YouTube home Comedy Week on YouTube
Upload
Next video in 1 Next video in 2 Next video in 3 Next video in 4 Next video in 5
Uploaded videos by MandiantCorp
Pause Resume
Next video in 1 Next video in 2 Next video in 3 Next video in 4 Next video in 5
Uploaded videos by MandiantCorp
2/29
  1. 1 Mandiant MIRcon Conference by MandiantCorp
  2. APT1: Exposing One of China's Cyber Espionage U... by MandiantCorp
  3. 3 Mandiant in the Headlines by MandiantCorp
  4. 4 Grady Summers on MIRcon 2012 by MandiantCorp
  5. 5 Richard Bejtlich on MIRcon 2012 by MandiantCorp
  6. 6 Mandiant Intelligent Response® (MIR) Integratio... by MandiantCorp
  7. 7 Mandiant Video Series - Overview by MandiantCorp
  8. 8 M-Trends #6 -- It Pays To Be Persistent: Financ... by MandiantCorp
  9. 9 M-Trends #5 -- Some Assembly Required by MandiantCorp
  10. 10 Mandiant M-Trends #4 -- Merger & Acquisition Is... by MandiantCorp
  11. 11 Mandiant M-Trends #3 -- RATs! Increasing Use of... by MandiantCorp
  12. 12 Mandiant M-Trends #2: Everything Old Is New Again by MandiantCorp
  13. 13 Mandiant M-Trends #1: Malware Only Tells Half t... by MandiantCorp
  14. 14 Mandiant Video Series - Product & Solutions Ove... by MandiantCorp
  15. 15 Mandiant Video Series - Incident Response Overview by MandiantCorp
  16. 16 Mandiant Video Series - Anatomy of a Cyber Attack by MandiantCorp
  17. 17 PdbXtract Demo - Part I: Interface Overview by MandiantCorp
  18. 18 PdbXtract Demo - Part II: Exporting Type Info T... by MandiantCorp
  19. 19 PdbXtract Demo - Part III: Using Pdbfetch to Cr... by MandiantCorp
  20. 20 MIRcon Oktoberfest Interview ft. Victoria Ferguson by MandiantCorp
  21. 21 MIRcon Oktoberfest Interview ft. Phil Sides by MandiantCorp
  22. 22 MANDIANT MIRcon 2011 by MandiantCorp
  23. 23 Black Hat Course - Malware Analysis: Black Hat ... by MandiantCorp
  24. 24 Black Hat Course - Incident Response: Black Ha... by MandiantCorp
  25. 25 Black Hat Course: Advanced Malware Analysis by ... by MandiantCorp
  26. 26 Incident Response.mp4 by MandiantCorp
  27. 27 Intelligent Response.mp4 by MandiantCorp
  28. 28 Managed Services.mp4 by MandiantCorp
  29. 29 Mandiant Overview.mp4 by MandiantCorp
 

APT1: Exposing One of China's Cyber Espionage Units

MandiantCorp MandiantCorp·29 videos
872
439,667
Like     Dislike 70

Sign in to YouTube

Sign in with your Google Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to like MandiantCorp's video.

Sign in to YouTube

Sign in with your Google Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to dislike MandiantCorp's video.

Sign in to YouTube

Sign in with your Google Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to add MandiantCorp's video to your playlist.

Published on Feb 18, 2013

This video shows actual attacker sessions and intrusion activities conducted by one specific Advanced Persistent Threat (APT) group, which Mandiant has named APT1. This group has systematically stolen confidential data from at least 141 organizations across multiple industries. A full report, published by Mandiant, details APT1's multi-year cyber espionage campaign and is available at www.mandiant.com/apt1.

Correction: At :44 in the video, the narrator states the phone number is 159 2193 7729. However, as the video shows, the true phone number is 159 2193 7229.

Loading icon Loading...

Loading icon Loading...

Loading icon Loading...

The interactive transcript could not be loaded.

Loading icon Loading...

Loading icon Loading...

Ratings have been disabled for this video.
Rating is available when the video has been rented.
This feature is not available right now. Please try again later.

Top Comments

  • heshhh88

    I have no idea whats going on and it terrifies me

    · 10

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate heshhh88's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate heshhh88's comment.
  • sylvafeyth

    Quite simply... they hacked him. Probably baited him/her into downloading content, on an already compromised machine, that was seemingly promising but was in fact a "backdoor" they could use to compromise his system. Once that happens they can eventually gain control of his system to include viewing his login session. Which is what they were doing in that video...

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate sylvafeyth's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate sylvafeyth's comment.
    in reply to binaryD3struct0r (Show the comment)

All Comments (611)

Sign in now to post a comment!
  • Big Elmo

    If you are interested in Cyber Security, join the facebook page

    facebook /pages/Global-Cyber-Security-N­etwork/568770576496102

    They have really good cyber security articles!

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate Big Elmo's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate Big Elmo's comment.
  • clickandtreatpets

    So he uses a chinese mobile number to verify his account...mistake #1.

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate clickandtreatpets's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate clickandtreatpets's comment.
  • binaryD3struct0r

    Question 1: How did you guys identify the points of compromise (the hops) indicated in the report and obtain the IP addresses to which you traced to the Pudong New area in Shanghai?

    Question 2: How did you guys access the Gmail inbox of the hacker you identified as DOTA (pg 57)?

    I do not see these details included in the report.

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate binaryD3struct0r's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate binaryD3struct0r's comment.
  • appelflapify

    thats dumb, if you dont know whats going on you dont know what to fear or not to fear...

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate appelflapify's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate appelflapify's comment.
    in reply to heshhh88 (Show the comment)
  • VOODOOphg

    what do you want me to say?... :)

    ------

    I want you to admit that you have absolutely no evidence that China **IS NOT** hacking American companies and transferring American technology to Govt. owned "private" industry in China. This report as well as hundreds of other show evidence of the Chinese Govt. being directly involved in the hacking attacks. Admit that the Chinese Govt. *IS* involved in corporate espionage on a massive scale.

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate VOODOOphg's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate VOODOOphg's comment.
    in reply to hahahaffffffffff (Show the comment)
  • hahahaffffffffff

    US can point their fingers on any countries, actually it's not because US is always correct and other countries are always wrong. The reason is obvious: US is the only superpower in the world. US invaded Iraq with the excuse of nuclear weapons in Iraq, and it turned out there isn't any at all. Did US ever apologize? I just wish US won't use Mandiant's report as an excuse to invade China...

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate hahahaffffffffff's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate hahahaffffffffff's comment.
    in reply to VOODOOphg (Show the comment)
  • hahahaffffffffff

    If you looked back into last 2 decades, among almost all of the wars in the world, Libya, Iraq, Kosovo, Afganistan, Syria, etc, there was the US goverment. Just think about why?... you might ask, why didn't Kosovo invaded the US? why didn't Iraq invaded the US? ... interesting question. Everyone knows that US the only superpower in the world, they can attack any countries they want to attack. But how can a small country attack US? They can not. It's the same in Cybercrime area.

    ·

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate hahahaffffffffff's comment.

    Sign in to YouTube

    Sign in with your YouTube Account (YouTube, Google+, Gmail, Orkut, Picasa, or Chrome) to rate hahahaffffffffff's comment.
    in reply to VOODOOphg (Show the comment)
  • Loading comment...
Loading...
Loading...
Working...
Sign in to add this to Watch Later