Premium
This is an archive article published on August 27, 2024

Chinese govt backed hackers exploit bug to compromise internet companies, cybersecurity firm claims

Lumen Technologies informed about the alleged hacking incident in a blog post and added that four US companies and one non-US firm have been identified.

Chinese hackers.HP security researchers also found an increase in Chromeloader campaigns. (Representational Image)

A cybersecurity firm has claimed what could be a nightmare for internet giants that a Chinese hacking group exploited a software bug in order to compromise multiple internet companies in the US and other countries, Reuters reported.

Lumen Technologies researchers have claimed that the hacker group exploited an unknown vulnerability in a software platform Versa Director, which is used to manage services for customers of Santa Clara, California-based Versa Networks.

Lumen Technologies informed about the alleged hacking incident in a blog post and added that four US companies and one non-US firm have been identified.

Story continues below this ad

Versa Network acknowledged the vulnerability of the data and accepted that Versa Director faced exploitation “in at least one known instance” by a group of hackers.

“A vulnerability was recently discovered in Versa Director. This vulnerability allowed potentially malicious files to be uploaded by users with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin privileges,” Versa Networks said in a bulletin.

Lumen in its blog post added that according to its assessment, the hack was carried out by an advanced hacking group “Volt Typhoon” which is backed by the Chinese government.

Lumen also said that it was “moderately confident” about its assessment in identifying the hacker group.

Story continues below this ad

The US Cybersecurity and Infrastructure Security Agency added Versa’s vulnerability case to its “known exploited vulnerabilities” list but both the Chinese Embassy in Washington and the US officials denied details about the incident, news agency Reuters reported.

The Chinese government has always denied its involvement in any kind of cyber espionage, though the US has been taking a strict stance against companies linked directly to Beijing who could be potential threats to national security. TikTok is treading a dangerous path in the US for example.

Stay updated with the latest - Click here to follow us on Instagram

Latest Comment
Post Comment
Read Comments
Advertisement
Advertisement
Advertisement
Advertisement