<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; chinese-hackers</title>
	<atom:link href="http://www.darknet.org.uk/tag/chinese-hackers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>More Cyberterrorism &#8211; Taiwan Political Party Accuses China of Hacking</title>
		<link>http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/</link>
		<comments>http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/#comments</comments>
		<pubDate>Tue, 09 Aug 2011 16:34:30 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[chinese government hackers]]></category>
		<category><![CDATA[chinese-hackers]]></category>
		<category><![CDATA[cyber attacks]]></category>
		<category><![CDATA[cyber-terrorism]]></category>
		<category><![CDATA[cyberterrorism]]></category>
		<category><![CDATA[tawain]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3166</guid>
		<description><![CDATA[Well there hasn&#8217;t been a whole lot of news the last couple of days apart from the London riots &#8211; which don&#8217;t have much of a technical spin. The only technical part is that the looters/rioters etc seem to be organizing themselves using BBM (BlackBerry Messenger) and Twitter. The former being rather smart as it&#8217;s [...]]]></description>
			<content:encoded><![CDATA[<p>Well there hasn&#8217;t been a whole lot of news the last couple of days apart from the London riots &#8211; which don&#8217;t have much of a technical spin. The only technical part is that the looters/rioters etc seem to be organizing themselves using BBM (BlackBerry Messenger) and Twitter.</p>
<p>The former being rather smart as it&#8217;s encrypted and sent via a 3rd party network &#8211; so it&#8217;s not open to wiretapping. It&#8217;s unlikely the tracksuit wearing chavs &#038; hoodies know that, but still &#8211; it&#8217;s keeping them safe. Posting videos/pictures of themselves on public Twitter and Facebook accounts is not so smart though and will surely lead to some arrests.</p>
<p>Anyway that&#8217;s not the topic here, the topic here is another politically motivated hacking attack &#8211; what we would commonly call <a href="http://www.darknet.org.uk/tag/cyberterrorism/" title="Cyberterrorism">cyberterrorism</a>.</p>
<blockquote><p>A Taiwanese political party suspects the Chinese government is behind a hacking attack that stole information about the party&#8217;s election activities.</p>
<p>Taiwan&#8217;s Democratic Progressive Party (DPP) said on Tuesday that some of the attacks had been traced to China&#8217;s Xinhua News Agency, a state-run press group. The attack operated as a phishing campaign, in which DPP staffers were sent e-mails by hackers who attempted to impersonate other party employees. The staffers were then told to open the e-mail attachments, which secretly contained viruses to monitor the computers, a DPP spokeswoman said.</p>
<p>The DPP alleges the attacks were routed from the Xinhua News Agency through Malaysia and Australia. The attacks were also traced to IP addresses from the Chinese mainland. The Xinhua News Agency was contacted for response, but has yet to an issue a comment.</p>
<p>IT security experts have said the attacks were part of a state-sponsored hacking attempt, according to the DPP. &#8220;Already many countries and security groups have said the attacks from China&#8217;s cyber army are well organized and that a state actor guides and supports them,&#8221; the DPP said in statement issued on the party&#8217;s website. </p></blockquote>
<p>As we all know, Taiwan and <a href="http://www.darknet.org.uk/tag/china/">China</a> are not really the best of friends with China claiming Taiwan to be part of it and Taiwan not quite agreeing. In China they fully act like Taiwan is just another state/province in China.</p>
<p>This time it seems to be a state run Chinese news agency (Xinhua) attacking Taiwan&#8217;s Democratic Progressive Party (commonly know as DPP).</p>
<p>These are of course at this time just claims, and it&#8217;ll probably stay that way as there&#8217;s no conclusive proof in these kind of situations.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>China is already in the spotlight for cyber attacks after security vendor McAfee reported a massive cyber attack that stole sensitive information from 72 companies and organizations. Although McAfee did not name the group behind the hacking attempts, security experts have pointed fingers at China because of the organizations targeted. China, however, has repeatedly denied it sponsors any kind of hacking.</p>
<p>A DPP spokeswoman said the phishing attacks have been an ongoing problem, but that it appears more of the recent hacking attempts have been coming from China.</p>
