Share

US, UK accuse China of cyberespionage that hit millions of people

accreditation
0:00
play article
Subscribers can listen to this article
Cameras are installed at Tiananmen Square in Beijing in 2005. (Guang Niu/Getty Images)
Cameras are installed at Tiananmen Square in Beijing in 2005. (Guang Niu/Getty Images)
  • The US and UK say China spied on millions of their citizens and companies.
  • They started legal proceedings and filed sanctions linked to the "APT31" campaign.
  • The efforts stretched over decades, the UK and US claim, and covered both stealing secrets and repression of Chinese dissidents.


US and British officials on Monday filed charges, imposed sanctions, and accused Beijing of a sweeping cyberespionage campaign that allegedly hit millions of people including lawmakers, academics and journalists, and companies including defense contractors.

Authorities on both sides of the Atlantic nicknamed the hacking group Advanced Persistent Threat 31 or "APT31", calling it an arm of China's Ministry of State Security. Officials reeled off a laundry list of targets: White House staffers, US senators, British parliamentarians, and government officials across the world who criticised of Beijing.

Few other victims were identified by name, but American officials said that the hackers' decade-plus spying spree compromised defense contractors, dissidents and a variety of US companies, including American steel, energy, and apparel firms. Among the targets were leading providers of 5G mobile telephone equipment and wireless technology. Even the spouses of senior US officials and lawmakers were targeted, the officials said.

The aim of the global hacking operation was to "repress critics of the Chinese regime, compromise government institutions, and steal trade secrets," Deputy US Attorney General Lisa Monaco said in a statement.

In an indictment unsealed on Monday against seven of the alleged Chinese hackers, US prosecutors in court said the hacking resulted in the confirmed or potential compromise of work accounts, personal emails, online storage and telephone call records belonging to millions of Americans. Officials in London accused APT31 of hacking British lawmakers critical of China and said that a second group of Chinese spies was behind the hack of Britain's electoral watchdog that separately compromised the data of millions more people in the United Kingdom.

Chinese diplomats in Britain and the US dismissed the allegations as unwarranted. The Chinese Embassy in London called the charges "completely fabricated and malicious slanders."

Reuters was not immediately able to locate contact information for the seven alleged hackers being charged by the Department of Justice.

The announcements were made as both Britain and the US imposed sanctions on a firm they said was a Ministry of State Security front company tied to the hacking activity.

The US Treasury Department in a statement said the sanctions were on Wuhan Xiaoruizhi Science and Technology, as well as on two Chinese nationals.

"Today's announcement exposes China's continuous and brash efforts to undermine our nation's cybersecurity and target Americans and our innovation," FBI Director Christopher Wray said in a statement.

Tensions over issues relating to cyberespionage have been rising between Beijing and Washington, as Western intelligence agencies have increasingly sounded the alarm on alleged Chinese state-backed hacking activity.

China has also begun in recent years to call out alleged Western hacking operations. For example, last year, the Ministry of State of Security claimed that the US National Security Agency had repeatedly penetrated Chinese telecommunication giant Huawei Technologies.

US prosecutors listed numerous unnamed victims around the globe who had been targeted, but several stand out in the indictment.

In 2020, the Chinese hackers targeted staffers working for a US presidential campaign, prosecutors wrote. The disclosure matches public reporting at the time by Google that Chinese hackers sent malicious emails to the campaign of current President Joe Biden, but no compromise had been detected.

Another alleged mission involved the hacking of an American firm known for public opinion research in 2018, the same year of a US midterm election.

"Politicians, parties, and elections organizations are rich sources of intelligence that offer collectors everything from rare geopolitical insights to enormous troves of data, said John Hultquist, chief analyst for US cybersecurity intelligence firm Mandiant, a division of Google owner Alphabet.

"As we've seen in previous election cycles, actors like APT31 turn to political organizations to find the geopolitical intelligence that they're tasked with collecting," Hultquist said.

We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Voting Booth
Should the Proteas pick Faf du Plessis for the T20 World Cup in West Indies and the United States in June?
Please select an option Oops! Something went wrong, please try again later.
Results
Yes! Faf still has a lot to give ...
67% - 1056 votes
No! It's time to move on ...
33% - 510 votes
Vote
Rand - Dollar
18.76
+1.4%
Rand - Pound
23.43
+0.3%
Rand - Euro
20.08
+0.2%
Rand - Aus dollar
12.25
+0.3%
Rand - Yen
0.12
+0.2%
Platinum
924.10
-0.0%
Palladium
959.00
+0.1%
Gold
2,337.68
0.0%
Silver
27.19
-0.0%
Brent Crude
89.50
+0.6%
Top 40
69,358
+1.3%
All Share
75,371
+1.4%
Resource 10
62,363
+0.4%
Industrial 25
103,903
+1.3%
Financial 15
16,161
+2.2%
All JSE data delayed by at least 15 minutes Iress logo
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE