麻豆亚洲精品在线播放,午夜在线视频91精品,麻豆视频一区二区,人人干在线观看,99久久精品国产免费,久久视频在线直播

Hi, !
訂閱
報(bào)紙
紙質(zhì)報(bào)紙 電子報(bào)紙
手機(jī)訂閱 微商城
英語
學(xué)習(xí)
雙語學(xué)習(xí) 熱點(diǎn)翻譯 英語視頻
實(shí)用英語 報(bào)紙聽力 TEENS對(duì)話
教育
信息
最新動(dòng)態(tài) 活動(dòng)預(yù)告
備課資源 語言文化
演講
比賽
精彩演講
活動(dòng)動(dòng)態(tài)
用報(bào)
專區(qū)
高中   初中
小學(xué)   畫刊
翻譯頻道 > 熱點(diǎn)翻譯 > 正文
西北工業(yè)大學(xué)遭網(wǎng)絡(luò)攻擊,源頭是美國國家安全局
來源:融媒體采編平臺(tái)    作者:21ST   日期: 2022-09-06

據(jù)央視新聞報(bào)道,9月5日,國家計(jì)算機(jī)病毒應(yīng)急處理中心和360公司分別發(fā)布了關(guān)于西北工業(yè)大學(xué)遭受境外網(wǎng)絡(luò)攻擊的調(diào)查報(bào)告,調(diào)查發(fā)現(xiàn),美國國家安全局(National Security Agency, NSA)下屬的“特定入侵行動(dòng)辦公室(Office of Tailored Access Operation, TAO)”多年來對(duì)我國國內(nèi)的網(wǎng)絡(luò)目標(biāo)實(shí)施了上萬次的惡意網(wǎng)絡(luò)攻擊,控制了相關(guān)網(wǎng)絡(luò)設(shè)備,疑似竊取了高價(jià)值數(shù)據(jù)。

The National Security Agency of the United States is responsible for the cyberattack on the e-mail system of Northwestern Polytechnical University in Xi'an, Shaanxi province, China's National Computer Virus Emergency Response Center reported on Monday, following the conclusion of the initial investigation.

視頻來源:央視新聞

此次遭受攻擊的西北工業(yè)大學(xué)位于陜西西安,隸屬于工業(yè)和信息化部,是一所多科性、研究型、開放式大學(xué)。西北工業(yè)大學(xué)也是目前我國從事航空、航天、航海工程教育和科學(xué)研究領(lǐng)域的重點(diǎn)大學(xué)。

相關(guān)消息引發(fā)網(wǎng)友廣泛關(guān)注,除了網(wǎng)絡(luò)攻擊本身,大家也注意到實(shí)施網(wǎng)絡(luò)攻擊的美國國家安全局相關(guān)機(jī)構(gòu)。

 
 

補(bǔ)充5日外交部發(fā)言人回應(yīng):

西工大信息系統(tǒng)遭網(wǎng)絡(luò)攻擊

今年4月,西安市公安機(jī)關(guān)接到一起網(wǎng)絡(luò)攻擊的報(bào)警,西北工業(yè)大學(xué)的信息系統(tǒng)發(fā)現(xiàn)遭受網(wǎng)絡(luò)攻擊的痕跡。6月22日,西北工業(yè)大學(xué)發(fā)布《公開聲明》稱,有來自境外的黑客組織和不法分子向?qū)W校師生發(fā)送包含木馬程序的釣魚郵件,企圖竊取相關(guān)師生郵件數(shù)據(jù)和公民個(gè)人信息。

西北工業(yè)大學(xué)信息化建設(shè)與管理處副處長(zhǎng)兼信息中心主任宋強(qiáng)曾在接受央視新聞采訪時(shí)表示,該校系統(tǒng)發(fā)現(xiàn)木馬程序,企圖非法獲取權(quán)限,給學(xué)校的正常工作和生活秩序造成了重大的風(fēng)險(xiǎn)隱患。

On June 22, the university announced that it had found phishing emails in the guise of research reviews, invitations to academic events and opportunities to study abroad that contained Trojan horse programs. which had been sent to teachers and students at the university in an attempt to steal their data and personal information.

陜西省西安市公安局碑林分局隨即發(fā)布《警情通報(bào)》,證實(shí)在西北工業(yè)大學(xué)的信息網(wǎng)絡(luò)中發(fā)現(xiàn)了多款源于境外的木馬樣本,西安警方已對(duì)此正式立案調(diào)查。

","time":1662367832197,"comment":"https://global.chinadaily.com.cn/a/202206/23/WS62b3efc8a310fd2b29e68198.html","avatar":"","editting":false,"resume":[],"data-comment-id":"comment_id_1662367797257"}">An initial investigation found that the cyberattack was carried out by overseas hackers and has posed a grave threat to the university's information system, putting the personal data of students and teachers at risk. Phishing emails and their Trojan horse programs used in the attack have been obtained as key evidence, local police said.