<p>Taiwan and China separated in 1949 after a civil war. While China&#8217;s ruling communist party seeks for reunification with the island, the DPP supports Taiwan becoming its own nation, putting the two at odds with one another.</p>
<p>The DPP said on Tuesday it also traced hacking attempts to Taiwan&#8217;s own Research, Development and Evaluation Commission and called for the commission to investigate. The commission could not be reached for immediate comment. </p></blockquote>
<p>China have been in the spotlight fairly recently with some very widespread phishing attacks including &#8211; <a href="http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/">Targeted Phishing Attacks Carried Out On Gmail – Likely From China</a>.</p>
<p>It seems like these kinds of games will be going on forever including hacktivism, cyberterrorism, defacement in the name of certain causes and all kinds of other naughty business.</p>
<p>With so much information on computers now it&#8217;s no surprise, I&#8217;d like to see these kind of organisations having better infosec policies though including awareness training for all staff with access to e-mail accounts and computers.</p>
<p>Source: <a href="http://www.networkworld.com/news/2011/080911-taiwan-political-party-accusses-china.html?source=nww_rss">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3166+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;t=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/&amp;title=More+Cyberterrorism+%E2%80%93+Taiwan+Political+Party+Accuses+China+of+Hacking" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F08%2Fmore-cyberterrorism-taiwan-political-party-accuses-china-of-hacking%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/08/more-cyberterrorism-taiwan-political-party-accuses-china-of-hacking/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Targeted Phishing Attacks Carried Out On Gmail &#8211; Likely From China</title>
		<link>http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/</link>
		<comments>http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/#comments</comments>
		<pubDate>Thu, 02 Jun 2011 11:02:17 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Phishing]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[chinese political activists]]></category>
		<category><![CDATA[chinese-hackers]]></category>
		<category><![CDATA[cyber-terrorism]]></category>
		<category><![CDATA[cyberterrorism]]></category>
		<category><![CDATA[gmail phishing]]></category>
		<category><![CDATA[hacking-US-government]]></category>
		<category><![CDATA[phising gmail]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[secrecy]]></category>
		<category><![CDATA[spear phishing]]></category>
		<category><![CDATA[targeted phishing]]></category>
		<category><![CDATA[us government officials]]></category>
		<category><![CDATA[us military security]]></category>
		<category><![CDATA[us-military]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3124</guid>
		<description><![CDATA[It was just about a week ago when we wrote about the technical flaw in Hotmail and the fact that the Hotmail Exploit Has Been Silently Stealing E-mail for some time. The latest news is some hackers have been targeting users of the Gmail service, specifically US government officials. This comes shortly after the news [...]]]></description>
			<content:encoded><![CDATA[<p>It was just about a week ago when we wrote about the technical flaw in <a href="http://www.darknet.org.uk/tag/hotmail/">Hotmail</a> and the fact that the <a href="http://www.darknet.org.uk/2011/05/hotmail-exploit-has-been-silently-stealing-e-mail/">Hotmail Exploit Has Been Silently Stealing E-mail</a> for some time.</p>
<p>The latest news is some hackers have been targeting users of the <a href="http://www.darknet.org.uk/tag/gmail/">Gmail</a> service, specifically US government officials. This comes shortly after the news of <a href="http://www.darknet.org.uk/2011/05/lockheed-martin-hacked-rumoured-to-be-linked-to-rsa-securid-breach/">Lockheed Martin being compromised</a> and a second military contractor being <a href="http://www.theregister.co.uk/2011/06/01/military_contractor_2nd_rsa_securid_hack/">attacked using RSA SecurID tokens today</a>.</p>
<p>It is what&#8217;s known as a &#8216;spear phishing&#8217; attack &#8211; which means it&#8217;s aimed at a specific organization or in this case specific individuals. It&#8217;s not a shotgun approach &#8211; where they spray e-mails everywhere, more like a sniper rifle.</p>
<blockquote><p>Google has detected a targeted campaign to collect hundreds of personal Gmail passwords, many of them belonging to senior US government officials, Chinese political activists, military personnel, and journalists.</p>
