Data leak from Shanghai-based i-Soon (Anxun) cybersecurity firm reveals potential workings of a Chinese government-backed hacking group. (Kagenmi from Thinkstock.com)


February 23, 2024

A data leak from a Shanghai-based cybersecurity firm, i-Soon (also known as Anxun), has led researchers to speculate that it has exposed the operations of a Chinese government-backed hacking group. The company, which reportedly does contract work for various Chinese government departments, including the Ministry of Public Security, Ministry of State Security, and the People's Liberation Army, had over 500 documents published on GitHub last weekend.

According to SentinelOne, the leaked documents provide concrete details about the maturing nature of China's cyber espionage ecosystem and how government targeting requirements drive a competitive marketplace of independent contractor hackers-for-hire. While the source of the leak is not entirely clear, Malwarebytes researchers suggest it may have been a disgruntled staff member.

The documents reveal that i-Soon has been responsible for compromising at least 14 governments, pro-democracy organizations in Hong Kong, universities, and NATO. They also show that i-Soon competes for low-value hacking contracts from various government agencies. The company's tools include a Twitter stealer, custom Remote Access Trojans (RATs) for Windows and iOS, and an Android version capable of extracting messages from popular Chinese chatting apps.

The leaked documents also include marketing materials and technical documents that demonstrate how the company's products function to compromise and exploit targets. Some documents show i-Soon's involvement in counterterrorism work, including past hacks targeting counterterrorism centers in Pakistan and Afghanistan.

While the leaked documents may have been intended to embarrass the company, they also raise important questions for the cybersecurity community. For defenders and business leaders, the lesson is that their organization's threat model likely includes underpaid technical experts who may pilfer valuable information. This should serve as a wakeup call and a call to action for organizations to bolster their cybersecurity defenses.

How useful was this post?

Click on a star to rate it!

Average rating 0 / 5. Vote count: 0

No votes so far! Be the first to rate this post.

You may also like

Alphabet climbs as AI bets drive ad strength, quelling market fears

Alphabet, the parent company of Google, saw its shares rise nearly 4% on Friday after it posted strong quarterly results.....

EV Interest Dips Among Canadians for Third Year Straight

A recent AutoTrader survey reveals that interest in electric vehicles (EVs) among Canadians is steadily declining, despite a noticeable drop....

Nations Boost Digital Defences as Cyber Threats Grow

In a troubling sign of the times, hackers backed by Russia’s government infiltrated a water facility in the small Texas....

Google to Challenge Part of US Court's Ruling in Monopoly Case

Google, part of Alphabet Inc., has announced plans to appeal a portion of the recent court ruling in the ongoing....

Google Faces £5B UK Lawsuit Over Search Engine Control

Google is now facing a massive £5 billion lawsuit in the United Kingdom, accusing the tech giant of using its....

Meta CEO Zuckerberg eyed Instagram split in 2018, email reveals

According to an internal email revealed during an ongoing antitrust trial, Meta CEO Mark Zuckerberg considered splitting Instagram from Facebook....

Meta’s Monopoly Trial Begins: What’s at Stake for Instagram and WhatsApp

In a major legal showdown, Meta CEO Mark Zuckerberg appeared in court on Monday as part of a historic antitrust....

 Future Legislation Must Address AI’s Role in News Compensation

As the media landscape evolves, researchers in Canada suggest future laws aimed at balancing the power between tech giants and....

Ireland Investigates Musk’s X Over AI Data Collection Practices

Ireland’s Data Protection Commission (DPC) has launched a formal investigation into Elon Musk’s platform X, formerly known as Twitter, over....

Google Cuts Prices for U.S. Government to Compete with Microsoft

In a bold move to expand its presence in the public sector, Google is now offering deep discounts on its....

Alphabet Sticks to $75B Spending Plan Amid Tariff Concerns

Alphabet, the parent company of Google, has confirmed its decision to invest a staggering $75 billion in 2025, mainly to....

TSMC Faces Over $1B Fine Over Huawei Chip Link: US Probe

Taiwan’s leading chipmaker, TSMC, may be hit with a fine of over $1 billion after a U.S. investigation revealed one....