1
00:00:00,520 --> 00:00:03,439
Speaker 1: A Chinese national thirty three years of age, has been

2
00:00:03,480 --> 00:00:07,320
taken into CUSSY for his alleged involvement in US computer intrusions.

3
00:00:07,320 --> 00:00:11,679
Between February twenty twenty and June twenty twenty one, Chinese

4
00:00:11,720 --> 00:00:14,400
Ministry of State Security allegedly directed the theft of COVID

5
00:00:14,480 --> 00:00:19,879
nineteen Research and confidential information authorities took Public People's Republic

6
00:00:19,920 --> 00:00:23,879
of China national zeus Way into custody in Milan as

7
00:00:23,879 --> 00:00:26,519
he departed playing from China at the requests of the US.

8
00:00:27,039 --> 00:00:32,280
Zoo is charged with charge along with PRC national Zang Yu,

9
00:00:32,399 --> 00:00:35,560
who is now unsealed in nine on account indictment returned

10
00:00:35,560 --> 00:00:38,000
in November twenty twenty three. They were both involved in

11
00:00:38,000 --> 00:00:42,560
computer intrusions. The charges alleged MSS, which is Ministry of

12
00:00:42,640 --> 00:00:46,520
State Security, and Shanghai State Security Bureau, which are PRC

13
00:00:46,679 --> 00:00:52,840
intelligence services responsible for prtc's domestic counter intelligence and aspects

14
00:00:52,880 --> 00:00:55,439
of the PRC's political and domestic security. When conducting the

15
00:00:55,439 --> 00:00:59,799
computer intrusions, Zoo worked for Shanghai Power Rock Network, one

16
00:00:59,840 --> 00:01:02,920
of many enabling companies in the PRC that conducted hacking

17
00:01:03,439 --> 00:01:06,840
for the PRC government. The indictment alleges at Zoo was

18
00:01:06,879 --> 00:01:09,560
hacking and stealing crucial COVID nineteen research at the behests

19
00:01:09,560 --> 00:01:12,079
of the Chinese government, while the same government was simultaneously

20
00:01:12,079 --> 00:01:16,359
with holding information about the virus and its origins. The

21
00:01:16,519 --> 00:01:20,280
arrests underscores in the United States commitment to pursuing hackers.

22
00:01:20,319 --> 00:01:25,840
As the Assistant Attorney General, according to CORE documents, in

23
00:01:25,879 --> 00:01:28,200
early twenty twenties, U and his co conspirators hacked and

24
00:01:28,239 --> 00:01:32,519
otherwise targeted US based universities and leading immunologists and virologists,

25
00:01:32,560 --> 00:01:36,799
and conducting groundbreaking research into COVID nineteen vaccines, treatment, and testing.

26
00:01:36,840 --> 00:01:40,120
The charges alleged Zu and others reported their activities to

27
00:01:40,159 --> 00:01:42,879
officers in the Triple SB who were supervising and directing

28
00:01:42,879 --> 00:01:46,640
the hacking activities. For example, in February nine, twenty twenties,

29
00:01:46,719 --> 00:01:50,079
you allegedly provided an SSB officer with confirmation they had

30
00:01:50,079 --> 00:01:53,640
compromised the network of a research university located in Southern

31
00:01:53,680 --> 00:01:57,359
District of Texas. The officer directed you to target access

32
00:01:57,359 --> 00:02:01,000
specific email accounts belonging to virologists and theologists engage in

33
00:02:01,040 --> 00:02:05,159
COVID nineteen research. Beginning in late twenty twenty, Zu and

34
00:02:05,159 --> 00:02:09,240
his co conspirators exploited certain vulnerabilities in Microsoft Exchange Server

35
00:02:09,280 --> 00:02:12,199
and widely used Microsoft product for sending, receiving, and storing

36
00:02:12,240 --> 00:02:15,919
email messages. Their exploitation of it was allegedly at the

37
00:02:15,919 --> 00:02:19,159
forefront of a massive campaign targeting thousands of computers worldwide,

38
00:02:19,199 --> 00:02:24,080
known publicly as Halfnium. In March twenty twenty one, Microsoft

39
00:02:24,120 --> 00:02:27,639
publicly disclosed the intrusion campaign by state sponsored hackers operating

40
00:02:27,639 --> 00:02:30,639
out of China. The United States and foreign partners attributed

41
00:02:30,759 --> 00:02:34,039
the halfnium campaign to the PRC, which they in private

42
00:02:34,319 --> 00:02:39,919
sector cybersecurity leaders condemned as indiscriminate and reckless. The charges

43
00:02:39,919 --> 00:02:43,319
alleged victims of Zoo's exploitation of the server where a

44
00:02:43,400 --> 00:02:46,719
university located in Southern District of Texas in a law

45
00:02:46,759 --> 00:02:51,400
firm with offices worldwide, including in Washington, d C. After

46
00:02:51,439 --> 00:02:55,280
exploiting computers running the Microsoft Exchange Server, Zoo and his

47
00:02:55,360 --> 00:02:58,280
co conspirators allegedly installed webshells on them to enable their

48
00:02:58,319 --> 00:03:01,439
remote administration. These webs were specific to half of them

49
00:03:01,479 --> 00:03:04,199
actors at the time, as with the earlier COVID nineteen

50
00:03:04,280 --> 00:03:09,840
research intrusions, an example again in January of twenty twenty one,

51
00:03:10,080 --> 00:03:12,919
Zoo confirmed his zaying that he had compromised the university's network.

52
00:03:12,960 --> 00:03:16,719
According to the charges, an officer then directors due to

53
00:03:16,719 --> 00:03:19,639
obtain a list of other successful intrusions. The charges alleged

54
00:03:19,719 --> 00:03:23,039
unauthorized access to the law firms network, which allowed Zoo

55
00:03:23,080 --> 00:03:27,159
and co conspirats to steal information from mailboxes. So it

56
00:03:27,199 --> 00:03:29,319
was a big operation and you can read all about

57
00:03:29,319 --> 00:03:32,479
it the Justice dout gov website. But credible

