Northwestern Polytechnical University (NPU), a leading Chinese aviation university, China was targeted by the cyber attack.
Internal documents obtained by the hacker collective "Shadow Brokers" claim that SecondDate is a cyberweapon created by the NSA.
Target network border devices like gateways, firewalls, and edge routers are where it is primarily implemented. As necessary, it selectively redirects, intercepts, and manipulates particular network sessions while discreetly monitoring online traffic.
The Chinese government emphasizes the importance of bolstering cybersecurity and raising public awareness of this issue.
Source: https://www.globaltimes.cn/page/202309/1298164.shtml
TPRM report: https://scoringcyber.rankiteo.com/company/npu-international-college
"id": "npu11818923",
"linkid": "npu-international-college",
"type": "Cyber Attack",
"date": "09/2023",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Aviation and Aerospace',
'location': 'China',
'name': 'Northwestern Polytechnical University',
'type': 'Educational Institution'}],
'attack_vector': 'Network',
'description': 'Northwestern Polytechnical University (NPU), a leading '
'Chinese aviation university, was targeted by a cyber attack. '
"Internal documents obtained by the hacker collective 'Shadow "
"Brokers' claim that SecondDate is a cyberweapon created by "
'the NSA. It is primarily implemented on target network border '
'devices like gateways, firewalls, and edge routers. It '
'selectively redirects, intercepts, and manipulates particular '
'network sessions while discreetly monitoring online traffic. '
'The Chinese government emphasizes the importance of '
'bolstering cybersecurity and raising public awareness of this '
'issue.',
'impact': {'systems_affected': ['gateways', 'firewalls', 'edge routers']},
'lessons_learned': 'The Chinese government emphasizes the importance of '
'bolstering cybersecurity and raising public awareness of '
'this issue.',
'motivation': 'Espionage',
'references': [{'source': 'Internal documents obtained by the hacker '
"collective 'Shadow Brokers'"}],
'threat_actor': 'Shadow Brokers',
'title': 'Cyber Attack on Northwestern Polytechnical University',
'type': 'Cyber Attack'}