<p>The accounts may have been compromised using spear phishing techniques in which victims received highly personalized messages that contained links to counterfeit Gmail pages, according to a blog post published in February that Google cited when disclosing the attacks on Wednesday. Google said the campaign “appears to originate from Jinan, China” but didn&#8217;t share any evidence supporting that claim.</p>
<p>“The goal of this effort seems to have been to monitor the contents of these users&#8217; emails, with the perpetrators apparently using stolen passwords to change people&#8217;s forwarding and delegation settings,” Google&#8217;s blog post, titled “Ensuring your information is safe online,” stated. “Google detected and has disrupted this campaign to take users&#8217; passwords and monitor their emails. Company officials have alerted the victims and “relevant government authorities.”</p>
<p>According to the February blog post, some of the phishing pages were hosted using the free dyndns.org service and contained images and text that were almost indistinguishable from those hosted on the real Google service. The links were “customized and individualized for each target,” independent security researcher Mila Parkour wrote</p></blockquote>
<p>They are using the same old trick of getting the passwords then changing the forwarding settings so they can receive all the e-mails sent to that account somewhere else.</p>
<p>The attacks are said to originate from <a href="http://www.darknet.org.uk/tag/china/">China</a>, but as I&#8217;m sure you all know &#8211; just because the IP is in China it doesn&#8217;t mean the attacker is physically there too.</p>
<p>It&#8217;s a pretty systematic attack and extremely hard to defend against, because once they&#8217;ve compromised a few accounts of people that know each other &#8211; they can then make the personalized phishing mails even more relevant and convincing.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>Once accounts were compromised attackers created rules to automatically forward all received email to accounts under their control, Parkour said. The attackers then used the purloined email to “gather information about the closets associates and family/friends” and exploited “the harvested information for making future mailings more plausible.”</p>
<p>Parkour&#8217;s post showed a half-dozen emails exchanged in the campaign, several of which contained Pentagon and US State Department addresses.</p>
<p>“This is the latest version of the State&#8217;s joint statement,” one fraudulent email read. “My understanding is that State put in placeholder econ language and am happy to have us fill in but in their rush to get a cleared version from the WH, they sent the attached to Mike.”</p>
<p>The email contained what appeared to be a Microsoft Word document as an attachment.</p>
<p>The incident harkens back to a separate attack Google disclosed in January 2010, that targeted the company&#8217;s source code and the Gmail accounts of human rights activists in China. Unlike the most recent phishing campaign, the “highly sophisticated and targeted attack” from 2010 exploited vulnerabilities on Google&#8217;s network to gain unauthorized access. Dozens of other companies were also targeted in the earlier attack.</p>
<p>Google&#8217;s blog post provides a variety of tips for keeping accounts secure. They include use of a two-step verification procedure when logging in to accounts to add an extra layer of security to the login process. Gmail also warns users of suspicious logins to their accounts.</p></blockquote>
<p>Google does have a variety of security measure, they allow you see account activity details, IP addresses logged into your account and they do warn you of any suspicious activity. Recently they also started supporting two-factor authentication using tokens, this would totally defeat these kind of phishing attacks.</p>
<p>They support both SMS based authentication and application based (for iPhone, Android and BlackBerry).</p>
<p>So if you&#8217;re using a <a href="http://www.darknet.org.uk/tag/google/">Google</a> account, make sure it&#8217;s secure!</p>
<p>Source: <a href="http://www.theregister.co.uk/2011/06/02/gmail_spear_phishing_exposed/">The Register</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Targeted+Phishing+Attacks+Carried+Out+On+Gmail+%E2%80%93+Likely+From+China+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3124+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/&amp;t=Targeted+Phishing+Attacks+Carried+Out+On+Gmail+%E2%80%93+Likely+From+China" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/&amp;title=Targeted+Phishing+Attacks+Carried+Out+On+Gmail+%E2%80%93+Likely+From+China" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/&amp;title=Targeted+Phishing+Attacks+Carried+Out+On+Gmail+%E2%80%93+Likely+From+China" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/&amp;title=Targeted+Phishing+Attacks+Carried+Out+On+Gmail+%E2%80%93+Likely+From+China" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/&amp;title=Targeted+Phishing+Attacks+Carried+Out+On+Gmail+%E2%80%93+Likely+From+China" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F06%2Ftargeted-phishing-attacks-carried-out-on-gmail-likely-from-china%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/06/targeted-phishing-attacks-carried-out-on-gmail-likely-from-china/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Chinese Police Shut Down &#8216;Black Hawk Safety Net&#8217; Hacking School</title>
