Experts name Russia a possible culprit after US government agencies hacked

14 December 2020, 03:34

Treasury Department Hacked
Treasury Department Hacked. Picture: PA

The FBI and the Department of Homeland Security are investigating what has been called a large-scale penetration of US government agencies.

Hackers have broken into the networks of the US Treasury and Commerce departments just days after a leading global cybersecurity firm announced it had been breached in an attack that experts said bore the hallmarks of Russian tradecraft.

The FBI and the Department of Homeland Security’s cybersecurity arm are investigating what experts and former officials said appeared to be a large-scale penetration of US government agencies — apparently the same months-long cyberespionage campaign that also afflicted the prominent cybersecurity firm FireEye.

“This can turn into one of the most impactful espionage campaigns on record,” said cybersecurity expert Dmitri Alperovitch.

The hacks were revealed less than a week after FireEye disclosed that foreign government hackers had broken into its network and stolen the company’s own hacking tools.

Many experts suspect Russia is responsible. FireEye’s customers include federal, state and local governments and top global corporations.

The apparent conduit for the Treasury and Commerce Department hacks — and the FireEye compromise — is a hugely popular piece of server software called SolarWinds.

It is used by hundreds of thousands of organisations globally, including most Fortune 500 companies and multiple US federal agencies who will now be scrambling to patch up their networks, said Mr Alperovitch, the former chief technical officer of the cybersecurity firm CrowdStrike.

FireEye, without naming the breached agencies or other targets, said in a blog post that its investigation into the hack of its own network had identified “a global campaign” targeting governments and the private sector that, beginning in the spring, slipped malware into a SolarWinds software update.

The malware gave the hackers remote access to victims’ networks.

FireEye said it had notified “multiple organisations” globally where it saw indications of compromise.

The US government did not publicly identify Russia as the culprit behind the hacks, first reported by Reuters, and said little about who might be responsible.

Cybersecurity experts said last week that they considered Russian state hackers to be the main suspect.

National Security Council spokesman John Ullyot said in a statement that the government was “taking all necessary steps to identify and remedy any possible issues related to this situation”.

On its website, SolarWinds says it has 300,000 customers worldwide, including all five branches of the US military, the Pentagon, the State Department and the White House.

It says the 10 leading US telecommunications companies and top five US accounting firms are also among customers.

The government’s Cybersecurity and Infrastructure Security Agency said it was working with other agencies to help “identify and mitigate any potential compromises”.

By Press Association

Latest World News

See more Latest World News

From the world's richest man to a 'vaccine sceptic': Trump picks his radical right-wing cabinet.

From the world's richest man to a 'vaccine sceptic': Trump picks his radical right-wing cabinet

Footage of the turbulence onboard the flight has been posted online

Horror moment screaming air passengers lifted out of seats in extreme turbulence as plane forced to turn back

Residents are moved out of the nursing home where least 10 people have died in a fire in Zaragoza, Spain, Friday, Nov. 15, 2024. (AP Photo/Ferran Mallol )

At least ten dead and more injured in fire at Spanish nursing home

Trump continues to name his cabinet

Trump’s controversial Cabinet - Anti-vax RFK Jr nominated as health chief as defence figures ‘alarmed’ by Gabbard

Portrait Of Shel Talmy

Music producer Shel Talmy, who worked with The Who and David Bowie, dies aged 87

France and Israel fans clash with police in Paris despite ramped up police presence following Amsterdam unrest

France and Israel fans clash amid ramped up police presence in Paris for UEFA Nations League game

Basem Naim, a Hamas leader

Hamas prepared for 'immediate' ceasefire in Gaza but claims Israel has not offered any 'serious proposals' in months

Donald Trump with Matt Gaetz

Trump's pick for US attorney-general faced sex-trafficking investigation by department he's now set to lead

TOPSHOT-PALESTINIAN-ISRAEL-CONFLICT-DISPLACED

Ukraine-style visa scheme for Gaza families proposed by Labour MP

President Joe Biden meets with President-elect Donald Trump in the Oval Office

Donald Trump names ‘reckless’ Matt Gaetz attorney general as president-elect holds historic meeting with Joe Biden

President Joe Biden meets with President-elect Donald Trump in the Oval Office of the White House, Wednesday, Nov. 13, 2024, in Washington. (AP Photo/Evan Vucci)

Trump and Biden 'both really enjoyed seeing each other', claims President-elect after historic meeting at White House

President Trump Speaks at America First Agenda Summit

Who has Trump picked to be in his cabinet so far and who is in the running?

Two women - who were part of a global monkey torture network - have been jailed

Two women jailed after being part of 'sickening and sadistic' monkey torture network

US President Joe Biden shakes hands with US President-elect Donald Trump during a meeting in the Oval Office of the White House in

'Welcome back': Donald Trump returns to the White House to meet Joe Biden and begin transfer of power

Chanel Banks has been missing for over two weeks

Gossip Girl star Chanel Maya Banks missing for two weeks as family launch desperate search

Spanish people have been seen bracing for more flooding in drastic ways

Spain takes drastic measures as more flooding looms, as some locals even tie their cars up and wrap them in film