Cyber-attacks a standard part of doing business with China   5 May 2016

Article - BusinessDesk

Thursday 05 May 2016 04:00 PM

Cyber-attacks a standard part of doing business with China, security experts say

By Fiona Rotherham

May 5 (BusinessDesk) - China has been cited as one of the most active countries for cyber crime attacks at New Zealand's first Cyber Security Summit in Auckland.

Jim Lewis, senior vice president for the US-based Center for Strategic and International Studies, said the most active cyber attackers were based in Russia, Iran, and China, with the latter mainly focused on economic espionage.

Lewis cited the example of an Australian company in talks recently on a deal with Chinese interests who said there had been 200 efforts to break into its IT systems to get data that would have been useful during those negotiations.

“I talked to the head of a UK security firm who said it was just a normal part of doing business with China,” he said. “They want what would give them a competitive advantage in any deal they’re in.”

China has been a growing market for Kiwi exporters, especially dairy product exporters, since New Zealand signed a free trade agreement with Beijing in 2008,

Hacking is standard business practice in China, agreed Richard Bejtlich, chief security strategist at security firm FireEye. Companies doing business there have to decide if they’ll earn enough revenue to pay for better cyber security.

“It’s possible to hold them off. But I had a 40-plus team that were among the best in the world and we were just barely able to hold them off,” he said. “I dealt with some companies who had physical offices in China that knew they were under surveillance and sometimes they were even approached by the government with that surveillance in hand or Chinese companies were told not to do a deal because of what the government had heard.”

China signed landmark deals last year promising not to conduct cyber espionage to steal trade secrets from the US, Britain and Germany and that led to a similar agreement between the Group of 20 nations last November.

However, just weeks after the China/US deal was signed, the cybersecurity firm Crowd Strike caught dozens of alleged Chinese hackers trying to steal copyrighted data from American tech and pharmaceutical companies.

Bejtlich said industrial espionage by Japan used to be a problem and he’s optimistic China will eventually cut it out as well but that doesn’t mean other developing countries won’t adopt similar tactics.

“We could have a similar issue in Africa or Latin America with, say, Nigeria saying ‘that whole steal stuff from other people and put into our economy to jump start it looks a good idea’.”

Lewis said one of the important moves the Obama administration had taken on cyber security was improving attribution. One example was the US Justice Department in March charging seven Iranians allegedly linked to Iran’s Islamic Revolutionary Guard Corps with breaking into the computer network of a small New York dam and attacking more than 40 US companies.

The ability of the US government to find the source of cyber attacks has shifted from one in three to more than two in three because of private sector information sharing with government officials, he said. Microsoft, Google and Twitter all now have policies of sharing information on attacks on their customers if they detect them.

Microsoft vice-president of security Matt Thomlinson said its customer data showed a major upsurge in ransomware attacks since February.

Thomlinson said it often starts with spear phishing – an email that appears to be from someone you know – and has now moved from being targeted at consumers to industrial scale.

The latest Symantec Internet Security Threat Report estimated ransomware attacks in New Zealand averaged 108 per day.

The rise of bitcoin, a digital currency, is one reason for the upsurge in ransomware, said Bejtlich. Bitcoin is now well-established and provides hackers with enough anonymity to protect their identities while providing a ready market for stolen data.

His company had worked with corporate ransomware victims who had paid five to seven figure sums “as they don’t have an alternative”. However victims don’t appear to be hit repeatedly as they are with other cyber crime once they had paid out, he said.

Mandatory reporting by companies that have been hacked can help others learn what's needed to tighten security, Lewis said.

“People don’t like it because it can have a share price effect. That usually only lasts a quarter, though the effects on the brand can be longer-lasting,” he said. “Greater transparency creates market incentives for companies to do better on cyber security.”

New Zealand proposes replacing the current voluntary data breach reporting with a mandatory requirement, in draft legislation that should emerge by early next year.

