Google China hackers stole source code: researcher

Related Topics

A Chinese national flag sways in front of Google China's headquarters in Beijing in this January 14, 2010 file photo. REUTERS/Jason Lee/Files

A Chinese national flag sways in front of Google China's headquarters in Beijing in this January 14, 2010 file photo.

Credit: Reuters/Jason Lee/Files

BOSTON | Wed Mar 3, 2010 4:35pm EST

BOSTON (Reuters) - The hackers behind the attacks on Google Inc (GOOG.O) and dozens of other companies operating in China stole valuable computer source code by breaking into the personal computers of employees with privileged access, a security firm said on Wednesday.

The hackers targeted a small number of employees who controlled source code management systems, which handle the myriad changes that developers make as they write software, said George Kurtz, chief technology officer at anti-virus software maker McAfee Inc MFE.N.

The details from McAfee show how the breach of just a single PC at a large corporation can have widespread repercussions across the broader business.

Google said in January that it had detected a cyber attack originating from China on its corporate infrastructure that resulted in the theft of its intellectual property. Google said more than 20 other companies had been infiltrated, and cited the attack, as well as Chinese Web censorship practices, as reasons for the company to consider pulling out of China.

The Chinese government has said that Google's claim that it was attacked by hackers based in China was "groundless."

Kurtz said on Wednesday that he believes that the hackers, who have not been apprehended, broke through the defenses of at least 30 companies, and perhaps as many as 100.

He said the common link in several of the cases that McAfee reviewed is that the hackers used source code management software from privately held Perforce Software Inc, whose customers include Google and many other large corporations.

"It is very easy to compromise the systems," Kurtz said.

Perforce President Christopher Seiwald said McAfee performed its analysis on a version of the Alameda, California-based company's software that had many of its security settings disabled. Customers typically enable those settings, he said.

Kurtz said the hackers succeeded in stealing source code from several of their victims.

The attackers also had an opportunity to change the source code without the companies' knowledge, perhaps adding functions so the hackers could later secretly spy on computers running that software, Kurtz said.

But investigators have yet to uncover any evidence that suggests that they made such changes, he said.

McAfee, the world's No. 2 security software maker, has spent the past few months investigating the attacks. It declined to identify its clients.

Other makers of source code management programs include International Business Machines Corp (IBM.N), Microsoft Corp (MSFT.O) and privately held Serena Software Inc.

(Reporting by Jim Finkle; Editing by Richard Chang)

Related Quotes and News

Company
Price
Related News
We welcome comments that advance the story through relevant opinion, anecdotes, links and data. If you see a comment that you believe is irrelevant or inappropriate, you can flag it to our editors by using the report abuse links. Views expressed in the comments do not represent those of Reuters. For more information on our comment policy, see http://blogs.reuters.com/fulldisclosure/2010/09/27/toward-a-more-thoughtful-conversation-on-stories/
Comments (2)
blahhhhhh wrote:
And the Chinese government still refuses to investigate. It is quite obvious the Chinese government was involved; why else are they not trying to find the criminals that broke chinese law by attacking google? China is the worst place to have a business, because you are always being spied on by the Chinese military.

Mar 04, 2010 12:02pm EST  --  Report as abuse
BrianPomeroy wrote:
DUH! We should not be in bed with such an evil giant in the first place. Criminal governments should not be acknowledged at all. Google had a chance to set REAL precedent and dropped the ball. Nobody but nobody is perfect but I, for one, expect more from the powerful and when they fail, the public accepts it. …to be closer to the money and power, I assume. These hacker slash thieves slash freedom fighters prove that nobody is immune to attack.

Mar 05, 2010 12:13pm EST  --  Report as abuse
This discussion is now closed. We welcome comments on our articles for a limited period after their publication.