Huawei employing China-sponsored hackers: Research

Date:

Share post:

Security reports have alleged that the Chinese telecommunications company Huawei has been recruiting high-level operatives linked to China’s military and intelligence agencies, the express.co.uk reported.

According to Professor Christopher Balding, who conducted the research, around 100 Huawei’s employees had connections with the Chinese military and state-sponsored hacking operations. The professor described the employees as representatives of the Ministry of State Security (MSS) at Huawei. He also claimed that they’ve worked on “building lawful interception capability into Huawei equipment”.

“Huawei’s co-founder Ren Zhengfei held a senior position within China’s People’s Liberation Army (PLA) before starting the company,” Balding said in a media statement.

Recently, security researchers from cybersecurity firm Swascan revealed that they have discovered multiple vulnerabilities in Huawei’s Web Application and Servers. Swascan stated cybercriminals can exploit the critical vulnerabilities to access sensitive information. The research team said they’ve identified three vulnerabilities that could impact regular operations if exploited.

According to Swascan, the three discovered flaws in Huawei’s web applications include: CWE-119 (Improper Restriction on Memory Buffer) — The hacker can access the memory and can possibly execute malicious codes. CWE-125 (Out-of-bounds Read) — This flaw allows an attacker to read sensitive information. CWE-78 (OS Command Injection) — The attackers can use this flaw to execute unauthorized commands to crash the software and access the restricted data.

Subscribe

Name(Required)
Privacy(Required)

Upcoming Events

Related articles

CyberSec Delhi Conference 2026

Securing India’s Power, Defence, Manufacturing & Industrial Ecosystems The CyberSec Delhi Conference 2026 will bring together policymakers, government stakeholders,...

SBOM, VEX, and AI: Dr. Allan Friedman on the Future of Software Supply Chain Security

A conversation on why software transparency is no longer optional, and how AI is about to make it...

Model-Borne Consequence: Why OT Security and Data Security Just Became the Same Job

For thirty years we told you industrial cybersecurity was fundamentally different from IT cybersecurity. We were right. Then...

Truth, Transparency, and a Subpoena: Inside TikTok’s Security Crisis with Roland Cloutier

How the former ByteDance CISO led a 3-billion-user platform through congressional hearings, an international ban threat, and the...