FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
AI-summarised brief · reviewed before publication
The FBI and six allied agencies issued a joint advisory on Oct. 8 detailing a campaign by hackers linked to China‑based Integrity Technology Group (ITG), a firm sanctioned by the U.S. and U.K. The actors stole email from government bodies, law‑enforcement, healthcare and religious groups across Southeast Asia, Africa and North America, using a custom tool with over 1,300 penetration‑testing scripts to scan for vulnerabilities, guess Microsoft 365 and Exchange passwords, and copy mailboxes. They also operated a web portal that granted unidentified third parties access to the harvested messages. Investigations show the group has been active since at least Jan. 2021 and previously ran a botnet of more than 200,000 compromised devices. ITG denies the accusations, while U.S. officials claim its leadership has long gathered intelligence for Chinese security agencies.
💡 Why It Matters
- · By exposing a supply‑chain of stolen communications that can be redistributed to unknown actors, the advisory reveals a new layer of cyber‑espionage that bypasses traditional detection and amplifies the reach of state‑aligned threat groups.