans or reported hacks since. It is, after all, good for the US economy to sell security software and keep whatever software developers that are left here in the US in work. And why should China worry about it - they do, after all, own 51% of Symantec. The first report of these hacks and scans came from a supposed "Congressional Aide" on some hokey political site over a year ago. This is nothing new. China has the world's largest Internet population in the world, and Google stands to lose astronomical amounts of potential revenue with porn being their biggest money generating source. Google forgets China is their *customer* and regardless of what WE want and like, it is China's choice what *they* want and like, and certainly not Hillary Clinton's. And frankly, China should not and does not care, and will hopefully take it for the stupidity it really is, since there has been NO substantiation to Google's claim - no details, no information except to say it happened. C'mon now.
http://community.whptv.com/forums/thread/4297353.aspx