Critical.
Authoritative.
Strategic.
Subscribe to CIO Magazine »

Yahoo reportedly hit by China hackers

Hackers used new IE 0day to hit some targets, McAfee says

Yahoo was one of more than 30 companies hit by a sophisticated online attack from China, designed to steal intellectual property and collect information on Chinese dissidents, several news sources reported Thursday.

The news follows revelations Tuesday that Silicon Valley giants Google and Adobe had also been targeted by the hackers, who are thought to be from China. According to sources familiar with the matter, 34 companies in total have been affected -- and more names are expected to come to light in the next few days.

Google has threatened to effectively pull its business out of China, in part, because of the incident.

Bloomberg and other news outlets named Yahoo as a victim Thursday, citing unnamed sources familiar with the situation.

Yahoo sold off its China business in 2005, but is a major shareholder in Alibaba.com, the company that now runs Yahoo China. The company did not respond to requests for comment Thursday, but had previously declined to comment on whether it had been hacked.

On Tuesday, the company called the Google hack "deeply disturbing."

"Yahoo is committed to protecting human rights and takes our users' privacy and security very seriously," the company said in a statement. "We condemn any attempts to infiltrate company networks to obtain user information."

Because Google reported that the hackers had sought information on Gmail users, security experts had said that companies such as Yahoo and Microsoft, which operate Web based e-mail services, were also likely targets.

The attackers, who also tried to steal valuable intellectual property from their victims, were extremely sophisticated, according to sources familiar with the situation. On Thursday, antivirus vendor McAfee disclosed that the hackers used a previously unknown "zero-day" flaw in Internet Explorer to break into some companies.

"Our investigation has shown that Internet Explorer is vulnerable on all of Microsoft's most recent operating system releases, including Windows 7," McAfee said in a note on its Web site. "Microsoft has been working with us on this matter and we thank them for their collaboration."

Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.

More about: Adobe, Bloomberg, Bluechip Infotech, Google, Infotech, McAfee, McAfee Security, Microsoft, Yahoo
References show all

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the CIO comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Coverage
Related Whitepapers
Latest Stories
Community Comments
Tags: China, Google, Yahoo, zero day exploit
Latest Blog Posts
Whitepapers
  • HTML5 and security on the new web
    There are lots of changes happening to the key technologies that power the web. The new version of HTML, the dominant web language, offers impressive enhancements for rich web applications. But as HTML5 comes into greater use we’ll see new security issues arise. It’s typical for a new technology to have defects and pitfalls. And although the standard is still being defined, it's already being implemented. So how does HTML5 stand up to security scrutiny?
    Learn more »
  • Seven Tips for Securing Mobile Workers
    Seven Tips for Securing Mobile Workers is intended to offer practical guidance on dealing with one of the fastest growing threats to the security of sensitive and confidential information.
    Learn more »
  • Forrester Research - Exploring the Benefits of End-to-End Convergence of Data Center Networks
    This paper examines the benefits to be gained through convergence; how to overcome the organisational barriers to adoption and the catalysts for adoption of converged architecture.
    Learn more »
All whitepapers
rhs_login_lockGet exclusive access to Invitation only events CIO, reports & analysis.
Recent comments