China spied on Dutch Cyber Intelligence through FortiGate backdoors

  • Firefox Translations of it says it was known vulnerability:

    > The malware found installed a ‘backdoor’ by using a known vulnerability in FortiGate devices. The publication of the MIVD therefore does not describe any new vulnerability in all FortiGate devices.

    I could believe factory backdoors in Fortinet products, including bugdoors, but it's even easier to believe commonplace unintended software defects.

    Edit: This comment was a response to the HN title "China spied on Dutch Cyber Intelligence through FortiGate backdoors (defensie.nl)". I thought people will tend to interpret "FortiGate backdoor" as meaning an intentional backdoor by the vendor/factory, when that's not what the article seemed to suggest.

  • The full report is here:

    https://www.ncsc.nl/binaries/ncsc/documenten/publicaties/202...

  • Wonder what they were after? Upcoming sanctions? ASML?

  • I'm not entirely sure why driving a tank across a border is materially different to "driving code" across a digital border.

    Personally I'm less concerned about the tank. It's obvious and easy to risk assess. I don't get why countries don't have any significant, and honestly out sized, response to hacking and spying.

    The damage that is/can be done is outrageous.

  • They did the same thing to the US with Solarwinds. Which, it's funny, nobody really talks about what that is. It's what they use to spy on the public. Pretty funny stuff really, ironic.

  • Security hardware and software are such a honey pots

  • When is Europe going to wake up and realize that China is attacking Europe with all its weights, whether its through Russia's military invasion or through economic attack of dumping of EV and solar that seeks to destroy Europe's car industry?

    China Offers Full Support to Russia on Ukraine War https://www.newsweek.com/china-russia-ukraine-war-dong-jun-c...