Over the past two weeks, two well-known Chinese state hacking groups have been baiting employees at large telecommunications companies and government agencies in Asia into downloading fake documents that purport to contain critical coronavirus information, three cybersecurity firms said.
Two California companies, CrowdStrike and FireEye, and the Israeli company Check Point confirmed this week that the Chinese groups were sending out coronavirus-themed documents loaded with malware. For now, the breaches have focused on targets in Vietnam, Mongolia and the Philippines.
FireEye reported that Russian hackers have been using legitimate coronavirus update documents to target entities in Ukraine, and North Korea hackers have used coronavirus information as bait to target a South Korean nongovernmental organization.
Security researchers worry the campaigns are an early warning for cyberattacks that could hit the United States. “We’re seeing cybercriminals and Chinese groups jump on coronavirus,” said Adam Meyers, the head of threat intelligence at CrowdStrike. “People need to be aware of what is coming.”
Article source: https://www.nytimes.com/2020/03/12/business/stock-market-today.html