Home » Posts tagged 'computer hacking'

Tag Archives: computer hacking

Olduvai
Click on image to purchase

Olduvai III: Catacylsm
Click on image to purchase

Post categories

Post Archives by Category

U.S. Treasury “Major Security Incident” (Whoops!) Reveals Near-Universal Risk

One thing is certain, 2020 isn’t over yet.

In what could be called one of the major gaffes of the year, The U.S. Department of the Treasury was hacked, and the hack could have been carried out by foreign entities.

One person even told the Washington Post, “This is looking very, very bad.”

Reuters shed light on what will likely be a developing situation, including the possible foreign involvement:

A sophisticated hacking group backed by a foreign government stole information from the U.S. Treasury Department and a U.S. agency responsible for deciding policy around the internet and telecommunications, according to people familiar with the matter.

That, unfortunately, is only the beginning of this story…

Reporting on the incident, Robert Wenzel described a scene of panic in the U.S. government: “Officials were scrambling over the weekend to assess the extent of the intrusions and implement effective countermeasures, but initial signs suggested the breach was long-running and significant, the Post adds.”

long-running and significant breach in the U.S. Treasury security infrastructure will likely generate ripple effects, especially if foreign actors were involved.

Well-known security expert Brian Krebs summarized the potential for both widespread and long-term impacts stemming from this single breach:

Communications at the U.S. Treasury and Commerce Departments were reportedly compromised by a supply chain attack on SolarWinds, a security vendor that helps the federal government and a range of Fortune 500 companies monitor the health of their IT networks. Given the breadth of the company’s customer base, experts say the incident may be just the first of many such disclosures.

Over 90% of the Fortune 500 Affected?

…click on the above link to read the rest of the article…

FireEye and US Treasury Department hacked, Russia blamed

FireEye and US Treasury Department hacked, Russia blamed

Security consulting company FireEye has been hacked and their “Red Team” tools, which was their proprietary intrusion detection and testing toolkit has been stolen. In a blog post about the incident the company attributed the breach to a highly skilled nation state actor possessing “world class capabilities.” FireEye’s clients include agencies at all levels of government and Fortune 500 companies globally.

“The stolen “red team” tools — which amount to real-world malware — could be dangerous in the wrong hands,”

FireEye in an effort to mitigate the damage potential of the toolkits being in the wild, giving security teams the ability to build out defences against them.

The attack is being widely attributed to Russia (which I have to admit, kinda gets an eyeroll from me)

As I was writing this, a Washington Post article also trotted out Russian hackers in a piece about a breach at the US Treasury Department which cited, as its source material a one sentence report from Reuters. The entire Reuters report is as follows:

“A sophisticated hacking group backed by a foreign government stole information from the U.S. Treasury Department and a U.S. agency responsible for deciding policy around the internet and telecommunications, according to people familiar with the matter.”

From this sentence, Washington Post ran a story that starts out with “Russian government hackers breached the Treasury and Commerce departments”  attributing the allegation to  “people familiar with the matter.”

Read: https://www.reuters.com/article/usa-cyber-amazoncom-idUSL1N2IT0HS

I find it frustrating that the mainstream media bias is always quick to blame things on Russia and slow to acknowledge documented hostile behaviour from China. It’s just kind of strange.
…click on the above link to read the rest of the article…

Report: Hackers can now cause blackouts on US electrical grid

Report: Hackers can now cause blackouts on US electrical grid

It was inevitable that someday, hackers would have the ability to exert control over the U.S. electrical grid.  According to the computer security firm Symantec, someday is today.

Hacking attacks over the last several months that targeted U.S. energy companies have been able to gain “operational control” over systems, thus threatening blackouts across the U.S., says Symantec.  The hacker group known as DragonFly 2.0 was able to gain control in at least 20 places, according to the firm.

Wired:

Symantec on Wednesday revealed a new campaign of attacks by a group it is calling Dragonfly 2.0, which it says targeted dozens of energy companies in the spring and summer of this year. In more than 20 cases, Symantec says the hackers successfully gained access to the target companies’ networks. And at a handful of US power firms and at least one company in Turkey – none of which Symantec will name – their forensic analysis found that the hackers obtained what they call operational access: control of the interfaces power company engineers use to send actual commands to equipment like circuit breakers, giving them the ability to stop the flow of electricity into US homes and businesses.

“There’s a difference between being a step away from conducting sabotage and actually being in a position to conduct sabotage … being able to flip the switch on power generation,” says Eric Chien, a Symantec security analyst. “We’re now talking about on-the-ground technical evidence this could happen in the US, and there’s nothing left standing in the way except the motivation of some actor out in the world.”

…click on the above link to read the rest of the article…

 

Creator of NSA’s Global Surveillance System Calls B.S. On Russian Hacking Report

Creator of NSA’s Global Surveillance System Calls B.S. On Russian Hacking Report

We’ve previously documented that the hacking evidence against Russia is extremely weak, and the new report on Russian hacking doesn’t say much.

Indeed – if Russia hacked the Democratic party emails (from the DNC and top Clinton aide John Podesta) – the NSA would have all of the records showing exactly who did it.

We asked Bill Binney what he thought of the new report.

Binney is the NSA executive who created the agency’s mass surveillance program for digital information, who served as the senior technical director within the agency, who managed six thousand NSA employees, the 36-year NSA veteran widely regarded as a “legend” within the agency and the NSA’s best-ever analyst and code-breaker, who mapped out the Soviet command-and-control structure before anyone else knew how, and so predicted Soviet invasions before they happened (“in the 1970s, he decrypted the Soviet Union’s command system, which provided the US and its allies with real-time surveillance of all Soviet troop movements and Russian atomic weapons”).

Binney is the real McCoy. As we noted in 2013, Binney has been interviewed by virtually all of the mainstream media, including CBSABCCNNNew York TimesUSA TodayFox NewsPBS and many others.

Binney tells Washington’s Blog:

I expected to see the IP’s or other signatures of APT’s 28/29 [the entities which the U.S. claims hacked the Democratic emails] and where they were located and how/when the data got transferred to them from DNC/HRC [i.e. Hillary Rodham Clinton]/etc. They seem to have been following APT 28/29 since at least 2015, so, where are they?

Further, once we see the data being transferred to them, when and how did they transfer that data to Wikileaks? This would be evidence of trying to influence our election by getting the truth of our corrupt system out.

…click on the above link to read the rest of the article…

Olduvai IV: Courage
Click on image to read excerpts

Olduvai II: Exodus
Click on image to purchase

Click on image to purchase @ FriesenPress