Close Menu
TechCentralTechCentral

    Subscribe to the newsletter

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Facebook X (Twitter) YouTube LinkedIn
    WhatsApp Facebook X (Twitter) LinkedIn YouTube
    TechCentralTechCentral
    • News

      MultiChoice is working on a wholesale overhaul of DStv

      10 July 2025

      Spam call epidemic: operators say their hands are tied

      10 July 2025

      Britehouse unit breaks free from NTT Data

      10 July 2025

      Samsung’s bet on folding phones faces major test

      10 July 2025

      OpenAI to launch web browser in direct challenge to Google Chrome

      10 July 2025
    • World

      Grok 4 arrives with bold claims and fresh controversy

      10 July 2025

      Bitcoin pushes higher into record territory

      10 July 2025

      Cupertino vs Brussels: Apple challenges Big Tech crackdown

      7 July 2025

      Grammarly acquires e-mail start-up Superhuman

      1 July 2025

      Apple considers ditching its own AI in Siri overhaul

      1 July 2025
    • In-depth

      Siemens is battling Big Tech for AI supremacy in factories

      24 June 2025

      The algorithm will sing now: why musicians should be worried about AI

      20 June 2025

      Meta bets $72-billion on AI – and investors love it

      17 June 2025

      MultiChoice may unbundle SuperSport from DStv

      12 June 2025

      Grok promised bias-free chat. Then came the edits

      2 June 2025
    • TCS

      TCS | Connecting Saffas – Renier Lombard on The Lekker Network

      7 July 2025

      TechCentral Nexus S0E4: Takealot’s big Post Office jobs plan

      4 July 2025

      TCS | Tech, townships and tenacity: Spar’s plan to win with Spar2U

      3 July 2025

      TCS+ | First Distribution on the latest and greatest cloud technologies

      27 June 2025

      TCS+ | First Distribution on data governance in hybrid cloud environments

      27 June 2025
    • Opinion

      In defence of equity alternatives for BEE

      30 June 2025

      E-commerce in ICT distribution: enabler or disruptor?

      30 June 2025

      South Africa pioneered drone laws a decade ago – now it must catch up

      17 June 2025

      AI and the future of ICT distribution

      16 June 2025

      Singapore soared – why can’t we? Lessons South Africa refuses to learn

      13 June 2025
    • Company Hubs
      • Africa Data Centres
      • AfriGIS
      • Altron Digital Business
      • Altron Document Solutions
      • Altron Group
      • Arctic Wolf
      • AvertITD
      • Braintree
      • CallMiner
      • CambriLearn
      • CYBER1 Solutions
      • Digicloud Africa
      • Digimune
      • Domains.co.za
      • ESET
      • Euphoria Telecom
      • Incredible Business
      • iONLINE
      • Iris Network Systems
      • LSD Open
      • NEC XON
      • Network Platforms
      • Next DLP
      • Ovations
      • Paracon
      • Paratus
      • Q-KON
      • SevenC
      • SkyWire
      • Solid8 Technologies
      • Telit Cinterion
      • Tenable
      • Vertiv
      • Videri Digital
      • Wipro
      • Workday
    • Sections
      • AI and machine learning
      • Banking
      • Broadcasting and Media
      • Cloud services
      • Contact centres and CX
      • Cryptocurrencies
      • Education and skills
      • Electronics and hardware
      • Energy and sustainability
      • Enterprise software
      • Fintech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Lifestyle
      • Motoring
      • Public sector
      • Retail and e-commerce
      • Science
      • SMEs and start-ups
      • Social media
      • Talent and leadership
      • Telecoms
    • Events
    • Advertise
    TechCentralTechCentral
    Home » Information security » US government systems come under widespread hacker attack

    US government systems come under widespread hacker attack

    By Agency Staff14 December 2020
    Twitter LinkedIn Facebook WhatsApp Email Telegram Copy Link
    News Alerts
    WhatsApp

    US government agencies were hit by a widespread campaign of cyberattacks by hackers who were suspected of exploiting a flaw in the update of a US software company, according to three people familiar with the investigation.

    “The US government is aware of these reports and we are taking all necessary steps to identify and remedy any possible issues related to this situation,” John Ullyot, a spokesman for the National Security Council, said in a statement.

    The attacks may eventually rank as among the worst in recent memory, in part because the hackers appear to have penetrated the systems of a Texas company that sells technology products to a who’s who of sensitive targets, according to the people. Those include the US state department, the Centres for Disease Control and Prevention, the Naval Information Warfare Systems Command, the FBI, all five branches of the US military, and 425 corporations out of the Fortune 500, according to the company’s website and government data.

