Malware broker behind US hacks is now teaching computer skills in China | The Business Standard
Skip to main content
  • Epaper
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
The Business Standard

Thursday
May 15, 2025

Sign In
Subscribe
  • Epaper
  • Economy
    • Aviation
    • Banking
    • Bazaar
    • Budget
    • Industry
    • NBR
    • RMG
    • Corporates
  • Stocks
  • Analysis
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
THURSDAY, MAY 15, 2025
Malware broker behind US hacks is now teaching computer skills in China

World+Biz

Reuters
24 December, 2019, 06:55 pm
Last modified: 24 December, 2019, 07:02 pm

Related News

  • Gazette on 'Cyber Safety Ordinance' end of this month: Faiz
  • Nation-state cyber attacks: Are you at risk?
  • Bangladesh's new digital laws under scrutiny
  • Crypto exchange Bybit loses $1.5 billion in record hack
  • Draft CSO: Clause letting cops search devices sans warrant dropped, ICT secretary says

Malware broker behind US hacks is now teaching computer skills in China

Yu Pingan, who spent 18 months in a San Diego federal detention center, had pleaded guilty to conspiracy to commit computer hacking

Reuters
24 December, 2019, 06:55 pm
Last modified: 24 December, 2019, 07:02 pm
Representational image. Picture: Collected
Representational image. Picture: Collected

A Chinese malware broker who was sentenced in the United States this year for dealing in malicious software linked to major hacks is back at his old workplace: teaching high-school computer courses, including one on internet security.

Yu Pingan, who spent 18 months in a San Diego federal detention center, had pleaded guilty to conspiracy to commit computer hacking. A high school instructor, he had been arrested at Los Angeles International Airport in August 2017 upon arriving with a group of teachers to observe a US university. A Reuters reporter found him teaching at his old school here last month.

Yu was sentenced by a federal judge in February to time served and allowed to return to China. The victims of the hacking conspiracy included microchip supplier Qualcomm Inc, aerospace and defense firm Pacific Scientific Energetic Materials Co, and gaming company Riot Games, according to the judgment. Exactly what was stolen in the computer breaches wasn't disclosed in public court filings.

The Business Standard Google News Keep updated, follow The Business Standard's Google news channel

Qualcomm declined to comment. A Riot Games spokesman said the company lost no data. Pacific Scientific didn't respond to requests for comment.

Yu specializes in computer network security and programming, according to court records. The malware he provided in the conspiracy included a rare software tool called Sakula that granted hackers remote control over computers. It's unclear who authored the malware or how Yu obtained it.

Sakula has been linked to some of the most notorious cyber attacks of the decade. In addition to the intrusions detailed in the case against Yu, these include hacks of US health insurer Anthem Inc, where millions of patient records were exposed, and the US Office of Personnel Management, in which the personal information of millions of current and former US government employees and contractors was compromised. Yu wasn't accused of involvement in those two breaches.

His prosecution was one of a series of criminal cases against Chinese nationals Washington has brought in recent years, in response to what the Americans say is a concerted campaign by China's military and security ministry to steal technology from Western companies.

In another case involving Sakula malware, the US last year alleged that two Chinese intelligence officers and a team of recruited hackers repeatedly intruded into Western companies' computer systems for more than five years.

Many of the Chinese defendants in the series of hacking cases haven't been apprehended. Yu is one of the few alleged Chinese hackers to have been arrested and convicted in the US crackdown.

In addition to jail time, Yu was ordered to pay nearly $1.1 million in restitution to five companies that were victims of the hacking. The fine was to be paid in installments of $100 a month, with no interest, according to the judgment. The payment schedule would take more than 900 years to complete.

Jeremy Warren, a San Diego criminal defense attorney who represented Yu, said: "With a Chinese national, a school teacher, there's no real expectation of payment."

Yu's 18 months in federal prison, he said, was no "walk in the park."

China's Ministry of Foreign Affairs said it had "no understanding" of the Yu case. "We resolutely oppose any type of cyber attack, and we investigate and crack down on any cyber attack occurring inside China or making use of Chinese internet infrastructure," the ministry spokesperson's office said.

The ministry added that it had no knowledge of other cases alleging Chinese hacking of US companies, and it accused Washington of displaying a "cold war mentality" in its tech-related prosecutions.

Yu, according to court filings by US prosecutors, went by the nickname "Goldsun." He was accused of conspiring with other Chinese individuals to use malware to hack into the computer networks of companies in the US and elsewhere.

An affidavit from Federal Bureau of Investigation Special Agent Adam James alleged that Yu provided Sakula and other malware used in the case. Citing seized communications between Yu and two unindicted co-conspirators, James alleged that Yu had installed "an unauthorized backdoor" on an unidentified company's computer network to gain remote access.

