Chinese hackers spied on Europeans before G20 meeting: researcher
(Reuters) - Chinese hackers eavesdropped on the computers of five European foreign ministries before last September's G20 Summit, which was dominated by the Syrian crisis, according to research by computer security firm FireEye Inc
Context & Ripple Effects
FireEye's finding lands in a year when summit diplomacy was already exposed as a surveillance venue from inside: the Guardian reported in June 2013 that GCHQ had intercepted foreign politicians' communications at G20 summits. What is new here is the direction of the spying — not a summit host monitoring guests, but Chinese hackers eavesdropping on five European foreign ministries ahead of the September meeting dominated by the Syrian crisis.
It also fits a pattern the security industry has been building all year: back in January 2013, researchers documented a five-year spy operation targeting governments, and it is commercial firms like FireEye — not government agencies — making the attributions public. The pickup by the New York Times, The Register, Softpedia and SlashGear shows how far the story travelled within a day of publication.
First-order effects
- The five affected European foreign ministries now have to treat their pre-summit negotiating positions on Syria as compromised, and audit whether the intrusion extended past the September G20 window.
- FireEye converts the research into market positioning: naming Chinese state-linked activity against Western diplomats puts it alongside the incident-response firms that governments increasingly rely on for attribution they will not do themselves.
Second-order effects
- European chancelleries under scrutiny — already stung by the GCHQ summit-interception reporting — face pressure to harden diplomatic communications ahead of multilateral meetings, shifting procurement toward encrypted and out-of-band channels.
- Beijing's standing denials collide with a steady drip of vendor-attributed reports, giving European capitals material to raise cyber-espionage bilaterally without having to declassify their own intelligence.
Third-order effects
- If vendor-published attribution keeps setting the agenda, the disclosure pipeline for state espionage runs through companies like FireEye rather than foreign ministries — changing who controls the timing and framing of diplomatic incidents.
- Summit diplomacy structurally adjusts to the assumption that both hosts and rival states surveil participants, pushing sensitive negotiation off the record and out of ministry networks altogether.
The trend: State espionage against diplomatic targets is increasingly surfaced and attributed by commercial security vendors rather than governments, forcing summit diplomacy to assume hostile surveillance as a default condition.