		<link>http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/</link>
		<comments>http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/#comments</comments>
		<pubDate>Tue, 09 Feb 2010 09:21:36 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[3800hk.com]]></category>
		<category><![CDATA[black hawk safety net]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[china hacking school]]></category>
		<category><![CDATA[chinese hacking school]]></category>
		<category><![CDATA[chinese malware]]></category>
		<category><![CDATA[chinese police]]></category>
		<category><![CDATA[chinese-hackers]]></category>
		<category><![CDATA[hacking school]]></category>
		<category><![CDATA[learn to hack]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2520</guid>
		<description><![CDATA[There&#8217;s been a LOT of news lately about attacks from China, Chinese hackers and sites from China propagating malware. The latest news is that China police have managed to shut down a hacker training operating that was schooling the next generation of Chinese script kiddies. It seems like China is grooming a huge cyberarmy both [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>There&#8217;s been a LOT of news lately about attacks from <a href="http://www.darknet.org.uk/tag/china/">China</a>, Chinese hackers and sites from China propagating malware.</p>
<p>The latest news is that China police have managed to shut down a hacker training operating that was schooling the next generation of Chinese script kiddies.</p>
<p>It seems like China is grooming a huge cyberarmy both in the private section (mostly underground) and in the government sector for cyber-terrorism.</p>
<blockquote><p>Police in central China have shut down a hacker training operation that openly recruited thousands of members online and provided them with cyberattack lessons and malicious software, state media said Monday. The crackdown comes amid growing concern that China is a center for Internet crime and industrial espionage. Search giant Google said last month its e-mail accounts were hacked from China in an assault that also hit at least 20 other companies.</p>
<p>Police in Hubei province arrested three people suspected of running the hacker site known as the Black Hawk Safety Net that disseminated Web site hacking techniques and Trojan software, the China Daily newspaper said. Trojans, which can allow outside access to a computer when implanted, are used by hackers to illegally control computers. The report did not say exactly when the arrests took place.</p>
<p>Black Hawk Safety Net recruited more than 12,000 paying subscribers and collected more than 7 million yuan ($1 million) in membership fees, while another 170,000 people had signed up for free membership, the paper said.</p></blockquote>
<p>With over 12,000 paying members they must have been raking in quite a tidy sum in membership fees. Estimated at $1million USD if you take into consideration the economy that&#8217;s a lot of money if there&#8217;s only 3 guys running the site.</p>
<p>It seems like the group has been around for quite a while, it&#8217;s rare to see a fairly underground hacking scene become so commercial.</p>
<p>I&#8217;m surprised it took 3 years to get shut-down, but then China has had it&#8217;s fair share of more serious problems to deal with.</p>
<blockquote><p>The case can be traced to a hacking attack in 2007 on an Internet cafe in Macheng city in Hubei that caused Web services for dozens to be disrupted for more than 60 hours, the paper said. A few of the suspects caught in April said they were members of the Black Hawk Safety Net.</p>
<p>Black Hawk&#8217;s Web site 3800hk.com could not be accessed, but a notice purportedly from Black Hawk circulating on online forums said that a backup site had been set up. The notice also sought to reassure members of its continued operations and said its reputation was being smeared by some Internet users.</p>
<p>&#8220;At this time, there are Internet users with evil intentions who have deliberately destroyed Black Hawk&#8217;s reputation, deceived our members and stole material,&#8221; the notice addressed to members said. &#8220;We must join forces and attack these Web sites.&#8221;</p>
