20 minutes ago…

Biden orders probe of latest ransomware attack | Reuters

CENTRAL LAKE, Mich., July 3 (Reuters) - President Joe Biden said on Saturday he has directed U.S. intelligence agencies to investigate who was behind a sophisticated ransomware attack that hit hundreds of American businesses and led to suspicions of Russian gang involvement.

Security firm Huntress Labs said on Friday it believed the Russia-linked REvil ransomware gang was to blame for the latest ransomware outbreak. Last month, the FBI blamed the same group for paralyzing meat packer JBS SA .

Biden, on a visit to Michigan to promote his vaccination program, was asked about the hack while shopping for pies at a cherry orchard market.

Biden said “we’re not certain” who is behind the attack. “The initial thinking was it was not the Russian government but we’re not sure yet,” he said.

Biden said he had directed U.S. intelligence agencies to investigate, and the United States will respond if they determine Russia is to blame.

During a summit in Geneva on June 16, Biden urged Russian President Vladimir Putin to crack down on cyber hackers emanating from Russia, and warned of consequences if such ransomware attacks continued to proliferate.

Biden said he would receive a briefing about the latest attack on Sunday.

“If it is either with the knowledge of and/or a consequence of Russia then I told Putin we will respond,” Biden said, referring to what he told Putin in Geneva.

The hackers who struck on Friday hijacked widely used technology management software from a Miami-based supplier called Kaseya. They changed a Kaseya tool called VSA, used by companies that manage technology at smaller businesses. They then encrypted the files of those providers’ customers simultaneously.

Huntress said it was tracking eight managed service providers that had been used to infect some 200 clients.

Kaseya said on its own website on Friday that it was investigating a “potential attack” on VSA, which is used by IT professionals to manage servers, desktops, network devices and printers.

“This is a colossal and devastating supply chain attack,” Huntress senior security researcher John Hammond said in an email, referring to an increasingly high profile hacker technique of hijacking one piece of software to compromise hundreds or thousands of users at a time.

In a statement on Friday, the U.S. Cybersecurity and Infrastructure Security Agency said it was “taking action to understand and address the recent supply-chain ransomware attack” against Kaseya’s VSA product.

Supply chain attacks have crept to the top of the cybersecurity agenda after the United States accused hackers of operating at the Russian government’s direction and tampering with a network monitoring tool built by Texas software firm SolarWinds.

On Thursday, U.S. and British authorities said Russian spies accused of interfering in the 2016 U.S. presidential election have spent much of the past two years abusing virtual private networks (VPNs) to target hundreds of organizations worldwide.

On Friday, Russia’s embassy in Washington denied that charge.

You are viewing a single thread.
View all comments View context

I just googled. I wonder if translation is a common problem. To me “Honker Union” sounds like a ultra-cheapie Hooters knockoff…

Honker Union

Honker (simplified Chinese: 红客; traditional Chinese: 紅客; pinyin: hóngkè) or red hacker is a group known for hacktivism, mainly present in China. Literally the name means “Red Guest”, as compared to the usual Chinese transliteration of hacker (黑客, hēikè, literally Black Guest as in black hat).

permalink
report
parent
reply

My (25M) honkers (23F, 26F, 22M, 28M, 28M) have unionized

permalink
report
parent
reply

news

!news@hexbear.net

Create post

Welcome to c/news! Please read the Hexbear Code of Conduct and remember… we’re all comrades here.

Rules:

-- PLEASE KEEP POST TITLES INFORMATIVE --

-- Overly editorialized titles, particularly if they link to opinion pieces, may get your post removed. --

-- All posts must include a link to their source. Screenshots are fine IF you include the link in the post body. --

-- If you are citing a twitter post as news please include not just the twitter.com in your links but also nitter.net (or another Nitter instance). There is also a Firefox extension that can redirect Twitter links to a Nitter instance: https://addons.mozilla.org/en-US/firefox/addon/libredirect/ or archive them as you would any other reactionary source using e.g. https://archive.today . Twitter screenshots still need to be sourced or they will be removed --

-- Mass tagging comm moderators across multiple posts like a broken markov chain bot will result in a comm ban--

-- Repeated consecutive posting of reactionary sources, fake news, misleading / outdated news, false alarms over ghoul deaths, and/or shitposts will result in a comm ban.--

-- Neglecting to use content warnings or NSFW when dealing with disturbing content will be removed until in compliance. Users who are consecutively reported due to failing to use content warnings or NSFW tags when commenting on or posting disturbing content will result in the user being banned. --

-- Using April 1st as an excuse to post fake headlines, like the resurrection of Kissinger while he is still fortunately dead, will result in the poster being thrown in the gamer gulag and be sentenced to play and beat trashy mobile games like 'Raid: Shadow Legends' in order to be rehabilitated back into general society. --

Community stats

  • 198

    Monthly active users

  • 20K

    Posts

  • 428K

    Comments