Latest News:  

English>>Foreign Affairs

U.S. security experts reject hacking allegations against China

By Tang Danlu (Xinhua)

20:59, March 20, 2013

BEIJING, March 20 (Xinhuanet) -- Some U.S. security experts have rejected the U.S. cybersecurity firm Mandiant's allegations on cyber attacks from China, lambasting it “full of holes”.

Gary McGraw, CTO at Cigital, said that It is good that Mandiant found the source of advanced persistent threats (APT) in real time, but emphasizing that it is vastly different from being able to pinpoint the source of a cyberattack that takes place in a fraction of a second.

The comment came after U.S. cybersecurity firm Mandiant last month released a report which alleged that a secret Chinese military unit in Shanghai was behind years of cyber attacks against U.S. companies.

In Jeffrey Carr’s words. "It is full of holes," the CEO of digital security consultancy Taia Global said in a blog post cited by Wall Street Journal website.

Carr pointed out that the entire body of evidence in the report is shaky, adding that he wanted to see standards of proof for online crimes that have been agreed by the whole information security industry.

"If you're going to make a claim for attribution, then you must be both fair and thorough in your analysis and, through the application of a scientific method like Analysis of Competing Hypotheses(ACH), rule out competing hypotheses and then use estimative language in your finding," he argued, adding that the method is something that Mandiant didn't do.

It went without saying that “consequently its explosive allegation isn't ironclad,” he wrote.

ACH is known as a vetting process routinely adopted by the intelligence agencies like the Central Intelligence Agency.

In his writing, Carr gave more evidence for his argument. "My problem is that Mandiant refuses to consider what everyone that I know in the Intelligence Community acknowledges — that there are multiple states engaging in this activity."

There were more than 30 countries worldwide that may have military hacking capabilities noted by the company, he said, explaining that the report didn't include a thorough analysis of alternative explanations, aiming to exhaust the alternatives and thus narrow down the range of possible conclusions.

Moreover, James Arlen, a senior consultant with Leviathan Security Group, expressed similar concerns about Mandiant’s report.

In addition, he claimed that U.S. itself did not have entirely clean hands, adding that the U.S. and Israel were behind the Stuxnet worm used to attack Iranian nuclear facilities.

"What Mandiant does not say, and which I think is important for readers to remember, is that APT0 is the United States of America," he said.

In Mandiant’s report, it claimed that more than 20 APT groups originate in China, specifying that APT1 is a single organization of operators that has conducted a cyber espionage campaign against a broad range of victims since at least 2006.

According to the Washington Post, the American cybersecurity force is still expanding. The paper reported that the Pentagon is planning to ask for 4,000 additional civilian and military employees to be added to the U.S. Cyber Command.

A U.S. defense department official was quoted as saying that the U.S. will increase the size of its cybersecurity force fivefold over the next several years.

We Recommend:

Review: 12th CPPCC National Committee opens

Review: News conference on new CPPCC session

CPPCC members arrive for opening session

A beautiful China also world's common desire

China's reform roadmap gets clearer

Japan warned not to cause friction with China

Email|Print|Comments(Editor:Yan Meng、Wang Jinxue)

Leave your comment0 comments

  1. Name

  

Selections for you


  1. Terrorist attack cracked

  2. Radar station of East China Sea Fleet

  3. Graduation ceremony of police academy

  4. Cheap chopsticks may be toxic, expert says

  5. Cute dolphins nursed and trained in HK

  6. Apiarists busy with keeping bees

  7. Tang Wei: She's no Barbie

  8. A unique feat of Sichuan opera

  9. Microsoft launches online store on Tmall

  10. Train tickets may cost more than air travel

Most Popular

Opinions

  1. Commentary: To pivot to Asia or peace?
  2. Lavish behavior punished
  3. Migration part of global development
  4. CCTV in hot water after corporate exposé backfires
  5. Cultural parks no substitute for talent
  6. Planning vital to diplomacy
  7. Loopholes for rich make estate tax meaningless
  8. How to start transformation and upgrading?
  9. Bigger does not always mean better for megacities
  10. Railway ministry revamp will not impact ratings

What’s happening in China

Central China tornado kills 3
Injuries rises to 52

  1. Residents brace for another cold spell
  2. Recycled water flows to south Beijing
  3. Official turns big profit on graveyard
  4. Health service hotline operational in 26 provinces
  5. Police crack major car theft network