China-Linked Hackers Exploit Zero-Day Adobe Vulnerability in High-Profile Cyber-Attack

Sophisticated hackers, allegedly linked to China, exploited a zero-day vulnerability in Adobe Reader to carry out a high-profile cyber-attack on Google and at least 30 other companies, escalating tensions between the US tech giant and the Chinese government. The attack, dubbed Project Aurora, was launched via targeted emails containing corrupted PDF files that released a Trojan horse into the companies' systems. This malware created a backdoor, allowing the hackers to exfiltrate sensitive information, including proprietary source code.

Key Takeaways:

  • The attack was carried out using a zero-day vulnerability in Adobe Reader, which was exploited to infect systems.
  • The hackers used targeted emails containing corrupted PDF files to release a Trojan horse into the companies' systems.
  • The malware created a backdoor, allowing the hackers to exfiltrate sensitive information, including proprietary source code.
  • At least 30 companies, including Google, were targeted in the attack, with some potentially compromised for over three years.
  • The Chinese government has expressed concern about backdoors in Microsoft software, while US officials suspect China of being behind the attack.
  • iDefense and McAfee have provided conflicting information on the vulnerability used in the attack.

Statistics:

  • 30 companies were targeted in the Project Aurora attack.
  • The hackers may have compromised companies for over three years.
  • 150,000 trained cyber-attackers may be involved in China's hacking efforts.
  • The Chinese government has expressed concern about backdoors in Microsoft software on at least one occasion.

Sources:

  • iDefense: "Chinese Hackers Exploit Zero-Day Adobe Vulnerability in High-Profile Cyber-Attack"
  • McAfee: "McAfee Discovers Vulnerability in Internet Explorer Used in Aurora Attack"
  • Adobe: "Adobe Reports Sophisticated, Coordinated Attack Against Corporate Network Systems"
  • Microsoft: "Microsoft Releases Update for Internet Explorer Exploited in 'Aurora' Attack"