Contributor

Chinese hacktivists still at work. SlideShare.com under attack

Opinion
Apr 24, 20082 mins

There is an odd private-public partnership at work in China. I trace it back to May 1, 2001, when Chinese hackers attacked US web sites in protest over the US spy-plane incident,  although you can argue that Chinese hacking pre-dates that by years. 

Jim Melnick, Director of Global Threat Intelligence at iSightPartners gave me some of his insights into how it works yesterday at the ISSA security conference in Boise.  He helped me to understand that there is a large group of nationalist hackers that take it upon themselves to attack targets based on their criticism of China or relationship to organizations, such as CNN , that they feel are in some way anti-Chinese.  These groups operate with the tacit approval of the Chinese government until they get out of control at which point they are reigned in. This fits with the extensive coverage in the Wall Street Journal today. (I won’t link to it because you have to spoof a referral from Google news.) 

Now a Web 2.0 site, SlideShare.com is under attack.  According to TechCrunch they have been targeted by Chinese hacktivists who are trying to social engineer access credentials and as that is not working are launching DDoS attacks, the third one underway today.   

I believe it is time for the international community to step in. This could happen on several levels. Diplomatically, countries with Chinese connections should exert pressure on the Chinese government to crack down on these criminal activities.  Application service providers like SlideShare should block access all together from Chinese net addresses. Major ISP’s should invest in filtering technology and start to monitor and block abusive traffic from China.

 China has become the country with the largest population of net users in the world. It’s citizens should demonstrate that they are good ‘Netizens, capable of participating in the free forum of the Internet,  or they will find themselves limited in their use of this great world resource. 

Richard Stiennon is chief research analyst at IT-Harvest, the firm he founded in 2005 to cover the 1,600 vendors that make up the IT security industry. He is the author of Surviving Cyberwar (Government Institutes, 2010) and There Will Be Cyberwar: How the Move to Network-Centric Warfighting Set the Stage for Cyberwar. He is a member of the advisory board at the Information Governance Initiative and principal of TrueBit Cyber Partners. He also serves on the R2-TAC, the technical advisory committee for the Responsible Recycling standard for e-waste.

Stiennon was chief marketing officer for Fortinet Inc. and vice president of threat research at Webroot Software. Prior to that, he was vice president of research at Gartner Inc. He has a B.S. in aerospace engineering and an M.A. in war in the modern world from King’s College, London.

The opinions expressed in this blog are those of Richard Stiennon and do not necessarily represent those of IDG Communications Inc. or its parent, subsidiary or affiliated companies.

More from this author