Converge Digest

Mandiant: China’s Cyber Espionage Led by PLA Unit in Shanghai

A highly publicized report from Mandiant, a security consulting firm based in Arlington, Virginia, links cyber attacks on over 140 U.S. corporations to a specific unit of China’s People’s Liberation Army.

The report, called “APT1: Exposing One of China’s Cyber Espionage Units,” details how it has the PLA’s Unit 61398 systematically carried out spear-phishing attacks and stole confidential data from leading companies across multiple industries.  Mandiant claims the widespread attacks are on-going.  

In addition to describing the methodology of the attacks, the Mandiant report provides domain names, MD5 hashes of malware and X.509 encryption certificates associated with the attackers.

Some highlights of the widely-cited Mandiant report:

http://intelreport.mandiant.com/

http://intelreport.mandiant.com/Mandiant_APT1_Report.pdf

Exit mobile version