Apr 29, 2025
Experts warned that commercial encryption systems underpin everyday activities such as financial transactions. They told the Global Times on Monday that attacks on Chinese encryption products could severely compromise national cybersecurity.
The report detailed that throughout 2024, US intelligence agencies exploited a vulnerability in a customer relationship management (CRM) system used by the Chinese company to launch the intrusion.
The CRM system stores customer and contract information. The attackers targeted the system through an undisclosed vulnerability, achieving arbitrary files upload. After gaining access, they deleted certain log records to cover their tracks.
The attack was methodically executed. On March 5, 2024, a specialized Trojan horse program was implanted into the CRM system. By May 20, the attackers expanded their operations, and conducted lateral movement to infiltrate the company’s product and project code management systems.
The stolen details included contract names, procurement content and transaction amounts. Separately, from May to July 2024, attackers used three overseas proxies to infiltrate the company’s code management system, stealing an additional 6.2GB of data. The code management system contained information including codes from three major encryption development projects.
Sources familar with the matter indicated that the stolen procurement and code information from multiple Chinese government agencies could allow US intelligence agencies to uncover vulnerabilities in China’s domestically developed encryption products. There are also concerns that the stolen source codes could be tampered with, potentially embedding malicious programs to facilitate future espionage through supply chains, ultimately threatening the security of China’s critical information infrastructure.
Li Baisong, deputy director of the technical committee of Antiy Technology Group, told the Global Times on Monday that commercial encryption products serve vital functions in areas such as telecommunications, energy, finance and transportation.
We remind our readers that publication of articles on our site does not mean that we agree with what is written. Our policy is to publish anything which we consider of interest, so as to assist our readers in forming their opinions. Sometimes we even publish articles with which we totally disagree, since we believe it is important for our readers to be informed on as wide a spectrum of views as possible.