43

cross-posted from: https://scribe.disroot.org/post/2653687

Archived version

Hackathons are common, but Chinese hacking competitions are different.

...

In 2017, Zhou Hongyi, the founder of Chinese cybersecurity giant Qihoo 360, publicly criticised the practice of sharing vulnerability discoveries internationally, arguing that such strategic assets should stay within China. His sentiments, supported by the Chinese government, gave birth to the national hacking competition called the Tianfu Cup. The contest is focused on discovering vulnerabilities in global tech products like Apple iOS, Google’s Android, and Microsoft systems.

How is Tianfu Cup different?

A 2018 rule mandates participants of the Tianfu Cup to hand over their findings to the government, instead of the tech companies.

Dakota Cary, a China-focused consultant at the US cybersecurity company SentinelOne, said, “In practice, this meant vulnerabilities were passed to the state for use in operations.”

This approach effectively turned hacking competitions into a government pipeline for acquiring zero-day vulnerabilities — software flaws unknown to vendors and extremely valuable for cyber-espionage.

...

In recent years, China’s hacking competitions have increasingly shifted focus toward breaching domestic products, including Chinese-made electric vehicles, phones, and security software.

...

you are viewing a single comment's thread
view the rest of the comments
[-] Samskara@sh.itjust.works 3 points 2 months ago

For some it's an ambition, but not a priority. Germany simply doesn't pay skilled people enough to serve as cyber soldier.

[-] Maeve@kbin.earth 1 points 2 months ago

How does mandatory armed or civil service fit into this model?

[-] Samskara@sh.itjust.works 3 points 2 months ago

It could help. Mandatory service typically gets you young people straight from school. That means you need to train them. To be good at cybersecurity and cyber warfare takes years though. Not something you can teach over the course of a year of service.

[-] Maeve@kbin.earth 0 points 2 months ago

If they get them straight from Gymnasium, there's still time to pound the whole "love of country/fellow countrymen,” too. I don't know because current generations are leaning alarmingly right.

[-] Samskara@sh.itjust.works 1 points 2 months ago

love of country/fellow countrymen

Germany is still far below the patriotism of France or Poland. Some adjustment towards their levels of patriotism is about time.

[-] Maeve@kbin.earth 1 points 2 months ago

Patriot is a fancy way of saying nationalist, nowadays. But there's no reason not to have a love of country/fellow citizens. Or global citizens. And that doesn't preclude defense.

this post was submitted on 04 May 2025
43 points (92.2% liked)

Cybersecurity

7940 readers
8 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 2 years ago
MODERATORS