



查看: 1923|回复: 19

【10.02.19 纽约时报】两所中国学校据称与黑客攻击有关

发表于 2010-3-10 23:16 | 显示全部楼层 |阅读模式
【原文标题】2 China Schools Said to Be Tied to Online Attacks

Published: February 18, 2010

SAN FRANCISCO — A series of online attacks on Google and dozens of other American corporations have been traced to computers at two educational institutions in China, including one with close ties to the Chinese military, say people involved in the investigation.

Daniel Rosenbaum for The New York Times
James C. Mulvenon said the Chinese government often used volunteer “patriotic hackers” to support its policies.
以下是纽约时报记者Daniel Rosenbaum发回的报道
James C. Mulvenon声称中国政府经常利用“爱国黑客”当志愿者来支持推行其政策。

They also said the attacks, aimed at stealing trade secrets and computer codes and capturing e-mail of Chinese human rights activists, may have begun as early as April, months earlier than previously believed. Google announced on Jan. 12 that it and other companies had been subjected to sophisticated attacks that probably came from China.

Computer security experts, including investigators from the National Security Agency, have been working since then to pinpoint the source of the attacks. Until recently, the trail had led only to servers in Taiwan.

If supported by further investigation, the findings raise as many questions as they answer, including the possibility that some of the attacks came from China but not necessarily from the Chinese government, or even from Chinese sources.

Tracing the attacks further back, to an elite Chinese university and a vocational school, is a breakthrough in a difficult task. Evidence acquired by a United States military contractor that faced the same attacks as Google has even led investigators to suspect a link to a specific computer science class, taught by a Ukrainian professor at the vocational school.

The revelations were shared by the contractor at a meeting of computer security specialists.

The Chinese schools involved are Shanghai Jiaotong University and the Lanxiang Vocational School, according to several people with knowledge of the investigation who asked for anonymity because they were not authorized to discuss the inquiry.

Jiaotong has one of China’s top computer science programs. Just a few weeks ago its students won an international computer programming competition sponsored by I.B.M. — the “Battle of the Brains” — beating out Stanford and other top-flight universities.

Lanxiang, in east China’s Shandong Province, is a huge vocational school that was established with military support and trains some computer scientists for the military. The school’s computer network is operated by a company with close ties to Baidu, the dominant search engine in China and a competitor of Google.

Within the computer security industry and the Obama administration, analysts differ over how to interpret the finding that the intrusions appear to come from schools instead of Chinese military installations or government agencies. Some analysts have privately circulated a document asserting that the vocational school is being used as camouflage for government operations. But other computer industry executives and former government officials said it was possible that the schools were cover for a “false flag” intelligence operation being run by a third country. Some have also speculated that the hacking could be a giant example of criminal industrial espionage, aimed at stealing intellectual property from American technology firms.

Independent researchers who monitor Chinese information warfare caution that the Chinese have adopted a highly distributed approach to online espionage, making it almost impossible to prove where an attack originated.

“We have to understand that they have a different model for computer network exploit operations,” said James C. Mulvenon,  a Chinese military specialist and a director at the Center for Intelligence Research and Analysis in Washington. Rather than tightly compartmentalizing online espionage within agencies as the United States does, he said, the Chinese government often involves volunteer “patriotic hackers” to support its policies.
“我们必须认识到,他们(中国人)拥有不同的计算机网络研发手段,”James C. Mulvenon,中国军事问题专家、华盛顿情报研究与分析中心主任这样说。不同于美国将网络间谍活动严格控制在机构内部、并紧密分区,中国政府经常利用“爱国黑客”志愿者来支持其政策实施。

Spokesmen for the Chinese schools said they had not heard that American investigators had traced the Google attacks to their campuses.

If it is true, “We’ll alert related departments and start our own investigation,” said Liu Yuxiang, head of the propaganda department of the party committee at Jiaotong University in Shanghai.

But when asked about the possibility, a leading professor in Jiaotong’s School of Information Security Engineering said in a telephone interview: “I’m not surprised. Actually students hacking into foreign Web sites is quite normal.” The professor, who teaches Web security, asked not to be named for fear of reprisal.

“I believe there’s two kinds of situations,” the professor continued. “One is it’s a completely individual act of wrongdoing, done by one or two geek students in the school who are just keen on experimenting with their hacking skills learned from the school, since the sources in the school and network are so limited. Or it could be that one of the university’s I.P. addresses was hijacked by others, which frequently happens.”

At Lanxiang Vocational, officials said they had not heard about any possible link to the school and declined to say if a Ukrainian professor taught computer science there.

A man named Mr. Shao, who said he was dean of the computer science department at Lanxiang but refused to give his first name, said, “I think it’s impossible for our students to hack Google or other U.S. companies because they are just high school graduates and not at an advanced level. Also, because our school adopts close management, outsiders cannot easily come into our school.”