The conspirators' cyber intrusions included so-called "watering hole attacks," in which malicious software infects the computers of visitors to compromised websites. "This is akin to a predator waiting to ambush prey at the location the prey goes to drink water," a court document stated.

Last month, Reuters found Yu, who is 39, teaching at Shanghai Commercial School, a state-run vocational technical high school in central Shanghai. US officials told Reuters that Yu had been teaching there prior to his arrest.

Digital signs outside classrooms indicated Yu was teaching at least two basic computer courses, including one called "Basic English for Internet Security." One of his former students, a computer science major who is now in China's military, said he couldn't answer questions about Yu because of "political reasons" and that the school had instructed him not to discuss the matter.

On Nov. 1, a Reuters reporter saw Yu at an office on the school's campus. Dressed in a red and blue plaid Oxford shirt, he declined to answer questions. Yu called a school official, who arrived with a security guard and escorted the reporter off the campus. The school official called Yu's situation a private matter.

"It's his own experience, and it has nothing to do with the school," she said.

Top News

Cyber Security / malware / Hacking

Comments

While most comments will be posted if they are on-topic and not abusive, moderation decisions are subjective. Published comments are readers’ own views and The Business Standard does not endorse any of the readers’ comments.

Top Stories

  • Shift to market-based exchange rate regime – what does it mean for the economy?
    Shift to market-based exchange rate regime – what does it mean for the economy?
  • A JnU student announcing an indefinite sit-in programme over three-point demand at Kakrail in Dhaka on 14 May night. Photo: Sakhawat Prince/TBS
    'Won't leave until demands met': JnU protesters announce indefinite sit-in at Kakrail over three-point demand
  • Naser Ezaz Bijoy. Sketch: TBS
    Now is an opportune moment to trial market-based exchange rate: StanChart CEO Bijoy

MOST VIEWED

  • Shahriar Alam Shammo. Photo: Collected
    3 arrested over JCD leader Shammo killing
  • Chief Adviser Muhammad Yunus speaking at Chittagong Port on 14 May 2025. Photo: CA Press Wing
    Ctg port must emerge as best with int'l standard facilities for economic growth: CA
  • Infograph: TBS
    Govt plans to align official land price with market rates
  • Infographics: TBS
    $3.5b loan unlocked with shift to market-based exchange rate
  • Chief Adviser Muhammad Yunus on a visit to Chattogram on 14 May 2025. Photo: TBS
    CA Yunus begins Chattogram tour with packed engagements
  • Shuchita Sharmin. File Photo: Courtesy
    Barishal University VC, pro-VC, treasurer removed in the face of student protest

Related News

  • Gazette on 'Cyber Safety Ordinance' end of this month: Faiz
  • Nation-state cyber attacks: Are you at risk?
  • Bangladesh's new digital laws under scrutiny
  • Crypto exchange Bybit loses $1.5 billion in record hack
  • Draft CSO: Clause letting cops search devices sans warrant dropped, ICT secretary says

Features

An old-fashioned telescope, also from an old ship, is displayed at a store at Chattogram’s Madam Bibir Hat area. PHOTO: TBS

NO SCRAP LEFT BEHIND: How Bhatiari’s ship graveyard still furnishes homes across Bangladesh

11h | Panorama
Sketch: TBS

‘National University is now focusing on technical and language education’

1d | Pursuit
Illustration: TBS

How to crack the code to get into multinational companies

1d | Pursuit
More than 100 trucks of pineapples are sold from Madhupur every day, each carrying 3,000 to 10,000 pineapples. Photo: TBS

The bitter aftertaste of Madhupur's sweet pineapples

1d | Panorama

More Videos from TBS

Mustafizur joins Delhi Capitals, but BCB unaware — will he get the NOC?

Mustafizur joins Delhi Capitals, but BCB unaware — will he get the NOC?

1d | TBS SPORTS
Are the murders of Samya and Parvez tied to the same thread?

Are the murders of Samya and Parvez tied to the same thread?

9h | Podcast
Trump urged the President of Syria to normalize relations with Israel.

Trump urged the President of Syria to normalize relations with Israel.

9h | TBS World
Record Gold Prices: Will You Invest or Risk Falling into Trouble?

Record Gold Prices: Will You Invest or Risk Falling into Trouble?

10h | Others
EMAIL US
contact@tbsnews.net
FOLLOW US
WHATSAPP
+880 1847416158
The Business Standard
  • About Us
  • Contact us
  • Sitemap
  • Advertisement
  • Privacy Policy
  • Comment Policy
Copyright © 2025
The Business Standard All rights reserved
Technical Partner: RSI Lab

Contact Us

The Business Standard

Main Office -4/A, Eskaton Garden, Dhaka- 1000

Phone: +8801847 416158 - 59

Send Opinion articles to - oped.tbs@gmail.com

For advertisement- sales@tbsnews.net