Cyberattack hits US treasury and commerce departments

Zero-day attack
(Image credit: Shutterstock) (Image credit: Shutterstock.com)

The US treasury and commerce departments have been hit by a serious cyberattack, with fingers already being pointed in Russia’s direction. The US Government convened a National Security Council meeting in the aftermath of the attack, with fears growing that other government departments may also be affected.

Reports indicate that the attack may be the work of the state-sponsored hacking group known as APT29, or Cozy Bear, which was confirmed as the attacker behind the recent FireEye breach. The group has also been blamed for previous attacks on US Government agencies, as well as recent hacks at organizations researching Covid-19.

So far, not much is known about the attack on the US treasury and commerce departments, although all federal civilian agencies have been told to disconnect from SolarWinds, a computer network tool that is being exploited by the attackers.

Where's your proof?

Unsurprisingly, Russia has been bullish in rejecting US allegations. The country’s foreign ministry described accusations that it was responsible for the attack as “baseless.”

“The Russian Federation actively promotes bilateral and multilateral cybersecurity agreements,” Russia’s US Embassy wrote on Facebook. “In this regard, we would like to remind our American colleagues of the initiative put forward by President Vladimir Putin on September 25 on a comprehensive program of measures to restore Russian-US cooperation in the field of international information security. We have received no reply from Washington. Many of our other suggestions to start constructive and equal dialogue with the US remain unanswered.”

Despite Russia’s protestations, Microsoft has also supported the claim that a nation-state is likely to be behind the recent attack. Cyberwarfare is now employed by most major countries, whether for intelligence gathering or outright disruption.  

Via the BBC

Barclay Ballard

Barclay has been writing about technology for a decade, starting out as a freelancer with ITProPortal covering everything from London’s start-up scene to comparisons of the best cloud storage services.  After that, he spent some time as the managing editor of an online outlet focusing on cloud computing, furthering his interest in virtualization, Big Data, and the Internet of Things. 

Latest in Security
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Image depicting a hand on a scanner
Hackers are targeting unpatched ServiceNow instances that exploit 3 separate year-old vulnerabilities
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Lock on Laptop Screen
Data breach at Pennsylvania education union potentially exposes 500,000 victims
Data leak
Top collectibles site leaks personal data of nearly a million users
Spyware
Stalkerware data breach potentially hits over 2 million users, including thousands of Apple devices
Latest in News
Seth Milchick and Kier Eagan's animatronic speaking in Severance season 2 episode 10
Apple TV+ announces Severance has been renewed for season 3 after that devastating finale
Spotify's new Concerts Near You playlist feature showing a list of songs by local touring artists
Spotify has launched a new Concerts Near You playlist, making it easier for you to see if your favorite artists are performing in your area
The new Dr. Squatch Call of Duty collection.
Latest Call of Duty collaboration finally lets you rub your body with Soap - and I can't believe I just wrote that
Samsung S95D with peacock feather on screen
Samsung says an OLED-beating new screen tech could come sooner than we thought – but I wouldn't expect it in 4K TVs right away
Nanoleaf PC Screen Mirror Lightstrip set up on gaming PC
This Nanoleaf light strip adds Ambilight-style illumination to your gaming setup – and it's amazingly cheap
The Samsung Galaxy S21 series of phones lying face down.
Samsung announces One UI 7 is coming to older phones after all, but the launch is still a mess