Chinese Hackers Spying on US Critical Infrastructure, Western Intelligence Says

REUTERS/Kacper Pempel
REUTERS/Kacper Pempel
TT

Chinese Hackers Spying on US Critical Infrastructure, Western Intelligence Says

REUTERS/Kacper Pempel
REUTERS/Kacper Pempel

A state-sponsored Chinese hacking group has been spying on a wide range of US critical infrastructure organizations, from telecommunications to transportation hubs, Western intelligence agencies and Microsoft said on Wednesday.

The espionage has also targeted the US island territory of Guam, home to strategically important American military bases, Microsoft said in a report, adding that "mitigating this attack could be challenging."

While China and the United States routinely spy on each other, analysts say this is one of the largest known Chinese cyber-espionage campaigns against American critical infrastructure, Reuters said.

The Chinese embassy in Washington did not immediately respond to a Reuters request for comment.

It was not immediately clear how many organizations were affected, but the US National Security Agency (NSA) said it was working with partners including Canada, New Zealand, Australia, and the UK, as well as the US Federal Bureau of Investigation to identify breaches. Canada, UK, Australia and New Zealand warned they could be targeted by the hackers too.

Microsoft analysts said they had "moderate confidence" this Chinese group, which it dubbed as 'Volt Typhoon', was developing capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises.

"It means they are preparing for that possibility," added said John Hultquist, who heads threat analysis at Google's Mandiant Intelligence.

The Chinese activity is unique and worrying also because analysts don't yet have enough visibility on what this group might be capable of, he added.

"There is greater interest in this actor because of the geopolitical situation."

As China has stepped up military and diplomatic pressure in its claim to democratically governed Taiwan, US President Joe Biden has said he would be willing to use force to defend Taiwan.

Security analysts expect Chinese hackers could target US military networks and other critical infrastructure if China invades Taiwan.

The NSA and other Western cyber agencies urged companies that operate critical infrastructure to identify malicious activity using the technical guidance they issued.

"It is vital that operators of critical national infrastructure take action to prevent attackers hiding on their systems," Paul Chichester, director at the UK's National Cyber Security Center said in a joint statement with the NSA.

Microsoft said the Chinese hacking group has been active since at least 2021 and has targeted several industries including communications, manufacturing, utility, transportation, construction, maritime, government, information technology, and education.

NSA cybersecurity director Rob Joyce said the Chinese campaign was using "built-in network tools to evade our defenses and leaving no trace behind." Such techniques are harder to detect as they use "capabilities already built into critical infrastructure environments," he added.

As opposed to using traditional hacking techniques, which often involve tricking a victim into downloading malicious files, Microsoft said this group infects a victim's existing systems to find information and extract data.

Guam is home to US military facilities that would be key to responding to any conflict in the Asia-Pacific region. It is also a major communications hub connecting Asia and Australia to the United States by multiple submarine cables.

Bart Hoggeveen, a senior analyst at the Australian Strategic Policy Institute who specializes in state-sponsored cyber attacks in the region, said the submarine cables made Guam "a logical target for the Chinese government" to seek intelligence.

"There is high vulnerability when cables land on shore," he said.

New Zealand said it would work towards identifying any such malicious cyber activity in its country.

"It's important for the national security of our country that we're transparent and upfront with Australians about the threats that we face," Australia's Minister for Home Affairs and Cyber Security Clare O'Neil said.

Canada's cybersecurity agency said it had no reports of Canadian victims of this hacking as yet. "However, Western economies are deeply interconnected," it added. "Much of our infrastructure is closely integrated and an attack on one can impact the other."



Russia: Man Suspected of Shooting Top General Detained in Dubai

An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova
An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova
TT

Russia: Man Suspected of Shooting Top General Detained in Dubai

An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova
An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova

Russia's Federal Security Service (FSB) said on Sunday that the man suspected of shooting top Russian military intelligence officer Vladimir Alexeyev in Moscow has been detained in Dubai and handed over to Russia.

Lieutenant General Vladimir Alexeyev, deputy head of the GRU, ⁠Russia's military intelligence arm, was shot several times in an apartment block in Moscow on Friday, investigators said. He underwent surgery after the shooting, Russian media ⁠said.

The FSB said a Russian citizen named Lyubomir Korba was detained in Dubai on suspicion of carrying out the shooting.

Russian Foreign Minister Sergei Lavrov accused Ukraine of being behind the assassination attempt, which he said was designed to sabotage peace talks. ⁠Ukraine said it had nothing to do with the shooting.

Alexeyev's boss, Admiral Igor Kostyukov, the head of the GRU, has been leading Russia's delegation in negotiations with Ukraine in Abu Dhabi on security-related aspects of a potential peace deal.


Factory Explosion Kills 8 in Northern China

Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo
Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo
TT

Factory Explosion Kills 8 in Northern China

Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo
Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo

An explosion at a biotech factory in northern China has killed eight people, Chinese state media reported Sunday, increasing the total number of fatalities by one.

State news agency Xinhua had previously reported that seven people died and one person was missing after the Saturday morning explosion at the Jiapeng biotech company in Shanxi province, citing local authorities.

Later, Xinhua said eight were dead, adding that the firm's legal representative had been taken into custody.

The company is located in Shanyin County, about 400 kilometers west of Beijing, AFP reported.

Xinhua said clean-up operations were ongoing, noting that reporters observed dark yellow smoke emanating from the site of the explosion.

Authorities have established a team to investigate the cause of the blast, the report added.

Industrial accidents are common in China due to lax safety standards.
In late January, an explosion at a steel factory in the neighboring province of Inner Mongolia left at least nine people dead.


Iran Warns Will Not Give Up Enrichment Despite US War Threat

Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)
Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)
TT

Iran Warns Will Not Give Up Enrichment Despite US War Threat

Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)
Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)

Iran will never surrender the right to enrich uranium, even if war "is imposed on us,” its foreign minister said Sunday, defying pressure from Washington.

"Iran has paid a very heavy price for its peaceful nuclear program and for uranium enrichment," Abbas Araghchi told a forum in Tehran.

"Why do we insist so much on enrichment and refuse to give it up even if a war is imposed on us? Because no one has the right to dictate our behavior," he said, two days after he met US envoy Steve Witkoff in Oman.

The foreign minister also declared that his country was not intimidated by the US naval deployment in the Gulf.

"Their military deployment in the region does not scare us," Araghchi said.