cover of episode ICYMI: Unpacking China And Russia's New Cyber Warfare Strategies

ICYMI: Unpacking China And Russia's New Cyber Warfare Strategies

2024/12/10
logo of podcast 1A

1A

People
D
Dina Temple-Raston
节目主持人
Topics
Jen White: 本节目讨论了中国和俄罗斯升级的网络行动,以及它们对美国国家安全构成的威胁。中国不再仅仅关注窃取信息,而是更战略性地利用网络攻击来实现其地缘政治目标,例如渗透美国关键基础设施,为未来潜在冲突做准备。俄罗斯则通过网络干预选举、发动勒索软件攻击等手段,试图影响美国政治和社会稳定。 Dina Temple-Raston: 中国的网络攻击活动已经从以往的窃取信息转向渗透关键基础设施,预先部署恶意代码,为未来潜在冲突做准备。例如,中国黑客入侵了美国机场网络、水处理系统和电网等关键基础设施。此外,中国还入侵了至少8家美国电信公司,试图窃取政治人物的信息。美国情报机构认为,中国利用其庞大的人口基数,进行大规模网络攻击,即使单个黑客技术水平不高,但数量众多,也能有效突破系统安全。 俄罗斯方面,通过网络干预罗马尼亚选举,并对罗马尼亚能源公司发动网络攻击,试图影响选举结果和国家稳定。俄罗斯还对城市、医院和保险公司发动了大量的勒索软件攻击。 Dina Temple-Raston: 国际社会正在加强合作,打击网络犯罪。国际执法行动成功打击了俄罗斯的网络犯罪团伙,例如LockBit,并开始拆解其攻击链条,例如关闭暗网市场、非法加密货币交易所以及勒索软件团伙的服务器等。这些行动有效地削弱了网络犯罪团伙的能力,并为未来打击网络犯罪提供了经验。

Deep Dive

Key Insights

Why has China shifted its cyber warfare strategy?

China has moved from primarily espionage and intellectual property theft to hacking for geopolitical goals, such as pre-positioning malicious code in critical infrastructure like airports, water treatment systems, and the electrical grid, anticipating future conflicts.

What specific examples of Chinese cyber attacks have been identified?

Chinese hackers, identified as part of groups like Volt Typhoon and Salt Typhoon, have been found in U.S. airport networks, water treatment systems, electrical grids, and telecom providers like Verizon and AT&T.

How does the U.S. assess China's cyber capabilities?

The U.S. acknowledges China's scale and ability to flood the zone with numerous hackers, leveraging its large population to break into systems, even if not all are highly skilled.

What recent developments have highlighted Russia's cyber warfare tactics?

Russia has been linked to election meddling in Romania, where a pro-Russia candidate received suspiciously high votes, and to cyber attacks on Romania's Electric Group, suggesting a broader cyber campaign.

How has international law enforcement responded to ransomware attacks?

Law enforcement agencies, including those in the U.S., U.K., Germany, and the Netherlands, have successfully taken down ransomware groups like LockBit, dark web markets, and illicit cryptocurrency exchanges, disrupting the ransomware supply chain.

What is the future outlook for combating cyber threats?

There is optimism as law enforcement continues to dismantle ransomware groups by targeting various parts of the kill chain, making it harder for cybercriminals to operate.

Shownotes Transcript

Over the past year, the Chinese government has stepped up its cyber operations, focusing not just on espionage or stealing intellectual property, but on hacking to bolster geopolitical goals.U.S. authorities and institutions are used to digital aggression from the likes of Russia. But are now freshly reconsidering the objectives and capabilities of one of the country's other eastern rivals.We discuss those goals and how China using cyberspace to achieve them. We also discuss the latest from Russia. Want to support 1A? Give to your local public radio station) and subscribe to this podcast. Have questions? Connect) with us. Listen to 1A sponsor-free by signing up for 1A+ at plus.npr.org/the1a).Learn more about sponsor message choices: podcastchoices.com/adchoices)NPR Privacy Policy)