Donate for DVDs of the Cryptome archive of 70.000 files from 1996 to the present

 


20 February 2013

Mandiant Report "APT1 -- Exposing One of China’s Cyber Espionage Units"

http://intelreport.mandiant.com/

KEY FINDINGS

APT1 is believed to be the 2nd Bureau of the People's Liberation Army (PLA) General Staff Department's (GSD) 3rd Department, which is most commonly known by its Military Unit Cover Designator (MUCD) as Unit 61398.

The nature of Unit 61398's work is considered by China to be a state secret; however, we believe it engages in harmful Computer Network Operations.

Unit 61398 is partially situated on Datong Road in Gaoqiaozhen, which is located in the Pudong New Area of Shanghai. The central building in this compound is a 130,663 square foot facility that is 12 stories high and was built in early 2007.

We estimate that Unit 61398 is staffed by hundreds, and perhaps thousands of people based on the size of Unit 61398's physical infrastructure.

China Telecom provided special fiber optic communications infrastructure for the unit in the name of national defense.

Unit 61398 requires its personnel to be trained in computer security and computer network operations and also requires its personnel to be proficient in the English language.

Mandiant has traced APT1's activity to four large networks in Shanghai, two of which serve the Pudong New Area where Unit 61398 is based.


PRC Unit 61398

Bing.com/maps http://binged.it/ZhKYUG

[Image]

[Image]

[Image]

Google Earth http://goo.gl/maps/x3Bd6

http://maps.google.com/?ll=31.3493,121.57357&spn=0.00372,0.005466&t=h&z=18

April 4, 2012

[Image]

[Image]

[Image]

August 9, 2011

[Image]

August 12, 2010

[Image]

January 24, 2010

[Image]

December 19, 2009

[Image]

March 25, 2009

[Image]

April 24, 2008

[Image]

November 11, 2006

[Image]

August 13, 2006

[Image]

February 14, 2004

[Image]