Chinese Hackers Target Tibetan Websites with Malware
Chinese Hackers Target Tibetan Websites with Malware

Chinese Hackers Target Tibetan Websites with Malware

News summary

A Chinese state-sponsored hacking group, identified as TAG-112, has compromised two websites associated with the Tibetan community—Tibet Post and Gyudmed Tantric University—in a cyberattack aimed at installing malware on users' computers. The attack, which occurred in late May, involves misleading visitors into downloading a malicious file disguised as a security certificate, which then installs Cobalt Strike Beacon malware capable of keylogging and other malicious activities. This incident reflects a broader trend of cyber espionage targeting the Tibetan community, a historical focus of Chinese state-sponsored hackers. While Chinese authorities deny involvement in such hacking incidents, the cybersecurity firm Insikt Group emphasizes that the attack aligns with ongoing information collection efforts against Tibetans. The compromised websites remain vulnerable, and the attack highlights the persistent risks faced by ethnic minorities in China. TAG-112 has been linked to a more sophisticated group, Evasive Panda, suggesting a coordinated effort to gather intelligence for Beijing.

Story Coverage
Bias Distribution
67% Left
Information Sources
166bc319-c612-4063-955b-1bdc4fec97ffbfb2a97b-336e-48d9-b69a-147df7862dc20319a078-c5a7-4188-95f2-60cb4be32cc6bd7f581c-6294-4fb3-adfe-81db52a08452
+2
Left 67%
C
R
Coverage Details
Total News Sources
11
Left
4
Center
1
Right
1
Unrated
5
Last Updated
7 days ago
Bias Distribution
67% Left
Related News
Daily Index

Negative

21Serious

Neutral

Optimistic

Positive

Ask VT AI
Story Coverage
Subscribe

Stay in the know

Get the latest news, exclusive insights, and curated content delivered straight to your inbox.

Related News
Recommended News