New IE7 exploit linked to possible China v Tibet attacks
While reading about a new IE7 exploit being used in the wild, I stumbled across this reference to possible further political attacks originating from China. As we have covered here in the past. Including the paper “When Dragons Attack”.
Yaneza and Ferguson speculated that the current attacks are precursors to a much larger assault that will revive a campaign that tempted users with news about Tibet. Those attacks, which Trend Micro reported in January 2008, share some characteristics with the newest exploits, including malware disguised as Word documents. Yaneza also said that it appears as though the hacker’s command-and-control server is based in China, lending more credence to their theory.
“This is the 50th anniversary of the Tibetan freedom movement,” said Ferguson, who said it’s likely that a large-scale attack based on this exploit would use that news as bait. In 1959, when the People’s Republic of China took full control of Tibet, the Dali Lama fled to India, where he is the head of a Tibetan government-in-exile.


