PDA

View Full Version : Russian hackers breach U.S. government, targeting agencies, private companies



Teh One Who Knocks
12-14-2020, 01:20 PM
By Ken Dilanian, Josh Lederman, and Tim Stelloh - NBC News


https://i.imgur.com/g2VjuYyl.jpg

Hackers who targeted the federal government appear to be part of a Russian intelligence campaign aimed at multiple U.S. agencies and companies, including the cybersecurity company FireEye, officials said Sunday.

A Commerce Department spokesman confirmed a breach, saying it occurred at an unidentified bureau.

Department officials alerted the FBI and a cybersecurity agency within the Department of Homeland Security, the spokesman said, declining to comment further.

The White House National Security Council also confirmed that it was looking into another potential intrusion at the Treasury Department after Reuters reported that foreign government-backed hackers accessed internal government emails.

The Washington Post first reported that the hacks were carried out by Russia's Foreign Intelligence Service, or SVR.

Among the SVR's targets was FireEye, a major U.S. cybersecurity company with extensive government contracts, The Post reported. The company's CEO said last week that it had been hacked "by a nation with top-tier offensive capabilities."

A private cybersecurity official briefed on the matter confirmed the SVR's involvement to NBC News.

FireEye CEO Kevin Mandia said the hackers' primary goal appeared to be to steal information from the company's government clients.

The Russian Embassy in Washington called news of the breach "groundless attempts by the American media to accuse Russia of hacking attacks on U.S. government bodies."

"Attacks in the information space do not correspond to the foreign policy principles of our country, its national interests and understanding of how relations between states are built," the statement continued, adding that Russia does not conduct "offensive operations in the virtual environment."

It wasn't clear how much information the hackers accessed, although the company said they obtained tools used by FireEye's Red Team, the section tasked with defending against new cyberattacks.

The Post reported that the Commerce Department breach targeted Solar Winds, an information technology system used by tens of thousands of organizations. NBC News hasn't independently confirmed the report.

The FBI and the National Security Agency declined to comment Sunday.

In a statement, the Homeland Security Department's cybersecurity agency said it was investigating "recently discovered activity on government networks."

The agency said it was providing technical assistance to help blunt potential compromises.

FBD
12-14-2020, 01:22 PM
using the same SolarWind vulnerability that the Dominion machines have :lol:


oh, and "Russian"

its the chinese


hilarious how in the MSM, "chinese hackers" dont even exist :lol:

FBD
12-14-2020, 01:37 PM
https://twitter.com/CISAgov/status/1338348931571445762

https://twitter.com/CodeMonkeyZ/status/1338494336124690433?s=19

FBD
12-15-2020, 02:37 PM
https://twitter.com/JohnBasham/status/1338701852901335043

FBD
12-16-2020, 01:50 PM
https://i.imgur.com/xcm9AOK.png

its funny that the Dominion guy testified that they dont use solarwinds :lol:

https://i.imgur.com/x6zE7zc.png

https://i.imgur.com/ynEM7Lg.jpg


havent seen much about russia yet (outside of the fact that sergei brin is russian, lol) but here we go with moar china

https://www.businesswire.com/news/home/20200517005007/en/SolarWinds-Expands-Partnership-M.Tech-Technology-Professionals-Solve
https://i.imgur.com/liGPEs9.png

and when you go back digging, Hi Hillary (is anyone really shocked aside from our upside down friends?)
https://i.imgur.com/lhvCMAG.jpg