國家計(jì)算機(jī)病毒應(yīng)急處理中心和360公司聯(lián)合組成技術(shù)團(tuán)隊(duì),全程參與了此案的技術(shù)分析工作。技術(shù)團(tuán)隊(duì)先后從西北工業(yè)大學(xué)的多個(gè)信息系統(tǒng)和上網(wǎng)終端中提取到了多款木馬樣本,綜合使用國內(nèi)現(xiàn)有數(shù)據(jù)資源和分析手段,并得到了歐洲、南亞部分國家合作伙伴的通力支持,全面還原了相關(guān)攻擊事件的總體概貌、技術(shù)特征、攻擊武器、攻擊路徑和攻擊源頭,初步判明相關(guān)攻擊活動(dòng)源自美國國家安全局“特定入侵行動(dòng)辦公室”。

By extracting samples of Trojan horse programs from the university's internet terminals with the support of European and South Asian partners, the technical team was able to initially identify that the cyberattack had been conducted by TAO (Code S32) under the Data Reconnaissance Bureau (Code S3) of the Information Department (Code S) of the NSA, it added.

 

圖源:央視新聞

本次調(diào)查還發(fā)現(xiàn),在近年里,美國國家安全局下屬特定入侵行動(dòng)辦公室對(duì)中國國內(nèi)的網(wǎng)絡(luò)目標(biāo)實(shí)施了上萬次的惡意網(wǎng)絡(luò)攻擊,控制了數(shù)以萬計(jì)的網(wǎng)絡(luò)設(shè)備,包括:網(wǎng)絡(luò)服務(wù)器、上網(wǎng)終端、網(wǎng)絡(luò)交換機(jī)、電話交換機(jī)、路由器、防火墻等,竊取了超過140GB的高價(jià)值數(shù)據(jù)。TAO在對(duì)西北工業(yè)大學(xué)的網(wǎng)絡(luò)攻擊行動(dòng)中,先后使用了41種NSA的專用網(wǎng)絡(luò)攻擊武器裝備。

Furthermore, the investigation has shown that the case is just one of tens of thousands of cyberattacks launched by the NSA's Office of Tailored Access Operation — a cyberwarfare intelligence-gathering unit — on targets in China in recent years. The malicious attacks have resulted in the leak of more than 140GB of high value data, the center said. During the attack targeting the university's computer network, more than 40 different cyberattack weapons were used to steal core technology data, including key network equipment configurations, network management data, and core operational data. 

技術(shù)團(tuán)隊(duì)將此次攻擊活動(dòng)中所使用的武器類別分為四大類,具體包括:

1、漏洞攻擊突破類武器;

2、持久化控制類武器;

3、嗅探竊密類武器;

4、隱蔽消痕類武器。

特定入侵行動(dòng)辦公室(TAO)在針對(duì)西北工業(yè)大學(xué)的網(wǎng)絡(luò)攻擊行動(dòng)中先后使用了54臺(tái)跳板機(jī)和代理服務(wù)器,主要分布在日本、韓國、瑞典、波蘭、烏克蘭等17個(gè)國家,其中70%位于中國周邊國家,如日本、韓國等。其中,用以掩蓋真實(shí)IP的跳板機(jī)都是精心挑選,所有IP均歸屬于非“五眼聯(lián)盟”國家。

In addition, 54 jumpers and proxy servers in 17 countries were used in the attack, about 70 percent of which were based in countries near China, including Japan and South Korea, the center said.

針對(duì)西北工業(yè)大學(xué)攻擊平臺(tái)所使用的網(wǎng)絡(luò)資源涉及代理服務(wù)器,美國國家安全局(NSA)通過秘密成立的兩家掩護(hù)公司購買了埃及、荷蘭和哥倫比亞等地的IP,并租用一批服務(wù)器。

起底“特定入侵行動(dòng)辦公室”

據(jù)調(diào)查報(bào)告顯示,美國國家安全局下屬的“特定入侵行動(dòng)辦公室”不僅對(duì)中國國內(nèi)的各重點(diǎn)企業(yè)和機(jī)構(gòu)實(shí)施惡意網(wǎng)絡(luò)攻擊,而且還長(zhǎng)期對(duì)中國的手機(jī)用戶進(jìn)行無差別的語音監(jiān)聽,非法竊取手機(jī)用戶的短信內(nèi)容,并對(duì)其進(jìn)行無線定位。

