News

Energy Department warns against Chinese hackers

A group of Chinese cyber actors, known publicly as APT 10, is conducting a campaign of cyber-enabled theft targeting global managed service providers, cloud service providers, and their clients, the U.S. Government reported.

The Department of Energy (DOE) recently said APT 10, which is operating on behalf of the Chinese Ministry of State Security, has gained extensive access to multiple U.S. and global managed service and cloud providers over the past four years. They have infiltrated global companies located in at least 12 countries.

The U.S. Government is taking steps to negate their impacts and hold the Chinese government accountable for these actions.

“As the Secretary for the Sector Specific Agency for cybersecurity in the energy sector, I have no higher priority than protecting our nation’s energy infrastructure against the threat of cyberattacks,” Secretary of Energy Rick Perry said. “Malicious actors are conducting sophisticated attacks to threaten our Nation’s critical infrastructure. Today’s announcement affirms our government’s vigilance and resolve to respond swiftly and forcefully against those who would use technology to threaten our way of life.”

APT 10 conducts the theft by using a mix of sophisticated custom malware and off-the-shelf applications. Doing so, they have stolen intellectual property and other confidential business information. They are targeting information from companies responsible for critical infrastructure, including entities in the information technology, energy, healthcare and public health, communications, and critical manufacturing sectors.

“In our capacity to protect and coordinate with the energy sector, the Department of Energy is dedicated to working with our government and industry partners to strengthen the preparedness and resilience of both the electricity and oil and natural gas sectors,” Karen Evans, assistant secretary for Cybersecurity, Energy Security and Emergency Response (CESER), said. “As the Sector Specific Agency, DOE’s CESER is committed to addressing these aggressive cybersecurity threats and keeping the nation’s critical energy infrastructure safe and secure.”

Dave Kovaleski

Recent Posts

DoD challenge brings opportunities for nine new ideas in talent management

A Department of Defense (DoD) 2040 Task Force (D2T) challenge on talent management innovation drew…

2 days ago

TSA publishes final rule on Flight Training Security Program improvements

For the first time since its creation in 2004, the Transportation Security Administration’s (TSA) Flight…

2 days ago

FEMA launches new hurricane season campaign with multicultural messaging on flood risks

The 2024 Hurricane Season Campaign began for the Federal Emergency Management Agency (FEMA) this week,…

3 days ago

SERVICE Act of 2024 seeks DOJ pilot program, grants for local veteran response teams

As a way to support veterans, U.S. Reps. Maria Elvira Salazar (R-FL), Dale Strong (R-AL),…

3 days ago

DHS publishes guidelines for securing critical infrastructure and weapons against AI threats

Mere days after the Department of Homeland Security formed a new Artificial Intelligence (AI) Safety…

4 days ago

U.S. Army and European Command awards KBR $771M contract

KBR will continue to provide life support, equipment readiness, training and supply chain solutions for…

4 days ago

This website uses cookies.