亚洲视频第一页精品|亚洲成AV人片一区二区三区|伊人久久大香线焦综合四虎|国产一区二区三区内射高清|亚洲精品自在在线观看|国产欧美日韩在线观看精品

網(wǎng)絡(luò)戰(zhàn)升級,F(xiàn)BI通緝五名中國軍方人員

日期:2014-05-27點擊:4990

        這個消息從5月19日就傳開了。可以理解為網(wǎng)絡(luò)戰(zhàn)的最新發(fā)展態(tài)勢——借由法律為名的公開化。

 

From left, Chinese military officers Gu Chunhui, Huang Zhenyu, Sun Kailiang, Wang Dong, and Wen Xinyu have been indicted on cyber espionage charges.

美國司法部認為有必要起訴的理由是認為這個刺探行動超越了他們“給自己劃定”的軍事、政治領(lǐng)域,而將刺探的信息用于經(jīng)濟目的。在起訴書中大量列舉了受害者的失竊信息,我猜想他們都應(yīng)該向FBI報案了。

 

起碼,他們知道他們有什么信息被竊取了,并且通過手段找到了他們認定的犯罪份子。單就這兩點而言,可見美國的信息與網(wǎng)絡(luò)安全取證的水平之高。

FBI的新聞稿中寫道:Wang Dong, Sun Kailiang, Wen Xinyu, Huang Zhenyu, and Gu Chunhui, who were officers in Unit 61398 of the Third Department of the Chinese People’s Liberation Army (PLA). The indictment alleges that Wang, Sun, and Wen, among others known and unknown to the grand jury, hacked or attempted to hack into U.S. entities named in the indictment, while Huang and Gu supported their conspiracy by, among other things, managing infrastructure (e.g., domain accounts) used for hacking.

受害人: Westinghouse Electric Co. (Westinghouse); U.S. subsidiaries of SolarWorld AG (SolarWorld); United States Steel Corp. (U.S. Steel); Allegheny Technologies Inc. (ATI); the United Steel, Paper and Forestry, Rubber, Manufacturing, Energy, Allied Industrial and Service Workers International Union (USW); and Alcoa Inc.

刺探的時間跨度: 2006-2014

31條犯罪指控: 31 counts as follow (all defendants are charged in all counts):

Count(s) Charge Statute Maximum Penalty
One

Conspiring to commit computer fraud and abuse

18 U.S.C. § 1030(b) 10 years
Two through nine Accessing (or attempting to access) a protected computer without authorization to obtain information for the purpose of commercial advantage and private financial gain 18 U.S.C. §§ 1030(a)(2)(C), 1030(c)(2)(B)(i)-(iii), and 2 Five years (each count)
10-23 Transmitting a program, information, code, or command with the intent to cause damage to protected computers 18 U.S.C. §§ 1030(a)(5)(A), 1030(c)(4)(B), and 2 10 years (each count)
24-29 Aggravated identity theft 18 U.S.C. §§ 1028A(a)(1), (b), (c)(4), and 2 Two years (mandatory consecutive)
30 Economic espionage 18 U.S.C. §§ 1831(a)(2), (a)(4), and 2 15 years
31 Trade secret theft 18 U.S.C. §§ 1832(a)(2), (a)(4), and 2 10 years

Summary of Defendants’ Conduct Alleged in the Indictment

Defendant Victim Criminal Conduct
Sun Westinghouse

In 2010, while Westinghouse was building four AP1000 power plants in China and negotiating other terms of the construction with a Chinese SOE (SOE-1), including technology transfers, Sun stole confidential and proprietary technical and design specifications for pipes, pipe supports, and pipe routing within the AP1000 plant buildings.

Additionally, in 2010 and 2011, while Westinghouse was exploring other business ventures with SOE-1, Sun stole sensitive, non-public, and deliberative e-mails belonging to senior decision-makers responsible for Westinghouse’s business relationship with SOE-1.
Wen SolarWorld In 2012, at about the same time the Commerce Department found that Chinese solar product manufacturers had “dumped” products into U.S. markets at prices below fair value, Wen and at least one other, unidentified co-conspirator stole thousands of files including information about SolarWorld’s cash flow, manufacturing metrics, production line information, costs, and privileged attorney-client communications relating to ongoing trade litigation, among other things. Such information would have enabled a Chinese competitor to target SolarWorld’s business operations aggressively from a variety of angles.
Wang and Sun U.S. Steel In 2010, U.S. Steel was participating in trade cases with Chinese steel companies, including one particular state-owned enterprise (SOE-2). Shortly before the scheduled release of a preliminary determination in one such litigation, Sun sent spearphishing e-mails to U.S. Steel employees, some of whom were in a division associated with the litigation. Some of these e-mails resulted in the installation of malware on U.S. Steel computers. Three days later, Wang stole hostnames and descriptions of U.S. Steel computers (including those that controlled physical access to company facilities and mobile device access to company networks). Wang thereafter took steps to identify and exploit vulnerable servers on that list.
Wen ATI In 2012, ATI was engaged in a joint venture with SOE-2, competed with SOE-2, and was involved in a trade dispute with SOE-2. In April of that year, Wen gained access to ATI’s network and stole network credentials for virtually every ATI employee.
Wen USW In 2012, USW was involved in public disputes over Chinese trade practices in at least two industries. At or about the time USW issued public statements regarding those trade disputes and related legislative proposals, Wen stole e-mails from senior USW employees containing sensitive, non-public, and deliberative information about USW strategies, including strategies related to pending trade disputes. USW’s computers continued to beacon to the conspiracy’s infrastructure until at least early 2013.
Sun Alcoa About three weeks after Alcoa announced a partnership with a Chinese state-owned enterprise (SOE-3) in February 2008, Sun sent a spearphishing e-mail to Alcoa. Thereafter, in or about June 2008, unidentified individuals stole thousands of e-mail messages and attachments from Alcoa’s computers, including internal discussions concerning that transaction.
Huang   Huang facilitated hacking activities by registering and managing domain accounts that his co-conspirators used to hack into U.S. entities. Additionally, between 2006 and at least 2009, Unit 61398 assigned Huang to perform programming work for SOE-2, including the creation of a “secret” database designed to hold corporate “intelligence” about the iron and steel industries, including information about American companies.
Gu   Gu managed domain accounts used to facilitate hacking activities against American entities and also tested spear phishing e-mails in furtherance of the conspiracy.