<p>A customer service officer contacted by phone, who refused to give his name, said the backup site provides content for its paying members to download course material to allow them to continue their computer lessons — though not in hacking. The Hubei government refused to comment Monday while officials at the provincial public security bureau did not respond to repeated requests for comment.</p></blockquote>
<p>The site involved seems to be down still but rumors on related forums are that a backup site is already up, I&#8217;m sure it&#8217;s being kept private though and I suspect only the paying members will be notified of the new URL.</p>
<p>After this bust they&#8217;d be foolish not to be a little more cautious.</p>
<p>It&#8217;ll be interesting to see if any more news pops up about this Black Hawk Safety Net organization and if so what they are up to.</p>
<p>At least this time we can be pretty sure it&#8217;s not a <a href="http://www.darknet.org.uk/2010/01/former-darkmarket-admin-faces-10-year-jail-sentence/">CIA sting operation</a>.</p>
<p></p>
<p>Source: <a href="http://news.yahoo.com/s/ap/20100208/ap_on_bi_ge/as_china_hacking">Yahoo! News</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Chinese+Police+Shut+Down+%E2%80%98Black+Hawk+Safety+Net%E2%80%99+Hacking+School+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2520+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/&amp;t=Chinese+Police+Shut+Down+%E2%80%98Black+Hawk+Safety+Net%E2%80%99+Hacking+School" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/&amp;title=Chinese+Police+Shut+Down+%E2%80%98Black+Hawk+Safety+Net%E2%80%99+Hacking+School" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/&amp;title=Chinese+Police+Shut+Down+%E2%80%98Black+Hawk+Safety+Net%E2%80%99+Hacking+School" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/&amp;title=Chinese+Police+Shut+Down+%E2%80%98Black+Hawk+Safety+Net%E2%80%99+Hacking+School" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/&amp;title=Chinese+Police+Shut+Down+%E2%80%98Black+Hawk+Safety+Net%E2%80%99+Hacking+School" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F02%2Fchinese-police-shut-down-black-hawk-safety-net-hacking-school%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/02/chinese-police-shut-down-black-hawk-safety-net-hacking-school/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>France Complaining of China Hacks Too</title>
		<link>http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/</link>
		<comments>http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/#comments</comments>
		<pubDate>Wed, 12 Sep 2007 19:47:41 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Legal Issues]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[chinese]]></category>
		<category><![CDATA[chinese military hackers]]></category>
		<category><![CDATA[chinese-hackers]]></category>
		<category><![CDATA[cyber-terrorism]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[france]]></category>
		<category><![CDATA[french]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[online attacks]]></category>
		<category><![CDATA[pentagon hacking]]></category>
		<category><![CDATA[terrorism]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/</guid>
		<description><![CDATA[After the recent fiasco about the Pentagon being Hacked by Chinese Military another few governments have piped up with information about cyber surveillance by China. The latest is France. It seems like right now china has it’s fingers in many pies. France has become the fourth country to speak out against hackers in China following [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>After the recent fiasco about the Pentagon being Hacked by Chinese Military another few governments have piped up with information about cyber surveillance by China.</p>
<p>The latest is France.</p>
<p>It seems like right now china has it’s fingers in many pies.</p>
<blockquote><p>    France has become the fourth country to speak out against hackers in China following an attack on French government systems.</p>
<p>    Francis Delon, France’s secretary general for national defence, claimed that the country’s systems had been compromised and that the evidence pointed to China.</p>
<p>    “We have proof that there was involvement with China,” he said. “But that is not to say the Chinese government.”</p></blockquote>
<p>It’s interesting to see people talk about ‘proof’ when in a virtual world what proof can you have? It can from a Chinese IP address? Is there any proof that says that Chinese IP address wasn’t compromised by a Russian hacker and used to channel attacks?</p>
<p>Diversion and subterfuge are common even in non-political hacking scenarios.</p>
<blockquote><p>
America, the UK and Germany have similarly complained of security attacks that came from the region.</p>
