Cyber spy campaign targets chemical industry: Symantec

Oct 31, 2011

US Internet security firm Symantec on Monday exposed a cyber spying campaign targeting trade secrets at top chemical firms and linked the industrial espionage to a man in China.

At least 48 companies, including some that make advanced materials for , were targeted in a campaign Symantec dubbed "Nitro" given the type of information at risk.

"Attacks on the chemical industry are merely their latest attack wave," Symantec security response team members Eric Chien and Gavin O'Gorman said in a report released on Monday.

The attacks targeted NGOs supporting human rights from late April to early May before switching to the motor industry, according to the report.

Major chemical firms, mainly in the United States, Britain, and Bangladesh, came under fire by cyber from late July to mid September, Symantec said.

Nitro was aimed at stealing intellectual property for competitive advantage, according to Chien and O'Gorman.

Attackers researched firms, sending selected workers booby-trapped emails that, once opened, secretly infected computers with malicious "Poison Ivy" software designed to steal information.

While various ruses were used to trick workers into opening email attachments to unleash in machines, a typical pretext was to fake a meeting invitation from an established business partner.

Another tactic used by cyber spies was to send employees email purporting to be a security software update that needed to be installed in computers, according to Symantec.

Poison Ivy code was written by a Chinese speaker and Nitro attacks were traced to a server located in the United States but owned by a "20-something male" in the Hebei region of China, the report said.

Symantec referred to the man internally as "Covert Grove" based on a literal translation of his name from Chinese to English.

China has repeatedly denied state involvement in cyber espionage against Western governments and companies, including well-publicized attacks on Internet giant Google that sparked a row between Washington and Beijing.

Explore further: Twitter rules out Turkey office amid tax row

add to favorites email to friend print save as pdf

Related Stories

China hit by 500,000 cyberattacks in 2010

Aug 09, 2011

China said Tuesday it was hit by nearly 500,000 cyberattacks last year, about half of which originated from foreign countries including the United States and India.

Recommended for you

Twitter rules out Turkey office amid tax row

4 hours ago

Social networking company Twitter on Wednesday rejected demands from the Turkish government to open an office there, following accusations of tax evasion and a two-week ban on the service.

How does false information spread online?

7 hours ago

Last summer the World Economic Forum (WEF) invited its 1,500 council members to identify top trends facing the world, including what should be done about them. The WEF consists of 80 councils covering a wide range of issues including social media. Members come ...

User comments : 1

Adjust slider to filter visible comments by rank

Display comments: newest first

Nerdyguy
not rated yet Oct 31, 2011
"...linked the industrial espionage to a man in China."

One more reason that we need to get our financial house in order in the U.S. We wouldn't sound quite so ridiculous when making demands on the Chinese that they stop their massive espionage campaign against the U.S.

More news stories

Quantenna promises 10-gigabit Wi-Fi by next year

(Phys.org) —Quantenna Communications has announced that it has plans for releasing a chipset that will be capable of delivering 10Gbps WiFi to/from routers, bridges and computers by sometime next year. ...

Floating nuclear plants could ride out tsunamis

When an earthquake and tsunami struck the Fukushima Daiichi nuclear plant complex in 2011, neither the quake nor the inundation caused the ensuing contamination. Rather, it was the aftereffects—specifically, ...

Unlocking secrets of new solar material

(Phys.org) —A new solar material that has the same crystal structure as a mineral first found in the Ural Mountains in 1839 is shooting up the efficiency charts faster than almost anything researchers have ...

Patent talk: Google sharpens contact lens vision

(Phys.org) —A report from Patent Bolt brings us one step closer to what Google may have in mind in developing smart contact lenses. According to the discussion Google is interested in the concept of contact ...

How kids' brain structures grow as memory develops

Our ability to store memories improves during childhood, associated with structural changes in the hippocampus and its connections with prefrontal and parietal cortices. New research from UC Davis is exploring ...