(BusinessDesk)

ends

Add a comment

News

Hilary Timmins' Award-Winning UK Documentary Series To Inspire NZ Students

29 Jun 2020 Education
Dream Catchers, produced and directed by Hilary Timmins, celebrates the success stories of more than thirty inspirational New... more

New Zealand reaffirms support for Flight MH17 judicial process

7 Mar 2020 News By Rt HON WINSTON PETERS
Ahead of the start of the criminal trial in the Netherlands on 9 March, Foreign Minister Winston Peters has reaffirmed the need to... more

Business

NZ Government's Economic package to fight COVID-19

17 Mar 2020 Business News By RT HON JACINDA ARDERN
The Coalition Government has launched the most significant peace-time economic plan in modern New Zealand history to cushion the... more

NZ Government announces aviation relief package

19 Mar 2020 Business News By Hon Phil Twyford
Transport Minister Phil Twyford today outlined the first tranche of the $600 million aviation sector relief package announced earlier... more

Living

Diversity was Key at New Zealand Trade Tasting in London

6 Jun 2022 Food & Wine
New Zealand Winegrowers Annual Trade Tasting was recently held in London, on Wednesday 4 May, in Lindley Hall. It was the first... more

Kiwi author stuns Behind the Butterfly Gate

12 Jan 2022 Arts By Charlotte Everett
Hidden behind the Butterfly Gate is where the secret has been kept for 76 years...  New Zealand writer Merryn Corcoran’s... more

Property

Fairer rules for tenants and landlords

17 Nov 2019 Property By Minister Kris Faafoi
17 NOVEMBER 2019 The Government has delivered on its promise to the over one million New Zealanders who now rent to make it fairer... more

New Zealand Government will not implement a Capital Gains Tax

17 Apr 2019 Property By RT HON JACINDA ARDERN
The Coalition Government will not proceed with the Tax Working Group’s recommendation for a capital gains tax, Jacinda Ardern... more

Migration

Boosting border security with electronic travel authority – now over 500,000 issued

19 Nov 2019 Migration By Hon Iain Lees-Galloway
19 NOVEMBER 2019 We’ve improved border security with the NZeTA, New Zealand Electronic Travel Authority, which helps us to... more

Christchurch reinstated as refugee settlement location

18 Aug 2018 Migration
18 AUGUST 2018 HON IAIN LEES-GALLOWAY The announcement that Christchurch can once again be a settlement location for refugees... more

Travel

Gallipoli Anzac Day services cancelled

19 Mar 2020 Travel & Tourism By RT HON JACINDA ARDERN
The New Zealand and Australian Governments have announced this year’s joint Anzac Day services at Gallipoli will be cancelled... more

New Zealanders advised not to travel overseas

19 Mar 2020 Travel & Tourism
New Zealanders advised not to travel overseas more

Sport

The Skipper's Diary: Sir Richard Hadlee honouring his father and NZ's Forty-Niners

27 Oct 2019 Cricket By Charlotte Everett
NZNewsUK London Editor Charlotte Everett spoke to Sir Richard Hadlee about why he’s chosen to publish his father’s... more

PREVIEW: All Blacks v England semi-final

26 Oct 2019 Rugby
The two most convincing quarterfinals winners are set to square off in a semifinal showdown for the ages when the All Blacks meet old... more

Columns

Gordon Campbell on the Gareth Morgan crusade

11 Nov 2016 Opinion
Gordon Campbell on the Gareth Morgan crusade First published on Werewolf The ghastly likes of Marine Le Pen in France and Geert ... more

Gordon Campbell on the US election outcome

10 Nov 2016 Opinion
Column - Gordon Campbell   Gordon Campbell on the US election outcome Well um.. on the bright side, there (probably)... more

Kiwi Success

Congratulations to Loder Cup winner

26 Sep 2018 People By Hon Eugenie Sage
25 SEPTEMBER 2018 The Loder Cup, one of New Zealand’s oldest conservation awards, has been awarded to Robert McGowan for 2018... more

Appointments to New Zealand National Commission for UNESCO

16 Aug 2018 Appointments
16 AUGUST 2018Appointments to New Zealand National Commission for UNESCO HON JENNY SALESA Associate Education Minister Jenny Salesa is... more

Recruitment

Historic pay equity settlement for education support workers

14 Aug 2018 Recruitment By RT HON JACINDA ARDERN
14 AUGUST 2018Historic pay equity settlement for education support workers RT HON JACINDA ARDERN HON CHRIS HIPKINS Prime Minister The... more

Historic pay equity settlement for education support workers

22 Aug 2018 Recruitment By RT HON JACINDA ARDERN
14 AUGUST 2018Historic pay equity settlement for education support workers RT HON JACINDA ARDERN HON CHRIS HIPKINS Prime Minister The... more