China's Cyber Dirty Tricks: From Google Calendar Hacks to Solar Spies, Beijing Plays Dirty episode artwork

EPISODE · May 29, 2025 · 4 MIN

China's Cyber Dirty Tricks: From Google Calendar Hacks to Solar Spies, Beijing Plays Dirty

from Cyber Sentinel: Beijing Watch · host Inception Point AI

This is your Cyber Sentinel: Beijing Watch podcast. Welcome back to Cyber Sentinel: Beijing Watch. I’m Ting – your favorite byte-sized guide to China’s cyber arsenal. Forget the firewall, it’s time to break down the latest moves by the Middle Kingdom in cyberspace. Ready for a rapid download? Let’s get into the code. First, APTs in the wild – specifically, APT41 and APT31. Just yesterday, the Google Threat Intelligence Group flagged Chinese hackers leveraging Google Calendar as a command-and-control (C2) channel. That’s right: while you’re planning your dentist appointment, APT41 was scheduling payload drops to compromise government networks. This creative use of a ubiquitous cloud tool makes detection trickier and illustrates China’s penchant for blending routine digital life with covert ops. Google’s countermeasures are now in play, but the cat-and-mouse continues. Meanwhile, Czech authorities just fingered APT31 for a 2022 hack into their Foreign Affairs Ministry. Not only is this a breach of the U.N.’s cyber norms, but it’s also a wake-up call: Beijing’s state-backed teams are still actively probing diplomatic targets for geopolitical advantage. Zooming out, let’s talk tactics. Chinese cyber actors are escalating use of “living off the land” approaches – abusing legitimate software and third-party infrastructure to avoid easy detection. That Google Calendar trick? Just one flavor. Another recent scare: authorities uncovered rogue communication modules inside Chinese-made solar power inverters, reportedly capable of bypassing network firewalls. This could open backdoors into U.S. energy infrastructure and enable stealthy disruptions, underscoring the cyber-physical risk at play. Targeted sectors this week are textbook: critical infrastructure (hello, Salt Typhoon and Volt Typhoon), government, and supply chain operators. The U.S. Department of Homeland Security, in a heated budget review with Secretary Kristi Noem, warned about “the most sophisticated and sustained hacking operations we have ever seen,” including intrusions that still haunt our collective memory—remember the Colonial Pipeline shutdown? Attribution’s getting clearer, too. Experts like Mark Green and Tom Kellermann are openly naming Chinese government-backed groups, and the evidence—ranging from TTPs to C2 infrastructure and circumstantial behavior—keeps stacking up. Observers note a correlation between spikes in cyber activity and U.S.-China trade tension, especially as tariff negotiations ramp up. Cyber is the new frontline, replacing old-school trade war tactics. Internationally, there’s louder diplomatic pushback. The Czech Republic and EU states are denouncing Chinese intrusions, while the U.S. pivots to address half a million unfilled cyber jobs—a glaring vulnerability. So, what’s the updated cyber hygiene prescription? For defenders: assume breach, tighten identity and access management, watch for abuse of cloud services, and drill your supply chain for hidden har This content was created in partnership and with the help of Artificial Intelligence AI.

Episode metadata supplied by the publisher feed · Published May 29, 2025

Embed this episode

NOW PLAYING

China's Cyber Dirty Tricks: From Google Calendar Hacks to Solar Spies, Beijing Plays Dirty

0:00 4:16

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

Frequently Asked Questions

How long is this episode of Cyber Sentinel: Beijing Watch?

This episode is 4 minutes long.

When was this Cyber Sentinel: Beijing Watch episode published?

This episode was published on May 29, 2025.

Can I download this Cyber Sentinel: Beijing Watch episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!