<p>US officials claimed that the Chinese military successfully hacked computers inside the Pentagon in June.</p>
<p>Meanwhile, German chancellor Angela Merkel also complained that her government’s systems had been penetrated by Chinese hackers, raising the subject with Chinese president Hu Jintao.</p></blockquote>
<p>It seems they are racking up quite some intel on a number of countries.</p>
<p>China has of course again denied ALL of the claims laid against it.</p>
<p></p>
<p>Source: <a href="http://www.vnunet.com/vnunet/news/2198370/france-joins-chinese-hacking">vnunet</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=France+Complaining+of+China+Hacks+Too+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D687+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/&amp;t=France+Complaining+of+China+Hacks+Too" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/&amp;title=France+Complaining+of+China+Hacks+Too" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/&amp;title=France+Complaining+of+China+Hacks+Too" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/&amp;title=France+Complaining+of+China+Hacks+Too" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/&amp;title=France+Complaining+of+China+Hacks+Too" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2007%2F09%2Ffrance-complaining-of-china-hacks-too%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2007/09/france-complaining-of-china-hacks-too/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>SHA-1 Cracked &#8211; Old News, But People Still Talk</title>
		<link>http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/</link>
		<comments>http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/#comments</comments>
		<pubDate>Fri, 02 Mar 2007 09:26:19 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[chinese-hackers]]></category>
		<category><![CDATA[chinese-scientists]]></category>
		<category><![CDATA[cryptanalysis]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[hashing]]></category>
		<category><![CDATA[hashing-algorith]]></category>
		<category><![CDATA[md5]]></category>
		<category><![CDATA[nist]]></category>
		<category><![CDATA[NSA]]></category>
		<category><![CDATA[sha-1]]></category>
		<category><![CDATA[sha1]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/</guid>
		<description><![CDATA[A paper about cracking SHA-1 originally surfaced in 2005, from a fairly reputable scientific source in China, it was widely publicised nor talked about much. But then recently, just last month China managed to make a wave out of it, almost 2 years after the initial &#8216;report&#8217;. It was even Slashdotted on January 20th 2007, [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>A paper about cracking SHA-1 originally surfaced in 2005, from a fairly reputable scientific source in China, it was widely publicised nor talked about much.</p>
<p>But then recently, just last month China managed to make a wave out of it, almost 2 years after the initial &#8216;report&#8217;.</p>
<p>It was even <a href="http://it.slashdot.org/article.pl?sid=07/01/20/1936257">Slashdotted on January 20th 2007</a>, the article states the following:</p>
<blockquote><p>These two main algorithms are currently the crucial technology that electronic signatures and many other password securities use throughout the international community. They are widely used in banking, securities, and e-commerce. SHA-1 has been recognized as the cornerstone for modern Internet security. According to the article, in the early stages of Wang&#8217;s research, there were other data encryption researchers who tried to crack it. However, none of them succeeded. This is why in 15 years Hash research had become the domain of hopeless research in many scientists&#8217; minds.</p></blockquote>
<p>Source: <a href="http://en.epochtimes.com/news/7-1-11/50336.html">Epoch Times</a></p>
<p>Bruce Schneier wrote about this in 2005, February in fact, almost 2 full years ago.</p>
<p><a href="http://www.schneier.com/blog/archives/2005/02/sha1_broken.html">SHA-1 Broken</a></p>
<p><a href="http://www.schneier.com/blog/archives/2005/02/cryptanalysis_o.html">Cryptanalysis of SHA-1</a></p>
<p>It&#8217;s not a major thing though and it&#8217;s far beyond anything most criminals could use to thwart national security&#8230;or even the security of things based on SHA-1 like OpenSSH.</p>
<p></p>
<p>There are however plenty of replacement algorithms if you are paranoid such as SHA-224, SHA-256, SHA-384, and SHA-512.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D466+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;t=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2007%2F03%2Fsha-1-cracked-old-news-but-people-still-talk%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

