Cyberwarfare / Nation-State Attacks
,
Fraud Management & Cybercrime
,
Geo Focus: The United Kingdom
Chinese Hacking Group Reportedly Behind the Hack

A top-ranking U.K. government official said that hackers targeted the government’s foreign relations ministry but dismissed media reports that the attackers stole a large trove of data.
See Also: Strengthening Your Security Program With Open API
Trade Minister Chris Bryant on Friday told Sky News that hackers breached the Foreign, Commonwealth and Development Office network in October.
“We managed to close the hole, as it were, very quickly,” Chris Bryant said. “It was a technical issue in one of our sites, I gather. And we’re fairly confident that there’s a low risk of any individual actually being affected by this.”
The incident was first reported Thursday by tabloid newspaper The Sun, which said a Chinese hacking group, Storm-1849, carried out the hack, resulting in attackers stealing visa and other personal details.
The minister told Sky News that details regarding who is behind the hack are “not entirely clear.” Media reports about the incident offer a “bit more speculation than accurate,” he said.
A Foreign Office spokesperson said the department is investigating the incident. “We take the security of our systems and data extremely seriously.”
A National Cyber Security Centre spokesperson said it is working with government partners to “understand the impact of the incident.” The incident comes amid increased warnings from the cyber agency of cyberthreats from Chinese and Russian hackers (see: UK Cyber Incidents Rise for Third Straight Year).
Storm-1849, also tracked as UAT4356, is a nation-state group that has previously targeted Cisco edge devices (see: Feds Fumble Cisco Patches as China-Linked Hackers Strike).
