German intelligence warns of Chinese cyberspying

German intelligence warns of Chinese cyberspying

Hans-Georg Maassen, head of the German Federal Office for the Protection of the Constitution. (AP file photo),
Hans-Georg Maassen, head of the German Federal Office for the Protection of the Constitution. (AP file photo),

BERLIN: The head of Germany's domestic intelligence agency warned on Sunday that China is using social networks to cultivate lawmakers and other officials as sources.

Hans-Georg Maassen said his agency, known by its German acronym BfV, believes more than 10,000 Germans have been targeted by Chinese intelligence agents posing as consultants, headhunters or researchers, primarily on the social networking site LinkedIn.

"This is a broad-based attempt to infiltrate in particular parliaments, ministries and government agencies,'' Mr Maassen said.

In addition, Chinese hackers increasingly are launching attacks on European companies through trusted suppliers, he said.

The BfV established a task force early this year which examined the use of fake profiles on social networks over nine months. The agency provided journalists with what it said were eight of the most prolific fake profiles on LinkedIn used by Chinese spies.

Using names such as Lily Wu, Laeticia Chen or Alex Li, the profiles sport impressive resumes, hundreds of contacts and attractive pictures of young professionals.

The agency also named six organisations it alleged Chinese spies use to cloak their approaches, including one called the Association France Euro-Chine and another named Global View Strategic Consulting.

Messages seeking comment from the organisations were not immediately returned.

Mr Maassen warned that Chinese cybergroups also were using so-called "supply-chain attacks'' to get around companies' online defences.

Such attacks target IT workers and others who work for trusted service providers to send malicious software into the networks of organisations the attackers are interested in.

"The infections are difficult to detect, since network connections between service providers and their customers aren't suspicious,'' the BfV said. "This gives the attacker an even better disguise than before.''

Do you like the content of this article?
COMMENT (3)