撇開政治不談,我好奇的是他們的取證分析技術(shù)和方法。

根據(jù)指控書和相關(guān)材料顯示,有幾點比較有趣:

1)為何那么多起美國政府認定的來自的攻擊都沒有起訴,偏偏這次起訴了呢?原因就在于他們這次認定了攻擊行動獲取的企業(yè)機密信息被用于了經(jīng)濟目的,并提供給了本國的企業(yè),用于獲得競爭優(yōu)勢。那么,他們是如何具體闡述的呢?他們說,這個部隊的人一方面有組織地對美國企業(yè)進行刺探,獲取機密情報信息,另一方面這個部隊的人也為國內(nèi)的企業(yè)提供安全服務(wù),在為客戶提供安全服務(wù)的時候,將之前獲取的信息透露給了這些國內(nèi)企業(yè)(主要是幾家SOE——國有企業(yè))。仔細一看,他們還真是分析的很深。

2)在認定是這個部隊的人的時候,用了N種方法互相印證,我猜想用到了之前Mandiant的APT1報告中列舉的那些證據(jù)或者類似的、更高級的證據(jù)。同時,他們還提到了一個論證,就是發(fā)現(xiàn)用于回傳機密數(shù)據(jù)的動態(tài)DNS的網(wǎng)站的流量的周期性波動,具有顯著的早8點到晚5點(中國時間)的波峰特性,而其他時間(還有中午1個小時)則呈現(xiàn)波谷,說這跟中國國有事業(yè)單位的上班時間很吻合。在指控書附錄中還貼出了幾幅流量圖。很有意思。

3)在指控書中還比較詳細的枚舉了受害人失竊的信息,細到了具體的主機名,信息類型,甚至個別條目。

 

