U.S. report warns of Russia, China cyber spying
Espionage attempts are expected to increase as more sensitive information moves online
IDG News Service - The U.S. can expect more aggressive efforts from countries such as Russia and China to collect information through cyberespionage in areas such as pharmaceuticals, defense and manufacturing, according to a new government report released Thursday.
The two countries were singled out in the report from the Office of the National Counterintelligence Executive, which also issued recommendations for how organizations can strengthen their defenses.
"Chinese actors are the world's most active and persistent perpetrators of economic espionage," the report said. "Russia's intelligence services are conducting a range of activities to collect economic information and technology from U.S. targets."
The growing complexity of IT systems will work to the advantage of cyberspies, as more sensitive information is held on devices such as smartphones and laptops.
Cyberspying is efficient since it can be conducted with relatively limited resources from far away. Once an intrusion is detected, it can be difficult to trace the origin since attacks can be routed through computers worldwide.
The information haul can be devastating. The reported cited the case of Dongfan Chung, who was an engineer with Rockwell and Boeing and was sentenced in 2010. He worked on the B-1 bomber program and was found to have 250,000 pages of documents in his house, which would have filled four, four-drawer filing cabinets.
If converted to digits, the information would fit onto one CD. "Cyberspace makes possible the near instantaneous transfer of enormous quantities of economic and other information," the report said.
China's intelligence agencies often leverage people who have insider access to corporate networks to gain trade secrets and copy them to removable media. Russia's desire to diversify its economy will drive the country to use its highly capable intelligence services, including cybertechniques, to try to gain an economic advantage.
"We judge that the governments of China and Russia will remain aggressive and capable collectors of sensitive U.S. economic information and technologies, particularly in cyberspace," the report said.
It recommended that organizations encrypt information, use multifactor authentication and conduct real-time monitoring of networks, among others.
The report covers 2009 through this year and is part of a law that requires the U.S. president to send Congress a biennial report on the threat to U.S. industry from industrial espionage.
Send news tips and comments to firstname.lastname@example.org
This state transportation department uses computer science students from a local university as programming interns, and everyone is happy with the arrangement -- until one intern learns how to bring down the mainframe.
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
- Changing the Way Government Works: Four Technology Trends that Drive Down Costs and Increase Productivity
- This paper discusses four technology-based approaches to improving processes and increasing
productivity while driving down department and agency costs.
- Path Selection Infographic
- Path Selection Infographic
- Hyperconvergence Infographic
- A wide range of observers agree that data centers are now entering an era of "hyperconvergence" that will raise network traffic levels faster...
- Preparing Your Infrastructure for the Hyperconvergence Era
- From cloud computing and virtualization to mobility and unified communications, an array of innovative technologies is transforming today's data centers.
- How WAN Optimization Helps Enterprises Reduce Costs
- If you wanted to break down innovation into a tidy equation, it might go something like this: Technology + Connectivity = Productivity. Productivity... All Government IT White Papers
- LIVE EVENT: 5/7, The End of Data Protection As We Know It. Introducing a Next Generation Data Protection Architecture. Traditional backup is going away, but where does this leave end-users?
- On-demand webinar: "Mobility Mayhem: Balancing BYOD with Enterprise Security" Check out this on-demand webinar to hear Sophos senior security expert John Shier deep dive into how BYOD impacts your enterprise security strategy...
- Mobile Security: Containerizing Enterprise Data In this on-demand webinar, Fixmo's Lee Cocking, VP of corporate strategy, explains why Apple-ization trends like mobility and "bring-your-own-device" (BYOD) are driving the...
- Endpoint Data Management: Protecting the Perimeter of the Internet of Things Not surprisingly, "Internet of Things" (IoT) and Big Data present new challenges AND opportunities for enterprise IT. Teams need to harness, secure and...
- How to Protect Enterprise Data Yet Enable Secure Access for End Users Learn how BYOD, Big Data and the use of rogue applications and devices is putting corporate data at risk, best practices from IT...
- All Government IT Webcasts