Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 25 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Details of Millions of Voters and Several MPs Targeted in a Cyberattack by the Chinese State

Cybersecurity experts from across the industry have weighed in on the breaking news.

by Guru Writer
March 27, 2024
in Editor's News
Details of Millions of Voters and Several MPs Targeted in a Cyberattack by the Chinese State
Share on FacebookShare on Twitter

The UK has officially attributed a major cyberattack on the Electoral Commission to China. The attack compromised the personal data of approximately 40 million voters, marking the first direct implication of China since the breach came to light.

The breach, disclosed by the Electoral Commission in August of the previous year, was initially identified in October 2022. However, it was confirmed that hostile actors gained unauthorised access to the organisation’s systems as early as August 2021.

During the breach, attackers succeeded in obtaining reference copies of the electoral registers, containing the names and addresses of UK voters registered between 2014 and 2022, as well as details of overseas voters and the internal email system of the watchdog.

Over the weekend, reports emerged indicating that a group of MPs and peers critical of China had also been targeted by cyber attacks originating from the country. Deputy Prime Minister Oliver Dowden confirmed on Monday that the country had attempted to spy on the emails of 43 MPs and peers.

In response to the malicious cyber activities against parliamentarians, a front company named Wuhan Xiaoruizhi Science and Technology, along with two individuals, Zhao Guangzong and Ni Gaobin, linked to the APT31 hacking group, have been sanctioned.

Cybersecurity experts from across the industry have weighed in on the news:

Elliott Wilkes, CTO of Advanced Cyber Defence Systems (ACDS): “Back in 2014-15 the US Government’s Office of Personnel Management (OPM) experienced a major breach that was widely reported as being attributed to an advanced cyber espionage team that was part of the Chinese government. That team reportedly stole over 4.2 million national security-cleared employees’ data, including copies of fingerprints and detailed personnel reports used for vetting.”

“Since that time, we’ve seen the Chinese government grow increasingly bold in their attacks on Western government’s information systems. Even though it is early in the investigation, this case in the UK bears similar markers to that of the OPM attack. Without more details, it is hard to say with any degree of certainty about the identity of the attackers.”

“In terms of response, the conventional option is to sanction individuals responsible, though this will likely not yield satisfactory results. To my knowledge, none of the individuals associated with the OPM breach who were sanctioned by the US Government have been arrested. A bolder step might include more direct cyber action, but this has the potential to escalate already heightened tensions between the UK (and the West) and China.”

“The danger of this attack is that it underscores the ability of a major global power to act in a way designed for intelligence gathering but also intimidation, without fear of significant recourse. This is also a vulnerable time for the UK, leading up to an election that might see a significant change in government. If this is, indeed, proven to be the work of the Chinese government, the challenge for the UK government will be to mount a penalty that is effective in deterring these actions without taking away much-needed diplomatic energy from supporting Ukraine against Russian aggression, or bringing an end to the war and humanitarian crisis in Gaza.”

Jamie Akhtar, Co-Founder and CEO at CyberSmart: 

“Sadly, this isn’t likely to be the last time we discuss nation-state attacks on the UK, particularly with an election later this year. Cyber warfare and espionage between states have become a regular feature of geopolitics in the twenty-first century.”

“However, it does emphasise the continuing need for the UK to continually refine its holistic cybersecurity strategy. Defence needs to go further than protection for state institutions. As we’ve seen time and again, nation-state actors will also target businesses that provide services to the government too. Without a defence strategy that incorporates every aspect of society, from small businesses to schools to state bodies, nation-state actors will keep finding new routes in.”

Javvad Malik, lead security awareness advocate at KnowBe4:

“Such attacks are not new but follow a pattern where China, as well as other nation-states, have been implicated in cyber espionage activities aimed at gathering significant data that can be leveraged for multiple purposes, including but not limited to influencing political outcomes, understanding internal policy debates, and setting the stage for more aggressive cyber campaigns.”

“Nation state attacks are often perceived as being highly sophisticated, and while there sometimes is the use of custom malware to compromise systems and exfiltrate data without detection; the vast majority of breaches are successful due to spear-phishing campaigns, and exploitation of software vulnerabilities.”

“The impact of such a breach on UK-Sino relations could be profound. It’s likely to escalate tensions, leading to diplomatic strain and potentially resulting in retaliatory actions in the cyber domain or other areas of bilateral cooperation. Moreover, this situation necessitates a robust response not only in terms of securing compromised systems and preventing further breaches but also in reinforcing the international legal and norms-based systems governing state behaviour in cyberspace.”

“To mitigate the aftermath and prevent future incidents, it’s crucial for nations to invest in stronger cybersecurity defences, international collaboration, and developing capabilities to deter adversaries in the cyberspace domain. Additionally, fostering a culture of security awareness among political entities and the general public plays an essential role in defending against such sophisticated attacks.”

Victor Acin, Head of Threat Intel Research, Outpost24:

“APT31” is a Chinese-state-sponsored APT group. The group focuses on targeting multiple sectors, including government, international financial organizations, and aerospace and defense organizations, as well as high-tech, construction and engineering, telecommunications, media, and insurance sectors. Among their targeting, the group has also been compromising software providers and other supply chain organizations, likely to access customers’ data or networks. Behind this selection of victims, there is a clear espionage goal, with the group trying to gather information that can provide the Chinese government and state-owned enterprises with political, economic, and military advantages.

They have been mainly but not exclusively focusing on European and North American regions, and their activity has been publicly denounced on several occasions by governmental authorities. In 2021, the High Representative of the European Council published a declaration urging the Chinese authorities to take action against malicious cyber activities undertaken from its territory, more specifically, the compromise and exploitation of Microsoft Exchange servers attributed to “APT40” and APT31.

This activity was not limited to the European Union but extended worldwide, forcing other countries to join the accusation. Aside from this worldwide campaign against Exchange servers in early 2021, their espionage activity against specific countries in other European has also been denounced. APT31 has also been appointed guilty by Microsoft researchers for attacking high-profile individuals associated with the presidential election from 2020, including people associated with the Joe Biden for President campaign and prominent leaders in the international affairs community.

ShareTweet
Previous Post

#MIWIC2024: Samantha Humphries, Senior Director of International Security Strategy at Exabeam

Next Post

Acumen enters UK market offering expertise and market leading tooling to protect organisations against complex cyberattacks

Recent News

UK Museums Are a Cyber Incident Waiting to Happen and the Government Knows It

UK Museums Are a Cyber Incident Waiting to Happen and the Government Knows It

June 25, 2026
pqc

New Forescout Data Reveals Slow Progress Toward Quantum-Safe Security

June 24, 2026
AI-Powered Phishing Attacks Surge 1,380% as Criminal Platforms Render MFA Obsolete

AI-Powered Phishing Attacks Surge 1,380% as Criminal Platforms Render MFA Obsolete

June 24, 2026
Security Training Needs Google Maps, Not Christopher Columbus

Security Training Needs Google Maps, Not Christopher Columbus

June 24, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol