- Is the Cisco MARS mission going to abort?
- First iPhone worm spreads Rick Astley wallpaper
- 10 stunning 3D buildings made with Google SketchUp
- Open source software ready for big business
- Four reasons to buy (and one reason to avoid) the Droid
U.S. House of Representatives members who worry that China may have been responsible for attacks on their computers have provided little evidence to back up their claims, according to computer security experts.
The two Republican congressmen, Representatives Frank Wolf and Christopher Smith, disclosed Wednesday that computers in their offices were hacked in late 2006 and early 2007. Both men have been critical of China's human rights record and said that the attacks raised concerns that they were being targeted for their support of Chinese dissidents.
Wolf said that the U.S. Federal Bureau of Investigation had told him that the attackers came from within China. Smith said that the IT professionals who repaired his hacked computers told his staff that the attacks came from Chinese IP addresses and that the hackers had accessed files related to China.
"My suspicion is that I was targeted by Chinese sources because of my long history of speaking out about China's abysmal human rights record," said Wolf in a statement. He is the senior Republican on the State and Foreign Operations subcommittee.
The Chinese Foreign Ministry has denied any connection to the attacks, according to reports. An FBI spokeswoman declined to comment on the matter late Thursday.
However, computer security experts said that the evidence that the two congressmen provided to back up their claims simply does not prove that the Chinese government, or even Chinese nationals, were involved.
"It's so very hard to conclude that something came from someplace if all you're going from is an IP address," said Marcus Sachs, director of the SANS Internet Storm Center, a volunteer-run effort that tracks emerging computer threats. "Those of us who have done this for a living, we know that you can't prove that it was a Chinese person on the keyboard if you have a Chinese IP address," he said. "Without making some of the evidence public … you leave everybody else guessing."
Computer attacks are often launched from Chinese IP addresses because a large number of computer systems in China have been hacked and are being used to redirect online attacks. Also, the country is notorious for providing so-called "bulletproof" hosting services that keep servers running even when international law enforcement tries to take them down.
"For US$1,000 a month or less you can get a bulletproof server in China," said Gary Warner, director of research in computer forensics with the University of Alabama at Birmingham.
China has been blamed for many intrusions on federal computer systems, including breaches at the U.S. Department of Commerce and the Pentagon, but according to Warner, virtually any computer plugged into the Internet will find itself scanned by probes from China IP addresses. "Anybody who looks at their firewall logs can prove that they're being attacked from China. Does this prove that they're really being attacked by the Chinese? I don't know, "he said.
Nearly 12 percent of all Web servers using China's .cn domain space are considered risky because they may be associated with spam, adware or computer attacks, according to security firm McAfee.
Comments (3)
politician are professional liaersBy Anonymous on June 13, 2008, 10:33 amnot a surprise on this one, just blame china for anything, everthing, lots of people will buy the story anyway.
Reply | Read entire comment
Congressman...By Anonymous on June 13, 2008, 1:39 pmCongressman are usually blood sucking lawyers who have not received any decent science and technology trainings... I'am not surprised how ignorant these congressmen...
Reply | Read entire comment
PoliticiansBy Anonymous on June 13, 2008, 7:02 pmPoor politicians may get their computers hacked by downloading porns
Reply | Read entire comment
View all comments