Skip to main content

The big hack: How China used a tiny chip to steal data from US companies like Amazon, Apple

Apple made its discovery of suspicious chips inside Supermicro servers around May 2015, after detecting odd network activity and firmware problems, according to a person familiar with the timeline.

Amazon in its three-year secret investigation uncovered the malicious chips while examining servers manufactured by a start-up called Elemental technologies, which Amazon eventually acquired.
Bloomberg reported that China had inserted tiny chips into computer equipment manufactured for about 30 US companies, including Apple and Amazon, to steal its technology secrets, citing government and corporate sources. The report further said that the chips were used in equipment made for various US companies and government agencies.
According to Bloomberg, Amazon in its three-year secret investigation uncovered the malicious chips while examining servers manufactured by a start-up called Elemental technologies, which Amazon eventually acquired
Bloomberg also reported that a unit of the Chinese People’s Liberation Army infiltrated the supply chain of computer hardware maker Super Micro Computer Inc to plant malicious chips that could be used to steal corporate and government secrets.
The investigation found that Elemental servers, which were assembled by Super Micro, were tainted with tiny microchips that were not part of their design, Bloomberg said. Amazon reported the matter to US authorities, who determined that the chips allowed attackers to create “a stealth doorway” into networks using those servers, the report said.
White House national security adviser John Bolton told Bloomberg that Chinese cyber attacks on the US validate Trump administration’s emphasis on offensive cyber operations of its own. He did not confirm whether the White House was aware of the cyber hack before Bloomberg report.
According to the report, Apple had earlier planned to order 30,000 Supermicro servers in two years. Bloomberg also reported that Apple in 2015 found malicious chips in servers it purchased from the hardware maker, citing three unidentified company insiders. In 2016, Apple severed ties with Supermicro owing to unrelated reasons, the report said.

Apple and Amazon both denied the report on Thursday, according to Reuters. In a detailed statement on its website Apple wrote, The October 8, 2018 issue of Bloomberg Businessweek incorrectly reports that Apple found “malicious chips” in servers on its network in 2015. As Apple has repeatedly explained to Bloomberg reporters and editors over the past 12 months, there is no truth to these claims. 
Apple provided Bloomberg Businessweek with the following statement before their story was published:
Over the course of the past year, Bloomberg has contacted us multiple times with claims, sometimes vague and sometimes elaborate, of an alleged security incident at Apple. Each time, we have conducted rigorous internal investigations based on their inquiries and each time we have found absolutely no evidence to support any of them. We have repeatedly and consistently offered factual responses, on the record, refuting virtually every aspect of Bloomberg’s story relating to Apple.”

Comments

Popular posts from this blog

How scientists are fighting ‘Deepfake’ celebrity porn videos with AI

Deepfake videos  are getting better and better, and it’s terrifying – there’s an intense community trading fake celebrity porn, and manipulated political speeches are furthering the serious fake news epidemic. ‘Deepfakes’ are AI-edited videos, where a person’s face is superimposed onto another – everyone from Katy Perry to Vladimir Putin has become a victim. Since  Motherboard  first reported on the new trend at the beginning of 2018, an online crackdown against AI-assisted fake porn and other videos has been taking place. Reddit and Gfycat were some of the first platforms to begin a ‘mass purge’ of hardcore clips featuring prominent musicians and actors with their faces mapped onto porn performers. Twitter, Pornhub, and Discord soon followed, labeling the videos as “nonconsensual” – nevertheless, the volume of videos on these networks is huge and proving difficult to contain. Now, researchers at the State University of New York are work...

Bata to pay ₹9,000 fine for charging ₹3 for a paper bag

The Chandigarh Consumer Commission recently ordered Bata India Ltd to pay  ₹ 9,000 in fine for charging   ₹ 3 from a customer for a paper bag to carry the shoebox. Legal experts say the order is legally valid across the country and that stores cannot charge consumers additional charges for the bag if the product is purchased from the same store. The forum's order came on a complaint filed by a consumer, Dinesh Prasad Raturi. Raturi told the consumer panel that he had purchased a pair of shoes on February 5 from the shoe store located in Sector 22D. The store charged  ₹ 402, which also included cost for the bag. Raturi contested that by charging him for the bag, Bata was also endorsing its brand on the bag which was not justified. Raturi sought a refund of  ₹ 3 and compensation for deficiency in services. The forum slammed Bata for charging an additional amount for the paper bag. The forum ordered that a customer cannot be compelled to pay for...

Xiaomi Mi 8 SE, Mi 8 Screen Fingerprint Edition and the recently launched Mi Mix 3 will get Android Pie based update in Q4 2018.

Xiaomi reveals a list of devices that will get Android Pie update in Q4 2018 Xiaomi has revealed a list of smartphones that will get Android 9.0 Pie or Android Oreo update in Q4 this year. The list first spotted by GsmArena was posted by the company in its ‘Chinese-language’ forum. Xiaomi has published a list of devices that will receive the beta version of Android Oreo or Android Pie and the stable version in Q4, 2018. As per the list, Xiaomi Redmi Note 5, Redmi 5A, Redmi 5 Plus and Redmi 5X will get Android Oreo update in the fourth quarter. Meanwhile, the devices that will get Android Pie-based update including Mi 8 SE, Mi 8 Screen Fingerprint Edition, and the recently launched Mi Mix 3 as well. Also Read:  Xiaomi Mi Mix 3 with 10GB RAM, 5G connectivity launched: Here’s the price Xiaomi in the forum mentioned that the devices that have received two major updates or have been updated recently will not get Android Pie. The listing also cited that Xiaomi Mi 5S Plus O...