Japan defense forces used USB drives with China-linked virus: Nikkei probe
AIThis post was created with the assistance of artificial intelligence (AI).

TL;DR

AUDIBLE

Listen free for 30 days with Audible

Thousands of audiobooks and originals — cancel anytime.

Start your free trial

As an affiliate, we earn on qualifying purchases.

A Nikkei investigation reports that Japan’s Self-Defense Forces used USB drives infected with a virus linked to Chinese hackers for almost a year. The Defense Forces did not disclose this, despite widespread availability of similar drives online. The incident raises cybersecurity and national security concerns.

Japan’s Self-Defense Forces used USB drives infected with a virus linked to Chinese hackers on computers with access to classified information for nearly a year, and did not disclose this breach despite the widespread availability of similar infected drives online, a Nikkei investigation has found.

The investigation reveals that the Ground Self-Defense Force employed USB memory sticks containing malicious software from mid-2025 until mid-2026. These drives, which were used on computers handling sensitive data, were infected with a virus believed to be connected to Chinese cyber espionage efforts. The Defense Forces reportedly chose not to disclose the incident, even as similar USB drives became readily accessible on commercial platforms.

According to Nikkei Asia, the infected drives were used primarily for data transfer and storage within secure military networks. The virus was detected after cybersecurity analysts identified unusual activity in the systems, prompting an internal review. The Defense Ministry has yet to publicly confirm the full scope of the incident or whether any classified information was compromised.

Sources familiar with the investigation indicate that the Defense Forces’ decision not to disclose the breach was driven by concerns over national security and operational integrity, but this has raised questions about transparency and cybersecurity protocols within Japan’s military institutions.

Implications for Japan’s Cybersecurity and National Security

This incident underscores vulnerabilities within Japan’s defense cybersecurity framework, especially regarding the use of external devices like USB drives. The potential infiltration by a Chinese-linked virus raises fears of espionage and data breaches that could compromise military operations. It also highlights the risks of using commercially available infected hardware in sensitive government and military contexts, prompting calls for stricter cybersecurity measures and oversight.

Kingston Ironkey Locker+ 50 G2 32GB Encrypted USB Drive | FIPS 197 | AES-XTS Protection | Multi-Password Security | USB 3.2 Gen 1 | IKLP50G2/32GB

Kingston Ironkey Locker+ 50 G2 32GB Encrypted USB Drive | FIPS 197 | AES-XTS Protection | Multi-Password Security | USB 3.2 Gen 1 | IKLP50G2/32GB

  • Encryption Type: XTS-AES 256-bit hardware encryption
  • Certification: FIPS 197 certified
  • Security Features: Multi-Password with admin and user access

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Background on Cybersecurity Incidents in Japan’s Defense Sector

Japan has faced increasing cybersecurity threats linked to China and other nations over recent years. Previous incidents include data breaches and attempted cyber espionage targeting government agencies. The use of infected removable media has been a known vector for cyberattacks globally, but this is one of the first confirmed cases involving Japan’s Self-Defense Forces deliberately using compromised USB drives for nearly a year without public disclosure.

The incident comes amid broader concerns over cybersecurity preparedness and transparency within Japan’s defense establishment, which has historically been cautious about revealing vulnerabilities to avoid geopolitical repercussions.

“The use of infected USB drives in a defense environment is a serious breach of cybersecurity protocols, especially when linked to a foreign government. It indicates a significant vulnerability that needs urgent attention.”

— an anonymous cybersecurity expert

Integral Courier 16GB Encrypted USB Flash Memory - Keep Sensitive Data Safe with USB Drive Hardware Encryption - USB Flash Drive with FIPS 197 Security Standard to Help with GDPR Compliance, Blue

Integral Courier 16GB Encrypted USB Flash Memory – Keep Sensitive Data Safe with USB Drive Hardware Encryption – USB Flash Drive with FIPS 197 Security Standard to Help with GDPR Compliance, Blue

  • Security Standard: FIPS 197 certified encryption
  • Password Protection: Auto-erases after 6 failed attempts
  • Auto-lock Feature: Encrypts and locks when removed

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Unresolved Questions About Scope and Impact

It remains unclear whether any classified information was actually accessed or stolen through this incident. The full extent of the malware’s infiltration and whether other units used similar infected drives are still under investigation. Japan’s Defense Ministry has not provided detailed disclosures, and it is uncertain if further breaches have been uncovered.

INNÔPlus Secure Flash Drive 256-bit,64GB Encrypted USB Drive Gray

INNÔPlus Secure Flash Drive 256-bit,64GB Encrypted USB Drive Gray

  • Secure Encryption: 256-bit AES hardware encryption protection
  • High-Speed Data Transfer: Up to 480MB/s read, 160MB/s write
  • Wide Compatibility: Works with Windows, Mac, Linux, and more

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Next Steps in Japan’s Cybersecurity Response

Japan’s Defense Ministry is expected to conduct a comprehensive review of cybersecurity protocols and hardware usage within the Self-Defense Forces. Authorities may also implement stricter controls on external devices and increase transparency about cybersecurity incidents. An official statement or update is anticipated in the coming weeks as investigations progress.

Data Blocker, USB C Data Blocker Protect Against Juice Jacking, 6-pcs

Data Blocker, USB C Data Blocker Protect Against Juice Jacking, 6-pcs

  • Set Includes Multiple Data Blockers: 6-piece USB data blocker set
  • Protects Against Juice Jacking: Secure public charging environments
  • Compatible with USB A and C: Universal device compatibility

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Key Questions

How did the virus infect the USB drives used by Japan’s Self-Defense Forces?

The virus is believed to have been embedded in the USB drives, which were commercially available and widely accessible online, making it possible for the drives to be infected before use.

Did any classified information get compromised?

It is not yet confirmed whether sensitive data was accessed or stolen. The investigation is ongoing, and authorities have not disclosed specific details about data breaches.

Why did Japan’s Defense Forces not disclose this incident earlier?

Sources indicate that concerns over national security and operational integrity influenced the decision to withhold disclosure, though this has raised questions about transparency.

Could this happen again?

While reforms are likely underway, the incident highlights the ongoing vulnerability of defense systems to supply chain and hardware security risks, emphasizing the need for improved safeguards.

Source: Nikkei Asia


COLLEGE MOVE-IN

College move-in / dorm season Picks

As an affiliate, we earn on qualifying purchases.

You May Also Like

The Alliance Cannot Fight Through A Black Box — Why Huawei Was Only The Warning

The EU and UK are removing Huawei from 5G networks due to strategic vulnerabilities, revealing broader risks in civilian infrastructure supporting military operations.

I Joined The IndieWeb, Here’s What I Learned

An in-depth account of joining the IndieWeb movement, what I learned, and its implications for online identity and decentralization.

A way to exclude sensitive files issue still open for OpenAI Codex

Efforts to implement a feature to exclude sensitive files in OpenAI Codex remain unresolved, with discussions ongoing about design and implementation.

Note-Taking And Personal Knowledge Management

Exploring recent developments in note-taking tools and personal knowledge management, their impact on productivity and information organization.