Mr. Shao acknowledged that every year four or five students from his computer science department were recruited into the military.

Google’s decision to step forward and challenge China over the intrusions has created a highly sensitive issue for the United States government. Shortly after the company went public with its accusations, Secretary of State Hillary Rodham Clinton challenged the Chinese in a speech on Internet censors, suggesting that the country’s efforts to control open access to the Internet were in effect an information-age Berlin Wall.

A report on Chinese online warfare prepared for the U.S.-China Economic Security Review Commission in October 2009 by Northrop Grumman identified six regions in China with military efforts to engage in such attacks. Jinan, site of the vocational school, was one of the regions.

Executives at Google have said little about the intrusions and would not comment for this article. But the company has contacted computer security specialists to confirm what has been reported by other targeted companies: access to the companies’ servers was gained by exploiting a previously unknown flaw in Microsoft’s Internet Explorer Web browser.

Forensic analysis is yielding new details of how the intruders took advantage of the flaw to gain access to internal corporate servers. They did this by using a clever technique — called man-in-the-mailbox — to exploit the natural trust shared by people who work together in organizations.

After taking over one computer, intruders insert into an e-mail conversation a message containing a digital attachment carrying malware that is highly likely to be opened by the second victim. The attached malware makes it possible for the intruders to take over the target computer.




发表于 2010-3-11 00:17 | 显示全部楼层
回复 支持 反对

使用道具 举报

发表于 2010-3-11 02:15 | 显示全部楼层


回复 支持 反对

使用道具 举报

发表于 2010-3-11 08:12 | 显示全部楼层

帮蓝翔做了那么多年广告 这破学校都是不温不火

结果被谷歌一炒 地球人都知道了 这效果!
回复 支持 反对

使用道具 举报

发表于 2010-3-11 11:06 | 显示全部楼层


回复 支持 反对

使用道具 举报

发表于 2010-3-11 12:28 | 显示全部楼层
回复 支持 反对

使用道具 举报

发表于 2010-3-11 14:07 | 显示全部楼层


回复 支持 反对

使用道具 举报

发表于 2010-3-11 14:13 | 显示全部楼层

回复 支持 反对

使用道具 举报

发表于 2010-3-11 18:44 | 显示全部楼层
本帖最后由 达到诬赖 于 2010-3-11 18:50 编辑

回复 支持 反对

使用道具 举报

发表于 2010-3-11 18:53 | 显示全部楼层
回复 支持 反对

使用道具 举报

发表于 2010-3-11 21:17 | 显示全部楼层
回复 支持 反对

使用道具 举报

发表于 2010-3-12 11:10 | 显示全部楼层
回复 支持 反对

使用道具 举报

发表于 2010-3-12 12:17 | 显示全部楼层
蓝翔技校在中国东部山东省,这是一所由军方资助建立,为军方培养军事计算机科学家的大型技术学校。该校计算机网络被一家与百度集团有密切联系的公司操控,而百度正是中国搜索引擎老大,也是谷歌公司的竞争者。AC四月青年社区% x7 r6 h! ~+
雅什卡 发表于 2010-3-11 00:17

回复 支持 反对

使用道具 举报

发表于 2010-3-13 03:15 | 显示全部楼层
回复 支持 反对

使用道具 举报

发表于 2010-3-13 13:07 | 显示全部楼层
回复 支持 反对

使用道具 举报

发表于 2010-3-13 15:53 | 显示全部楼层
惜清华北大,凤姐独享;复旦科大,稍欠张扬。一代天骄,上海交大,只识击破防火墙。俱往矣,数一流学校,还 ...
雅什卡 发表于 2010-3-11 00:17

回复 支持 反对

使用道具 举报

发表于 2010-3-13 15:54 | 显示全部楼层
getdns 发表于 2010-3-11 18:53

回复 支持 反对

使用道具 举报

发表于 2010-3-13 15:55 | 显示全部楼层
如果这事是美国人干的,那很可能只是头脑一时冲动的“个人违法行为”,可如果这事是中国人干的,别说是学生 ...
滔滔1949 发表于 2010-3-11 02:15

回复 支持 反对

使用道具 举报

发表于 2010-3-13 16:07 | 显示全部楼层
回复 16# 中国梁

回复 支持 反对

使用道具 举报

发表于 2010-3-13 18:57 | 显示全部楼层


qushichen 发表于 2010-3-11 11:06

回复 支持 反对

使用道具 举报

您需要登录后才可以回帖 登录 | 注册会员


小黑屋|手机版|免责声明|四月网论坛 ( AC四月青年社区 京ICP备08009205号 备案号110108000634 )

GMT+8, 2024-9-21 14:09 , Processed in 0.047545 second(s), 21 queries , Gzip On.

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表