    The attacks included snooping on e-mails at the US treasury department and an arm of the commerce department

    The attacks included snooping on e-mails at the US treasury department and an arm of the commerce department, Reuters reported. An infamous hacking group backed by the Russian government is suspected of being behind the breach, the Washington Post reported.

    All this suggests that as the US government was focused over the last several months on detecting and countering possible Russian interference in the US presidential election — an effort that was largely viewed as successful — suspected Russian hackers were quietly working their way into the computer networks of American government agencies and sensitive corporate victims undetected.

    ‘Nation state’

    The company — Austin, Texas-based SolarWinds — issued a statement appearing to confirm that the software update system for one of its products had been used to send malware to customers.

    “We are aware of a potential vulnerability which if present is currently believed to be related to updates which were released between March and June 2020 to our Orion monitoring products. We believe that this vulnerability is the result of a highly sophisticated, targeted and manual supply chain attack by a nation state,” SolarWinds president and CEO Kevin Thompson said in a statement on Sunday evening.Thompson said his company was working with the FBI as well as others on the investigation.

    Two people briefed on the probe said that because just about any SolarWinds customer which used the product got the manipulated software, the number of victims could eventually reach into the thousands. The hackers appear to have concentrated on the most attractive and sensitive targets first, so that the harm suffered by various victims may vary widely, those people said.

    FireEye told clients on Sunday that it was aware of at least 25 entities hit by the attack, according to people briefed by the company.The quickly broadening investigation broke into public view on 8 December when FireEye announced that it had been breached in a highly sophisticated attack that it attributed to hackers backed by US adversaries.

    As investigators followed the attackers’ digital tracks, it now appears that FireEye may have simply been the first victim to detect the attack. US government investigators are now racing to determine which agencies may have also been breached and to what extent the hackers accessed sensitive information – a process that could take days or weeks.

    FireEye said last week the attackers took extreme care not to be detected, and in its case had managed to steal tools the security firm uses to test the security of its clients networks. FireEye also said the hackers sought information related to government customers but didn’t appear to steal customer data.

    The last time the US government was caught so thoroughly by surprise may have been five years ago…

    A commerce department spokesman confirmed there was a breach “in one of our bureaus”, which Reuters identified as the National Telecommunications and Information Administration. The attacks were so concerning that the National Security Council met at the White House on Saturday. The treasury department didn’t respond to requests for comment.

    The Washington Post reported that the Russian hacking group known as Cozy Bear, or APT 29, was behind the campaign. That is the same hacking group that was behind the cyberattacks on the Democratic National Committee going back to 2015. It was also accused by US and UK authorities in July of infiltrating organisations involved in developing a Covid-19 vaccine.

    Chinese hackers

    The last time the US government was caught so thoroughly by surprise may have been five years ago, when Chinese hackers stole information related to anyone who had applied for or received a national security clearance from the computers of the Office of Personnel Management.

    That investigation lasted for months, cost some US officials their jobs, and resulted in a massive and expensive push to increase the security of unclassified US government computer networks.This attack – and the next several weeks – will tell to what extent those measures were successful.  — Reported by Alyza Sebenius, Kartikay Mehrotra and Michael Riley, (c) 2020 Bloomberg LP



    FireEye SolarWinds top
    Subscribe to TechCentral Subscribe to TechCentral
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email Copy Link
    Previous ArticleUK to build spacecraft to chase and map a comet
    Next Article Mimecast’s Brian Pinnock on the Popi Act and what happens next

    Related Posts

    18GW in unplanned breakdowns cripple Eskom

    2 November 2021

    Nersa kicks the Karpowership can down the road

    13 September 2021

    If you think South African load shedding is bad, try Zimbabwe’s

    13 September 2021
    Company News

    AI in project management: a new era of efficiency and transformation

    10 July 2025

    Samsung unfolds the future with thinnest, lightest Galaxy Z Fold yet

    9 July 2025

    Huawei supercharges South African SMEs with over 20 new eKit products

    9 July 2025
    Opinion

    In defence of equity alternatives for BEE

    30 June 2025

    E-commerce in ICT distribution: enabler or disruptor?

    30 June 2025

    South Africa pioneered drone laws a decade ago – now it must catch up

    17 June 2025

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    © 2009 - 2025 NewsCentral Media

    Type above and press Enter to search. Press Esc to cancel.