看了這些你就明白為什么FireEye要收購Mandiant,檢測威脅很重要,數(shù)字取證分析和溯源也很重要啊!結(jié)合到一起才NB。

張生:13751841126
梁生:13826047785
.com
一级片片| 成人影视在线播放| 国产不卡在线看| 欧美一级视| 欧美大片a一级毛片视频| 精品视频在线看| 美国一区二区三区| 日本久久久久久久 97久久精品一区二区三区 狠狠色噜噜狠狠狠狠97 日日干综合 五月天婷婷在线观看高清 九色福利视频 | 国产成人女人在线视频观看| 精品国产一区二区三区久| 一本伊大人香蕉高清在线观看| 天天色成人| 精品久久久久久中文字幕一区 | 免费一级片在线观看| 美国一区二区三区| 日韩在线观看视频免费| 亚洲精品影院久久久久久| 九九干| 天天做日日干| 色综合久久手机在线| 国产91精品一区二区| 成人免费一级毛片在线播放视频| 天堂网中文字幕| 成人免费观看网欧美片| 国产一区二区精品久| 色综合久久天天综线观看| 国产伦久视频免费观看视频| 色综合久久天天综合| a级毛片免费观看网站| 97视频免费在线| 国产国语对白一级毛片| 成人免费一级纶理片| 天天做人人爱夜夜爽2020| 免费一级生活片| 亚洲精品中文字幕久久久久久| 精品国产三级a∨在线观看| 天天做日日爱夜夜爽| 国产一级生活片| 精品视频在线看| 成人影院一区二区三区| 日本免费看视频| 你懂的福利视频| 人人干人人草| 九九久久99综合一区二区| 久久精品人人做人人爽97| 日韩专区亚洲综合久久| 精品视频免费看| 91麻豆精品国产自产在线| 欧美国产日韩在线| 好男人天堂网 久久精品国产这里是免费 国产精品成人一区二区 男人天堂网2021 男人的天堂在线观看 丁香六月综合激情 | 欧美a级成人淫片免费看| 国产伦理精品| 国产视频一区二区三区四区| 欧美一区二区三区在线观看| 精品久久久久久免费影院| 午夜在线影院| 91麻豆高清国产在线播放| 一级女人毛片人一女人| 国产一级强片在线观看| 成人免费网站视频ww| 日本伦理网站| 99热热久久| 九九精品久久| 97视频免费在线| 久久精品免视看国产成人2021| 精品国产三级a| 国产国语对白一级毛片| 欧美另类videosbestsex| 国产精品免费久久| 日韩一级黄色片| 国产一区二区高清视频| 高清一级片| 久久久成人影院| 亚洲 激情| 国产一区二区福利久久| 青青青草影院 | 黄色免费三级| 亚洲不卡一区二区三区在线 | 亚洲天堂免费观看| 好男人天堂网 久久精品国产这里是免费 国产精品成人一区二区 男人天堂网2021 男人的天堂在线观看 丁香六月综合激情 | 99色精品| 国产精品自拍在线| 黄色短视频网站| 国产精品12| 美女被草网站| 精品国产一区二区三区免费| 九九干| 日本久久久久久久 97久久精品一区二区三区 狠狠色噜噜狠狠狠狠97 日日干综合 五月天婷婷在线观看高清 九色福利视频 | 成人免费观看视频| 久久国产精品只做精品| 精品视频在线观看免费| 美女免费精品高清毛片在线视| 国产不卡福利| 午夜激情视频在线观看| 亚洲 国产精品 日韩| 一级女性大黄生活片免费| 超级乱淫伦动漫| 国产国产人免费视频成69堂| 人人干人人草| 日日日夜夜操| 精品在线观看国产| 国产美女在线观看| 成人a级高清视频在线观看| 好男人天堂网 久久精品国产这里是免费 国产精品成人一区二区 男人天堂网2021 男人的天堂在线观看 丁香六月综合激情 | 欧美1卡一卡二卡三新区| 九九久久国产精品| 一本伊大人香蕉高清在线观看| 99热热久久| 日日夜夜婷婷| 日本久久久久久久 97久久精品一区二区三区 狠狠色噜噜狠狠狠狠97 日日干综合 五月天婷婷在线观看高清 九色福利视频 | 青青久久精品国产免费看| 欧美大片aaaa一级毛片| 国产极品精频在线观看| 午夜在线影院| 国产网站在线| 国产精品免费久久| 日韩一级黄色| 日本在线不卡视频| 国产成人欧美一区二区三区的| 日韩在线观看视频网站| 黄视频网站在线免费观看| 日日日夜夜操| 亚洲精品中文字幕久久久久久| 一级毛片视频免费| 国产美女在线观看| 久久久久久久免费视频| 国产网站免费在线观看| 成人免费网站久久久| 午夜欧美福利| 成人免费观看的视频黄页| 国产国语对白一级毛片| 国产91精品一区二区| 欧美日本免费| 欧美a级片视频| 国产成a人片在线观看视频| 成人a大片高清在线观看| 国产精品1024永久免费视频| 久草免费在线视频| 麻豆午夜视频| 国产视频一区在线| 精品久久久久久综合网| 青青青草影院 | 韩国妈妈的朋友在线播放| 台湾毛片| 欧美电影免费| 日本特黄一级| 超级乱淫伦动漫| 天天做日日爱| 精品久久久久久影院免费| 成人免费一级纶理片| 国产视频久久久久| 日韩一级黄色| 国产麻豆精品高清在线播放| 九九精品久久| 午夜在线影院| 国产伦精品一区二区三区无广告| 91麻豆精品国产高清在线| 国产网站免费视频| 麻豆网站在线看| 久草免费在线视频| 国产麻豆精品| 日韩欧美一二三区| 久久99中文字幕| 久久精品大片| 久久精品人人做人人爽97| 午夜在线观看视频免费 成人| 亚洲精品影院| 国产伦理精品| 日韩avdvd| 久久国产一区二区| 色综合久久天天综线观看| 免费国产在线观看| 亚洲精品久久久中文字| 青青久热| 日韩专区一区| 色综合久久手机在线| 99久久精品国产麻豆| 久草免费在线色站| 日日日夜夜操| 高清一级做a爱过程不卡视频| 日本特黄特黄aaaaa大片| 九九久久99| 四虎影视精品永久免费网站| 好男人天堂网 久久精品国产这里是免费 国产精品成人一区二区 男人天堂网2021 男人的天堂在线观看 丁香六月综合激情 | 黄视频网站在线免费观看| 四虎影视久久| 国产高清在线精品一区二区| 91麻豆精品国产自产在线| 99久久精品国产国产毛片| 精品国产亚洲一区二区三区| 精品视频在线观看视频免费视频| 成人免费网站久久久| 黄色福利| 精品久久久久久中文| 国产成人精品一区二区视频| 亚洲天堂在线播放| 成人免费观看网欧美片| 国产福利免费视频| 欧美日本二区| 免费一级生活片|