Belgium investigating alleged cyberattack on intelligence agency by China-linked hackers

Date:

Share post:


Belgium is investigating an alleged data breach of its state security service (VSSE) by Chinese government hackers. 

In a statement sent to TechCrunch on Friday, the Belgian federal prosecutor’s office said an investigation into a cyberattack was opened in November 2023 after it learned about the alleged breach. 

This confirms an earlier report by the French-language Belgian newspaper Le Soir, which reported that a Chinese hacking group gained access to the external mail server of the intelligence service between 2021 and 2023. 

The unnamed Chinese hacking group reportedly exploited a vulnerability in U.S. cybersecurity firm Barracuda’s software. The critical-rated flaw, which Barracuda first disclosed in May 2023, impacts the firm’s Email Security Gateway (ESG) appliance, a firewall for filtering inbound and outbound emails for potentially malicious content.

Barracuda spokesperson Lesley Sullivan told TechCrunch that “questions regarding any breaches at VSSE are more appropriately directed to VSSE.” VSSE did not respond to TechCrunch’s questions. 

Security researchers at U.S. cybersecurity firm Mandiant previously said the vulnerability, which could allow hackers to exfiltrate sensitive corporate data, had been exploited as a zero-day by a China-backed cyberespionage group to target organizations around the world. Almost a third of the target organizations were government agencies, according to Mandiant. 

Though a patch was released for the vulnerability, Barracuda in June 2023 urged all affected customers to replace ESG appliances impacted by the vulnerability. It also advised customers to rotate any credentials connected to the appliances and to check for signs of compromise dating back to at least October 2022.

According to Le Soir, China-backed hackers exploited the Barracuda flaw to exfiltrate 10% of the Belgian intelligence service’s incoming and outgoing emails. It notes that while classified information was not affected, the personal data of almost half of VSSE’s employees was accessed, including identity documents, resumes, and internal communications.

VSSE reportedly discontinued its use of Barracuda’s products following the cyberattack, which was first reported by local media in July 2023.

Zack Whittaker contributed reporting.



Source link

Lisa Holden
Lisa Holden
Lisa Holden is a news writer for LinkDaddy News. She writes health, sport, tech, and more. Some of her favorite topics include the latest trends in fitness and wellness, the best ways to use technology to improve your life, and the latest developments in medical research.

Recent posts

Related articles

OpenAI plans to integrate Sora’s video generator into ChatGPT

OpenAI intends to eventually integrate its AI video generation tool, Sora, directly into its popular consumer chatbot...

Researchers uncover unknown Android flaws used to hack into a student’s phone

Amnesty International said that Google fixed previously unknown flaws in Android that allowed authorities to unlock phones...

Google Sheets gets a Gemini-powered upgrade to analyze data faster and create visuals

Google is giving Sheets a Gemini-powered upgrade that is designed to help users analyze data faster and...

Good hype for fusion, bad buzz for YC

Welcome to Startups Weekly — your weekly recap of everything you can’t miss from the world of...

Alkami is buying fintech Mantl for $400 million

Digital banking services provider Alkami Technology is acquiring Mantl, which has been described as “the Shopify of...

Mozilla responds to backlash over new terms, saying it’s not using people’s data for AI

Mozilla has responded to user backlash over the Firefox web browser’s new Terms of Use, which critics...

Only 3 more days to save up to $325 at TechCrunch Sessions: AI

The AI revolution won’t wait — will you? Secure your seat at TechCrunch Sessions: AI before time...

Microsoft hangs up on Skype: service to shut down May 5, 2025

After kickstarting the market for making calls over the internet 23 years ago, Skype is closing down....