{"id":17039,"date":"2019-11-28T10:52:28","date_gmt":"2019-11-28T18:52:28","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2019\/11\/28\/news-10775\/"},"modified":"2019-11-28T10:52:28","modified_gmt":"2019-11-28T18:52:28","slug":"news-10775","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2019\/11\/28\/news-10775\/","title":{"rendered":"VB2019 paper: A vine climbing over the Great Firewall: a long-term attack against China"},"content":{"rendered":"<p>The global nature of both the <em>Virus Bulletin<\/em> conference and APT threats was highlighted by a VB2019 paper from Lion Gu and Bowen Pan from the Qi An Xin Threat Intelligence Center in China.<\/p>\n<p>In their paper, the researchers analysed an APT group dubbed &#8216;Poison Vine&#8217;, which targeted various government, military and research institutes in China. This group, whose activities go back almost 12 years, doesn&#8217;t use particularly advanced techniques and relies on publicly available RATs and patched vulnerabilities. The researchers don&#8217;t comment on the group&#8217;s origins, but note the use of traditional Chinese and an interest in Cross-Strait relations.<\/p>\n<p>Today we publish the researchers&#8217; paper in both <a title=\"VB2019 paper: A vine climbing over the Great Firewall: a long\u2011term attack against China\" href=\"https:\/\/www.virusbulletin.com\/virusbulletin\/2019\/11\/vb2019-paper-vine-climbing-over-great-firewall-longterm-attack-against-china\/\">HTML<\/a> and <a href=\"https:\/\/www.virusbulletin.com\/uploads\/pdf\/magazine\/2019\/VB2019-Pan-Gu.pdf\" target=\"_blank\">PDF <\/a>format. We have also uploaded the video of Bowen&#8217;s VB2019 presentation to our <em>YouTube<\/em> channel.<\/p>\n<p>\u00a0<\/p>\n<p>\u00a0<\/p>\n<p style=\"text-align: center;\" width=\"100%\" height=\"420\"><iframe loading=\"lazy\" src=\"https:\/\/www.youtube.com\/embed\/39zEYECiu40\" frameborder=\"0\" width=\"100%\" height=\"420\" style=\"\"> <\/iframe><\/p>\n<p>\u00a0<\/p>\n<p>outertext<br \/><a href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/11\/vb2019-paper-vine-climbing-over-great-firewall-long-term-attack-against-china\/\" target=\"bwo\" >https:\/\/www.virusbulletin.com\/rss<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>                                 Today we publish a VB2019 paper from Lion Gu and Bowen Pan from the Qi An Xin Threat Intelligence Center in China in which they analysed an APT group dubbed &#8216;Poison Vine&#8217;, which targeted various government, military and research institutes in China.                <\/p>\n<p>                 <a href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/11\/vb2019-paper-vine-climbing-over-great-firewall-long-term-attack-against-china\/\">Read more<\/a>                                <\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[23177,10378,23176],"tags":[],"class_list":["post-17039","post","type-post","status-publish","format-standard","hentry","category-magazine","category-security","category-virusbulletin"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/17039","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=17039"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/17039\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=17039"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=17039"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=17039"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}