Share

China blasts Google over security move

Beijing - A Chinese cyberspace bureau on Thursday denounced Google for deciding not to recognise the agency's authority after a Beijing-linked security breach, calling the US internet giant's action "unacceptable and unintelligible".

The reprimand from the China Internet Network Information Centre (CNNIC) came after Google said the agency was implicated in an online security vulnerability and the firm was revoking its trust in its internet certificates.

"The decision that Google has made is unacceptable and unintelligible to CNNIC, and meanwhile CNNIC sincerely urge that Google would take users' rights and interests into full consideration," CNNIC said in a statement posted on its website.

The row marks the latest escalation of tensions between Beijing and Google.

The California-based tech firm withdrew from China in 2010 over censorship issues, and the two have continued to have a turbulent relationship, with Beijing moving in 2014 to fully block Google's hugely popular Gmail service.

China operates the world's most extensive and sophisticated internet censorship system, known as the "Great Firewall".

Evidence

A Google security engineer wrote on the company's online security blog last week that CNNIC and a firm called MCS Holdings had been found to have issued "unauthorised digital certificates for several Google domains".

The "misissued certificates would be trusted by almost all browsers and operating systems", he said, describing the resulting vulnerability as a "serious breach" of the internet certificate authority system.

Microsoft and Mozilla, owner of the popular Firefox web browser, also announced they were revoking trust in all MCS certificates.

The Google posting was updated on Wednesday to note that CNNIC's certificates "will no longer be recognised in Google products" adding that the Chinese organisation was "welcome... to reapply once suitable technical and procedural controls are in place".

An anti-censorship group, GreatFire.org - which has accused Beijing of attacking its services - said the original revelation was evidence that CNNIC had been "complicit" in so-called man-in-the-middle operations.

Such attacks involve an unauthorised intermediary inserting themselves between computer users and their online destinations, usually undetected, allowing them to harvest data including passwords.

CNNIC has denied that it was directly involved and said the incident took place when MCS Holdings "improperly issued" certificates that were "only used for internal tests in its laboratory, which is a protected environment".

China's foreign ministry also dismissed the accusations, with spokesperson Hua Chunying telling reporters that "all parties should abandon accusing each other without proof".

Beijing frequently describes itself as a victim of hacking.

We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Rand - Dollar
19.01
+1.1%
Rand - Pound
23.79
+0.7%
Rand - Euro
20.40
+0.8%
Rand - Aus dollar
12.40
+0.7%
Rand - Yen
0.12
+1.2%
Platinum
925.50
+1.5%
Palladium
989.50
-1.5%
Gold
2,331.85
+0.7%
Silver
27.41
+0.9%
Brent-ruolie
88.02
-0.5%
Top 40
68,437
-0.2%
All Share
74,329
-0.3%
Resource 10
62,119
+2.7%
Industrial 25
102,531
-1.5%
Financial 15
15,802
-0.2%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders