LTN Law Technology News
  • Home
  • News
  • Reviews
  • Commentary
  • Surveys
  • Events
  • LegalTech® Directory
  • About LTN
  • Register
  • Topics:
  • E-Discovery & Compliance
  • Litigation Support
  • Practice Management
  • Office Tech
  • Mobile Lawyer
  • Research & Libraries
  • Tech Law

Home > Report Spotlights Chinese Cyberthreat to U.S.

Font Size: increase font decrease font

Report Spotlights Chinese Cyberthreat to U.S.

By Sue Reisinger Contact All Articles 

Corporate Counsel

February 21, 2013

  •    
  •    
  •    
  •      
 

Image: clipart.com

Mandiant, a Virginia-based cybersecurity firm, gave America a wake-up slap across the face this week by detailing how Chinese military hackers are infiltrating U.S. companies. And Wednesday, President Barack Obama's administration responded by announcing a broad plan to fight the cybertheft of trade secrets that included diplomatic pressure to discourage it.

The White House didn't specifically mention China, nor did he offer details on diplomatic consequences. But experts have long suspected that China was behind much of the hacking and data theft in U.S. companies, and the Mandiant report, "APT1: Exposing One of China's Cyber Espionage Units [PDF]," left no doubt.

"This [report] ought to elevate the dialogue to the boardroom and to the general counsel office," Grady Summers, Mandiant vice president, told CorpCounsel.com.

It also increased the pressure on the Obama administration to speak more forcefully than it has so far. As part of the plan's rollout, Attorney General Eric Holder spoke of increased efforts by the U.S. Department of Justice. He also didn't specifically mention China or the Mandiant report.

"The Department has also gathered valuable intelligence about foreign-based economic espionage," he said. " We've forged strong relationships with law enforcement partners, private sector experts, and international allies.

"And we've begun to raise awareness about the devastating impact of these crimes — and to encourage companies to report suspected breaches to law enforcement."

Summers said it was clear from the White House's message that it has the right perspective and that the administration is devoting more attention to the problem.

"I'm personally hoping to see more aggressive action taken, though," Summers added. "As we showed in the report, China has overstepped boundaries with their intensive, long-term cyberespionage, and we're hoping that they will be held accountable for it."

The report, which was released Tuesday, states, "Our research and observations indicate that the Communist Party of China is tasking the Chinese People's Liberation Army (PLA) to commit systematic cyberespionage and data theft against organizations around the world."

Mandiant wrote more than 70 pages of details, including photos and video, showing how hackers in China's PLA Unit 61398 are penetrating corporate America. The hackers, working from a 12-story office building in Shanghai, are also infiltrating financial institutions, power companies, pipelines, and air traffic control centers, according to the report.

The report says Mandiant observed intrusions into 141 companies from 2006 to the present, with the hackers periodically revisiting the victim's network over months or even years, and stealing broad categories of intellectual property ranging from technology blueprints to business plans to emails. It didn't name the companies.

It called this type of hacking "advanced persistent threats," and labeled the Chinese unit "APT1."

Chinese officials denounced the report as "untenable," while counter-accusing the United States of hacking into their computers.

In the report, Mandiant said, "It is time to acknowledge the threat is originating in China, and we wanted to do our part to arm and prepare security professionals to combat that threat effectively ... We hope that this report will lead to increased understanding and coordinated action in countering APT network breaches."

Some of the reaction to the report was swift and strong. "If the Chinese government flew planes into our airspace, our planes would escort them away. If it happened two, three, or four times, the President would be on the phone and there would be threats of retaliation," Shawn Henry, former FBI executive assistant director, told the Associated Press. Henry is president of the security firm CrowdStrike.

"This is happening thousands of times a day," Henry told the AP. "There needs to be some definition of where the red line is and what the repercussions would be."

Jody Westby, chief executive of Global Cyber Risk in Washington, D.C., agreed. The report, she said, highlights the seriousness of the issue, to law firms as well as to every industry sector.

"The administration has to start focusing on it as a diplomatic issue," Westby said. "We need them to start standing up to nation states that we think are sponsoring cyberespionage. It is costing our companies money and goes to our national and economic security."

The Mandiant report also contains detailed indicators to help companies spot the Chinese intruders. "It is our sincere hope that this report can temporarily increase the costs of Unit 61398's operations and impede their progress in a meaningful way," Mandiant said.