TAO成立于1998年,其力量部署主要依托美國國家安全局在美國和歐洲的各密碼中心。特定入侵行動(dòng)辦公室TAO是目前美國政府專門從事對(duì)他國實(shí)施大規(guī)模網(wǎng)絡(luò)攻擊竊密活動(dòng)的戰(zhàn)術(shù)實(shí)施單位,由1000多名軍人、技術(shù)人員、網(wǎng)絡(luò)黑客、軟硬件設(shè)計(jì)師以及其他文職人員組成。

TAO is the largest and most important part of the intelligence division of the NSA. Founded in 1998, the main responsibility of TAO is to use the internet to secretly access to insider information of its competitors, including secretly invading target countries' key information infrastructure to steal account codes, break or destroy computer security systems, monitor network traffic, invade privacy and steal sensitive data, and gain access to phone calls, emails, network communications and messages. The various departments of TAO are composed of more than 1,000 active military personnel, network hackers, intelligence analysts, academics, computer hardware and software designers, and electronics engineers.

目前已被公布的六個(gè)密碼中心分別是:

1、國安局馬里蘭州的米德堡總部;

2、瓦湖島的國安局夏威夷密碼中心(NSAH);

3、戈登堡的國安局喬治亞密碼中心(NSAG);

4、圣安東尼奧的國安局得克薩斯密碼中心(NSAT);

5、丹佛馬克利空軍基地的國安局科羅拉羅密碼中心(NSAC);

6、德國達(dá)姆施塔特美軍基地的國安局歐洲密碼中心(NSAE)。

 

圖源:央視新聞

美國國家安全局針對(duì)西北工業(yè)大學(xué)的攻擊行動(dòng)代號(hào)為“阻擊XXXX”(shotXXXX)。在竊密期間,TAO負(fù)責(zé)人是羅伯特·喬伊斯(Robert Edward Joyce)。此人1967年9月13日出生,1989年進(jìn)入美國國家安全局工作。曾經(jīng)擔(dān)任過TAO副主任,2013年至2017年擔(dān)任TAO主任。2017年10月開始擔(dān)任代理美國國土安全顧問。2018年4月至5月,擔(dān)任美國白宮國務(wù)安全顧問,后回到NSA擔(dān)任美國國家安全局局長(zhǎng)網(wǎng)絡(luò)安全戰(zhàn)略高級(jí)顧問,現(xiàn)擔(dān)任NSA網(wǎng)絡(luò)安全局主管。

The cyberattack operation was code-named "shotXXXX" by the NSA under the direct command of the head of TAO. 

TAO was headed by Rob Joyce. Born September 13, 1967, he attended Hannibal High School and graduated from Clarkson University with a bachelor’s degree in 1989 and Johns Hopkins University with a master’s degree in 1993. He joined the NSA in 1989 and served as Deputy Director of TAO from 2013 to 2017. He began serving as Acting US Homeland Security Advisor in October 2017. From April to May 2018, he served as the State Security Advisor to the White House, and then returned to the NSA as the Senior Advisor to the Director of Cybersecurity Strategy of the NSA. He now serves as the Director of Cybersecurity.

 

圖源:央視新聞

報(bào)告顯示,經(jīng)技術(shù)分析與溯源,涉及在美國國內(nèi)對(duì)中國直接發(fā)起網(wǎng)絡(luò)攻擊的人員13名,以及NSA通過掩護(hù)公司為構(gòu)建網(wǎng)絡(luò)攻擊環(huán)境而與美國電信運(yùn)營(yíng)商簽訂的合同60余份,電子文件170余份。

Thirteen people from the US have been found to be directly involved in the attack, and 170 electronic documents and 60 contracts between the NSA and American telecom operators were arranged through a cover company to create an environment for cyberattacks.

 

綜合來源:央視新聞,中國日?qǐng)?bào)網(wǎng),Global Times

 





 
訂閱更精彩

 主辦
21世紀(jì)報(bào)社版權(quán)所有,未經(jīng)書面授權(quán),禁止轉(zhuǎn)載或建立鏡像。
主辦單位:中國日?qǐng)?bào)社 Copyright by 21st Century English Education Media All Rights Reserved 版權(quán)所有 復(fù)制必究
京ICP備2024066071號(hào)-1   京公網(wǎng)安備 11010502033664號(hào)

關(guān)閉
內(nèi)容