Counterfeit Chinese USB Drives Compromise Japan's Self-Defense Forces

Counterfeit Chinese USB Drives Compromise Japan's Self-Defense Forces

First seen 25 Jun 2026, 22:11 UTC Asia.NikkeiVisiontimes 83% similarity 72.5
Share:

Article Content

Browse articles
ThreatCluster

Japan's Ground Self-Defense Force used counterfeit USB drives infected with malware linked to Chinese hackers for nearly a year. The malicious software was discovered in February 2025 after personnel noticed abnormal computer performance. Six out of eight tested drives contained the same malware, affecting over 50 computers, many of which were connected to closed systems handling sensitive information. The counterfeit drives were labeled as 1TB but had only 240GB of actual storage. They were transferred during disaster relief operations in March 2024, and the original procurement records are no longer verifiable. The incident highlights a significant oversight in cybersecurity protocols, as antivirus software did not scan USB drives, allowing the malware to persist undetected. A U.S. cybersecurity firm confirmed that the malware is associated with known Chinese hacking groups.

Key Points: • Counterfeit USB drives used by Japan's Self-Defense Forces contained malware linked to China. • Malware went undetected for nearly a year, affecting over 50 computers with sensitive data. • Antivirus software failed to scan USB drives, highlighting critical cybersecurity gaps.

ThreatCluster AI

Timeline

2024-03-01
Counterfeit USB drives transferred to Self-Defense Forces
USB drives were sent to the Central Army Headquarters during disaster relief operations after the Noto Peninsula earthquake.
Visiontimes
2025-02-01
Malware discovered in Self-Defense Forces' computers
Personnel noticed abnormal performance, leading to the discovery of infected USB drives connected to over 50 computers.
Visiontimes
2026-06-25
Nikkei investigation reveals details of the incident
A Nikkei investigation disclosed that the USB drives were widely available online and linked to Chinese hackers.
Asia.Nikkei

Community

Browse all →