There are a lot of Chinese attacks at the moment, but all the ones I've seen generally rely on people failing to install patches for Windows, Java, Flash and Acrobat Reader - however, these attacks only work because there's a whole bunch of websites with a certain class of vulnerability (SQL Injection).

In other words, if the western world bothered to secure their websites and computers, the Chinese (and Russians and spammers) would find it much much harder. However, as people haven't bothered, it's a bit like taking candy from a baby.
