Show an ad over header. AMP

I am the FIRST!!!

What we know about Russia's sprawling hack into federal agencies

The revelation that hackers tied to Russia managed to penetrate the Treasury, Commerce and Homeland Security departments — at least — will be giving U.S. officials nightmares for a long time.

The big picture: News of the Russia-linked hack, which Reuters broke Sunday, has shaken the government and larger cybersecurity world and led some policymakers to call for retaliation against Russia.


What we know:

  • Who was (probably) behind it. Cyber operators likely working for the SVR, a Russian intelligence service, compromised the software of IT contractor SolarWinds to gain access to these government networks — and have been potentially roaming in them since March.
  • The group's history. The same hacking unit, known as APT 29 or Cozy Bear, hacked prominent cybersecurity vendor FireEye. Cozy Bear was also behind a major compromise in 2014 and 2015 of unclassified email systems at the Pentagon, White House, and State Department.
  • The upper limit of the hack's potential reach: Some 18,000 SolarWinds customers — not individuals, institutions — may have been breached in the campaign, said SolarWinds, likely including currently unnamed “national security agencies and defense contractors,” according to the Wall Street Journal’s Dustin Volz.

What we don't know:

  • What they were after. The hackers appeared to gain access to email systems within Commerce and Treasury, though we don’t know whose emails, nor just how sensitive they are. And it's possible they got deeper into government systems than merely scraping unclassified emails.
  • Whether the hackers are still active in victim networks. Once a determined and capable foreign intelligence service has forced its way into a system, it will seek new avenues to keep on spying even if its initial access points get cut off. We don't know if, or how many, victims' networks, are still compromised.
  • The full list of victims.

Yes, but: It’s a strong bet that there are other shoes waiting to drop.

  • SolarWinds’ customers include “more than 425 of the US Fortune 500,” “all ten of the top ten US telecommunications companies,” “all five branches of the US Military,” “the US Pentagon, State Department, NASA, NSA, Postal Service, NOAA, Department of Justice, and the Office of the President of the United States," and “all five of the top five US accounting firms,” per a page on the company’s website that was recently deleted.

Be smart: As stunning as the hack's apparent success may be, the effort behind it is par for the course in the world of cyberespionage. The general public just rarely gets a glimpse into the machinery of modern spying.

regular 4 post ff

infinite scroll 4 pff

Biden turns to experienced hands for White House economic team

Joe Biden plans to announce Cecilia Rouse and Brian Deese as part of his economic team and Neera Tanden to head the Office of Management and Budget, sources tell Axios.

Why it matters: These are experienced hands. Unveiling a diverse group of advisers also may draw attention away from a selection of Deese to run the National Economic Council. Some progressives have criticized his work at BlackRock, the world's largest asset management firm.

Keep reading...Show less

"Apocalyptic, catastrophic": World leaders, activists react to "sobering" UN climate report

A sweeping United Nations-sponsored review of climate science published Monday projected that the world will cross a crucial temperature threshold as early as 2030 — up to a decade sooner than previously thought.

Why it matters: Warming is affecting every area of the globe, the report notes, and extreme weather events are becoming more common and severe contributing to a more volatile world.

Keep reading...Show less

Insights

mail-copy

Get Goodhumans in your inbox

Most Read

More Stories
<!ENTITY lol2 “&lol;&lol;&lol;&lol;&lol;&lol;&lol;&lol;&lol;&lol;“> <!ENTITY lol3 “&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;“> <!ENTITY lol4 “&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;“> ]> &lol4;