9 months ago
China Cybersecurity Firm KnownSec Breached, Indian Data Exposed
Imagine a detective agency in China that helps the government with computer security.
This agency, called KnownSec, had a big secret vault of information.
Someone broke into this vault and stole many secret files.
Some of these stolen files contained a lot of information about people who have come in and out of India, like a digital guest list.
There were also maps showing how important computer systems in India work.
The people who found the stolen files say this shows how China might be spying on other countries.
China says this didn't happen.
This event is a reminder for countries like India to protect their computer information even better.
Cybersecurity firm KnownSec, known for its collaboration with Chinese government agencies, has reportedly been breached.
Over 12,000 internal documents were leaked, including blueprints for malware, attack tools, and programmes to access chat histories.
Data allegedly includes 95 gigabytes of Indian immigration records and digital infrastructure maps, possibly stolen in 2024.
The breach is seen by experts as a revelation of China's offensive cyber capabilities and the role of private firms in state operations.
China has officially denied the reports, calling them 'groundless', and no ransom demand was associated with the leak.
- Who
- Chinese cybersecurity firm KnownSec
- What
- Breached, leading to the exposure of internal documents including Indian immigration data and digital infrastructure maps.
- Where
- On KnownSec's servers, with leaked files appearing on GitHub and dark web forums.
- When
- Earlier this month (implying recent discovery, data potentially stolen in 2024)
- Why
- Motive speculated to be non-financial, possibly an insider job or ideological actor, revealing China's cyber capabilities.
Allegations of Chinese Data Access
China's Official Stance
Access to Indian Data
Allegations of Chinese Data Access
The cybersecurity firm KnownSec, which collaborates with Chinese government agencies, was breached, exposing over 12,000 internal documents. These files reportedly included 95 gigabytes of Indian immigration data, digital infrastructure maps, and evidence of Chinese interest in Indian government networks and border systems. The data may have been stolen in 2024.
China's Official Stance
China has officially denied reports of the breach, calling them 'groundless'. KnownSec has not issued a public statement regarding the incident.
Motive for the Breach
Allegations of Chinese Data Access
Cybersecurity experts suggest the breach was not financially motivated due to the absence of a ransom demand. Possible motives include an insider job or an ideological actor, providing a rare glimpse into China's offensive cyber capabilities and the role of private firms in state-directed operations.
China's Official Stance
China's official denial implies a lack of acknowledgment of any specific motive or incident, leaving the attribution and intent open to speculation from external observers.
Key facts
- Breached Firm
- KnownSec (Beijing Zhidao Chuangyu Information Technology Co., Ltd)
- Founded
- 2007
- Known Products
- ZoomEye internet scanning engine
- US Blacklisting
- January 2024 (by US Department of Defense)
- Reported Leaked Data Size
- Over 12,000 internal documents, including 95 GB of Indian immigration data
- Prominent Targeted Regions/Countries
- India, Japan, Vietnam, Indonesia, UK, Asia, Europe, Africa
Quotes
A government source
An unnamed Chinese government representative
“groundless”
wionews.com





