US sanctions APT31 hackers behind critical infrastructure attacks

US sanctions APT31 hackers behind critical infrastructure attacks

March 25, 2024 at 12:11PM

The U.S. Treasury Department sanctioned Wuhan-based company used by Chinese Ministry of State Security for attacks on U.S. critical infrastructure. Two Chinese nationals linked to APT31 hacking group, working for the company, also sanctioned. Joint effort with DOJ, FBI, State Department, and UK FCDO. UK also sanctioned Wuhan XRZ and operatives for cyber activities. DOJ to unseal indictments.

Summary of the meeting notes:

The U.S. Treasury Department has imposed sanctions on a Wuhan-based company and two Chinese nationals, Zhao Guangzong and Ni Gaobin, for their involvement in cyber attacks against U.S. critical infrastructure organizations.

The Office of Foreign Assets Control (OFAC) has designated these individuals and entities for their links to the APT31 hacking group and their endangerment of U.S. national security.

The sanctions were part of a joint effort with various U.S. government agencies and the United Kingdom’s FCDO.

The United Kingdom has also sanctioned Wuhan XRZ and the two APT31 operatives for engaging in cyber activities targeting officials and government entities internationally.

The U.S. Justice Department will unseal indictments charging Zhao Guangzong, Ni Gaobin, and five other defendants for their involvement in malicious cyber operations coordinated by Wuhan XRZ.

As a result of the sanctions, assets and interests in the United States linked to these designated individuals and entities are frozen. Transactions involving these assets are prohibited unless authorized by OFAC.

In July 2020, the Council of the European Union announced sanctions against a company linked to the Chinese-backed APT10 threat group and two of its employees for their involvement in a cyber-espionage campaign.

Let me know if there’s anything else you need assistance with!

Full Article