iTnews
  • Home
  • News
  • Technology
  • Security

Chinese hackers steal files from SCADA maker

By Juha Saarinen
Sep 27 2012 5:18AM
Follow google news

Military connection suspected.

Chinese attackers haved allegedly hacked and stolen data from the systems of global energy equipment supplier Telvent.

Chinese hackers steal files from SCADA maker

The company, part of French conglomerate Schneider Electric, alerted its customers to a breach of its internal firewall and security systems this month, which it said had led to the project files for one if ts most important products being stolen by the hackers.

In a letter sent to Telvent customers, and obtained by noted security commentator Brian Krebs, the company said it was still investigating the issue.

It had "established new procedures to be followed" until the company could remove any vulnerabilities or remaining malware from the asttack.

Telvent, which has around 6000 employes in 19 countries around the world, makes supervisory control and data acquisition (SCADA) systems used to secure and manage critical infrastructure for energy companies.

Project files related to Telvent's key product, the OASys SCADA, were stolen in the intrusion.

The system is used to manage smart grid implementations as well as for oil and gas pipeline telemetry and monitoring systems.

A second letter from Telvent to customers affected by the breach listed some of the malware files and domain names and IP addresses used for control and command.

According to Dell Secureworks malware researcher Joe Stewart, the digital fingerprints left behind by the attackers point to a Chinese hacking team known as the "Comment Group". 

The "Comment Group" has been dubbed "Byzantine Candour" by US intelligency for its use of HTML comments. It is thought to be connected to China's People's Liberation Army.

The group rose to prominence in 2008 after hacking the presidential campaigns of Barack Obama and John McCain, in the large-scale Operation Shady Rat attack.

Several western organisations in Europe and North America were infiltrated in a attack by the Comment Group in July this year, Bloomberg reported.

Organisations in that attack included defence contractor Halliburton, law firms, government departments, and companies involved in the energy sector.

Emails from European Union president, Herman van Rompuy, were also copied, and 11 officials had their internal communications intercepted as the hackers accessed the EU computers four times.

Last year, the Comment Group also managed to break into the Diablo Canyon nuclear powerplant in California. It stole a mailing list with the addresses of subscribers to a nuclear management newsletter and proceeded to send them emails laden with spyware.

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:
hackinghacksscadasecurity

Related Articles

  • Amex ordered to implement access controls after insider privacy breaches Amex ordered to implement access controls after insider privacy breaches
  • Security leaders say lift export controls for Anthropic's Mythos-class models Security leaders say lift export controls for Anthropic's Mythos-class models
  • US saw risk of Anthropic models being diverted to foreign military intelligence US saw risk of Anthropic models being diverted to foreign military intelligence
  • Chinese-linked hackers targeted US, Canadian research facilities Chinese-linked hackers targeted US, Canadian research facilities
Join our WhatsApp Channel

Partner Content

From test case to control tower: How DXC and ServiceNow are governing enterprise AI at scale
Promoted Content From test case to control tower: How DXC and ServiceNow are governing enterprise AI at scale
You meet the security standard. Shame no one can see it
Promoted Content You meet the security standard. Shame no one can see it
Take control of your connectivity with Telstra’s Adaptive Networks Centre
Partner Content Take control of your connectivity with Telstra’s Adaptive Networks Centre
The hidden economics of AI: Why token usage matters more than you think
Partner Content The hidden economics of AI: Why token usage matters more than you think

Sponsored Whitepapers

2026 Identity Security Landscape
2026 Identity Security Landscape
Are Australian organisations as cyber-ready as they think?
Are Australian organisations as cyber-ready as they think?
Are New Zealand organisations as cyber-ready as they think?
Are New Zealand organisations as cyber-ready as they think?
From visibility to execution:  Fixing the SaaS management gap
From visibility to execution: Fixing the SaaS management gap
When cyber risk has no clear owner: A practical guide for senior Australian business leaders
When cyber risk has no clear owner: A practical guide for senior Australian business leaders

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • Forrester's AI Forum Sydney Forrester's AI Forum Sydney
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Anthropic pulls Mythos-class models globally

Anthropic pulls Mythos-class models globally

Anthropic releases Mythos-class model for public use

Anthropic releases Mythos-class model for public use

Apple bumps up security in fresh operating system releases

Apple bumps up security in fresh operating system releases

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.