Skip to main content

U.S. Identifies Programmer Behind Google Cyberattack?

Image used with permission by copyright holder

The Financial Times is reporting (registration required) that U.S. analysts believe they have identified the specific individual who is primarily responsible for authoring the “Aurora” cyberattack launched against Google and other businesses operating in China. The man, described as a security consultant in his 30s, apparently works as a freelancer and did not launch the attack himself, but developed the core technology used in the attack and posted some portions of his programming to a hacking forum, where he described it as something he was “working on.” The Financial Times also quotes sources alleging Chinese officials had “special access” to his code, saying that no one at this programmer’s level of skill is able to work without cooperating with Chinese authorities.

The attack against Google and other businesses operating in China used a previously unknown fault in Internet Explorer to penetrate Google’s internal network, and apparently focused on getting information and credentials for accounts used by Chinese human rights activists. Google disclosed the incident, proclaiming that it was done with complying with Chinese requirements to censor search results and might pull out of China entirely; the incident also has Google pondering a partnership with the National Security Agency, the United States’ largest—and most secretive—intelligence organization.

Recommended Videos

The incident has also impacted diplomatic relations between the United States and China, with U.S. Secretary of State Hillary Clinton delivering a pointed policy speech that, for the first time, outlined Internet freedoms as a key point of U.S. foreign policy.

The Chinese government has repeatedly insisted it had no role in the attacks against Google or other companies. China furthermore insists that if companies want to do business in China that they must conform to Chinese law—which includes Internet censorship. China further characterizes the United States’ stance on Internet freedoms as little more than 21st-century cultural imperialism.

Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
Chrome has a security problem — here’s how Google is fixing it
Google Chrome icon in mac dock.

Google is looking to get ahead of high-severity vulnerabilities on its Chrome browser by shortening the time between security updates.

The brand hopes that more frequent updates will give bad actors less time to access and exploit n-day and zero-day flaws found within Chrome browser code.

Read more
Google is creating ‘internet surveillance DRM,’ critics say
Google Drive in Chrome on a MacBook.

Google is working on a system to fight fraud and make the internet “more private and safe,” but it’s just come in for some blistering criticism from software engineers behind the Vivaldi web browser. According to them, it’s a “dangerous” idea that could lead to greater surveillance of ordinary people.

The subject of this kerfuffle is Google’s Web Environment Integrity project, or WEI. Its purpose, Google says, is to stymy bad actors by providing a piece of code on a website that can be checked with a trusted attestor (such as Google) to ensure the visitor is who they say they are. That could prevent cheating in games, for example, or ensure that ads are being properly served to readers.

Read more
Why is Google cutting web access for some of its workers?
Google Logo

Google is preventing some of its staff from using the internet at work, according to sources in contact with CNBC.

Having revolutionized the web with its powerful search engine before making vast sums of money off online ads, the idea of a company like Google preventing some of its own workers from accessing the internet may at first seem somewhat odd, but there is of course sound reasoning behind it.

Read more