"We are acutely aware of the risk this report poses for us," Mandiant added. "We expect reprisals from China as well as an onslaught of criticism."

But Michael DuBose, managing director and leader of the cyberinvestigations practice for consultant Kroll Advisory Solutions, called the information sharing "a good thing all around."

Dubose, a federal prosecutor for 23 years including four years as chief of the computer crime section at DOJ, added, "The threats already exist, so to extent that you can give others a heads up to their existence and they can investigate their own networks, it is a very positive thing."

On Wednesday, Mandiant's Summers said supporters have outnumbered critics "about a thousand to one. And organizations are telling us they are already using the data to scan their logs."



Subscribe to Corporate Counsel

You must be signed in to comment on an article

Find similar content

Companies, agencies mentioned

    
  • CorpCounsel.com
  • CrowdStrike
  • Associated Press
  • Chinese People's Liberation Army
  • FBI
  • Global Cyber Risk
  • PLA
  • Communist Party of China
  • United States Department of Justice

Key categories

    
  • Executive Agencies
  • Intellectual Property

Most viewed stories

    
  1. Big Law Whipped for Poor Tech Training
    •      
  2. 10 Devices You Should Never Take Along on a Business Trip
    •      
  3. Is Stanford Law the New Vortex of Legal Technology?
    •      
  4. Using Computer Forensics to Investigate IP Theft
    •      
  5. How the Predictive Coding Process Will Affect Paralegals
    •      
  6. Collaboration Is Key to Defending Cyberattacks
    •      
  7. ILTA Study to Gauge New Technologies' Impact on Law Practice
    •      
  8. CEIC: the Destination for Digital Investigation
    •      
  9. 3-D Printing: The Next Big Thing in IP Law?
    •      
  10. Enron Sandbox Stirs Up Private Data, Again
    •      
lawjobs.com

TOP JOBS

MORE JOBS

POST A JOB

From the Law.com Network

Hiring Interns? Be Sure to Do It Right

ACC Weighs in on Arizona's In-House Pro Bono Rules

Ex-Dewey Partners Face New Foe in Firm's Bankruptcy

S&C Adds Linklaters Restructuring Partner in London
  •      
    • Subscription Required

Contrite Companies Can Win Forgiveness in Bribery Cases
  •      
    • Subscription Required

Plaintiffs Want to See Toyota's 'Crown Jewels'
  •      
    • Subscription Required

Enron Sandbox Stirs Up Private Data, Again

LegalTech West Coast Wraps Up With Ethics, VC News

In Tricky Prosecutions, Judges Play Peacemakers

Ropers Majeski Tries to Re-Invent Itself
  •      
    • Subscription Required

Fla. Attorneys Lead Force-Placed Insurance Fight

Lawsuit Names Missing Fla. Attorney for Alleged Fraud
  •      
    • Subscription Required

Summer Programs Still in a Drought

Lawyer Left Without Coverage for Alleged Malpractice at Prior Firm
  •      
    • Subscription Required

The Affordable State-Specific Practice Solution
Available in NY, NJ, PA and CT editions - research, draft and prepare even the most complex cases with ease.

Circuit Reinstates Lawsuit by Inmate Over Cell Conditions
  •      
    • Subscription Required

Custody Ruling in Bitter Fight May Turn on 11-Year-Old's Wish
  •      
    • Subscription Required

Castille Testifies in Favor of 'Civil Gideon' Funding

Workers' Comp Judges Can't Fight Rescinded Raise
  •      
    • Subscription Required

Law Schools Are Looking Beyond LSATs, Says Mich. Dean

Is Freezing Your Eggs the Solution?

Advising Clients on Weather and the Workplace
  •      
    • Subscription Required

Texas Sues BP, Others Over Deepwater Oil Spill Disaster
  •      
    • Subscription Required

'Follow That Escapee!'

Hospital Accuses Judge Of Violating Judicial Canons
  •      
    • Subscription Required

Corporate Bribery Case Part Of National Trend
  •      
    • Subscription Required

Court Continues To Grant Lawyers Fraud Immunity
  •      
    • Subscription Required

  • About LTN   |
  • Contact LTN   |
  • Advertise with Us   |
  • Sitemap
  • About |
  • ALM Properties |
  • ALM Reprints |
  • Customer Support |
  • Privacy Policy |
  • Terms & Conditions |
  • ALM User License Agreement
ALM Media