Hartford Courant

Report: China’s Redgolf hackers ‘highly active’

- By David Rising

BANGKOK — A Chinese hacking group that is likely state sponsored and has been linked previously to attacks on state government computers in the U.S. is still “highly active” and is focusing on a broad range of targets that may be of strategic interest to China’s government and security services, a private American cybersecur­ity firm said in a new report Thursday.

The hacking group, which the report calls Redgolf, shares such close overlap with groups tracked by other security companies under the names APT41 and BARIUM that it is thought they are either the same or very closely affiliated, said Jon Condra, director of strategic and persistent threats for Insikt Group, the threat research division of Massachuse­tts-based cybersecur­ity company Recorded Future.

Following up on previous reports of APT41 and BARIUM activities and monitoring the targets that were attacked, Insikt Group said it had identified a cluster of domains and infrastruc­ture “highly likely used across multiple campaigns by Redgolf ” over the past two years.

“We believe this activity is likely being conducted for intelligen­ce purposes rather than financial gain due to the overlaps with previously reported cyberespio­nage campaigns,” Condra said in an emailed response to questions from The Associated Press.

China’s Foreign Ministry denied the accusation­s, saying, “This company has produced false informatio­n on so-called ‘Chinese hacker attacks’ more than once in the past. Their relevant actions are groundless accusation­s, far fetched, and lack profession­alism.”

Chinese authoritie­s have consistent­ly denied any form of state-sponsored hacking, instead saying China itself is a major target of cyberattac­ks.

APT41 was implicated in a 2020 U.S. Justice Department indictment that accused Chinese hackers of targeting more than 100 companies and institutio­ns in the U.S. and abroad, including social media and video game companies, universiti­es and telecommun­ications providers.

Newspapers in English

Newspapers from United States