U.S. Software Firm Hacked For Years After Suing China

November 29, 2012 By Ali Loney

2 minute read time

The Register – (International) U.S. software firm hacked for years after suing China. A Californian software company which sued the Chinese government for pirating its flagship content filtering product has revealed how it was targeted by hackers from that country for the 3 years of the resulting legal proceedings. Santa Barbara, California-based Solid Oak Software filed the civil lawsuit against China after discovering thousands of lines of code from its parental filtering CYBERsitter had been lifted and used to develop the Green Dam Youth Escort. Just 12 days after Solid Oak’s founder went public with his intentions, the hackers began targeting his employees with a view to infiltrating the company, gleaning intelligence about the court case and disrupting sales as much as possible, Bloomberg reported. The attackers made initial incursions with spyware hidden in malicious email attachments and were soon able to remotely control PCs and switch on webcams to spy on individuals. Solid Oak’s Web and email servers were also targeted, frequently crashing several times a day, and the small family-run business dived into the red as customers looking to buy the software online were not able to complete their transactions thanks to some tinkering with the script that controlled payment processing. Forensic investigators said that the malware and attack toolkits they found were unique to Chinese hackers known as the Comment group – a gang fingered for attacks on Coca Cola and others revealed earlier this month. Within two months of a settlement in the case , the attacks reportedly stopped.

Source: http://www.theregister.co.uk/2012/11/29/solid_oak_china_hacked_three_years/

Tags: News, security, AppSec Spotlight

Written by Ali Loney

Ali Loney is a Senior UX Designer at Walmart Labs. She is based in Canada and was the former Graphic Designer at Sonatype.