Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Biden Pressured to Act on ‘Russian’ Ransomware, Hacking

Top US officials met at the White House on stopping ransomware Wednesday, as pressure mounted on President Joe Biden to take action against Russia over cyberattacks.

Top US officials met at the White House on stopping ransomware Wednesday, as pressure mounted on President Joe Biden to take action against Russia over cyberattacks.

Days after hundreds of companies in the US and around 1,500 worldwide saw their computer systems hijacked by allegedly Russia-based ransomware group REvil, there were calls for tough counterattacks by the Pentagon’s cyber warriors and more sanctions on Moscow.

The White House meeting, including officials from the State Department, Homeland Security, Justice Department and intelligence, also followed news that alleged Russian hackers had attempted to break into the systems of the Republican Party’s national committee.

After the meeting, Biden told reporters he would “deliver” his own message to Russian President Vladimir Putin on the issue, without offering any details.

White House spokeswoman Jen Psaki said the meeting Wednesday was on a “whole-of-government effort to address ransomware attacks.”

“The president has a range of options should he determine to take action” against attackers, she added.

Advertisement. Scroll to continue reading.

– Calls for more sanctions –

Psaki would not say what steps Biden is considering.

But three weeks after he raised the ransomware issue in direct talks with Putin at a Geneva summit, there were more calls for the US leader to retaliate.

In a Washington Post opinion piece Wednesday, cybersecurity expert Dmitri Alperovitch and Wilson Center Russia expert Matthew Rojansky urged Biden to sanction Russian oil and gas companies, a top source of Moscow’s finances.

“Before such devastating ransomware attacks become a routine occurrence, President Biden must deliver a quiet but forceful demand: Russian President Vladimir Putin must put an immediate stop to this activity or Washington will tighten the squeeze of sanctions on the Russian economy,” they wrote.

A group of House Republicans said in a statement that continued cyber-attacks make it clear Putin has “brushed off” Biden’s warnings.

“Putin won’t stop these criminals unless he knows he’ll face real and severe consequences if he doesn’t,” they said.

Clint Watts, a counter-terror and intelligence specialist at the Foreign Policy Research Institute, called the REvil attack a “deliberate provocation” coming so soon after the Biden-Putin summit and said more sanctions would not deter Russia.

He argued for tougher action, such as remotely sabotaging the computer systems of the hackers, trying to shut down bitcoin and other virtual currencies that make ransomware possible, or physically nabbing the hackers if they travel outside Russia.

“The Russians are going to continue to push until they see what America will defend. And America has chosen for more than a decade not to defend, just to levy more sanctions,” Watkins told AFP.

“They are abusing the current system and we’re not deterring them in any way.”

– $70 million demand –

Psaki said senior White House national security staff had communicated their concern to high-level Russian officials.

And US and Russian cybersecurity officials are scheduled to meet next week on the ransomware problem.

But the most recent REvil attack suggested Moscow has not taken action to reign in cyber criminals.

On Wednesday on their “Happy Blog” on the dark web, REvil continued to release private data of companies whose computers they took over to pressure them to pay ransom.

The group has also offered to publicly release the key for unlocking all of the companies’ data in return for a single payment of $70 million.

Asked about retaliating, Psaki said officials are still cautious about attributing blame for the most recent attacks, and were not saying the Russian government was directly responsible.

Pentagon spokesman John Kirby said Tuesday they would not talk about the specific capabilities or actions of their Cyber Command, which can undertake offensive and retaliatory attacks online.

“We are all mindful of these growing threats to national security as well as to civilian infrastructure,” Kirby said.

“We believe… a US response to those threats has got to be whole-of-government” and not just a military responsibility, he added.

Written By

AFP 2023

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join as speakers examine the various components of ASM strategy, the push to mandate continuous asset visibility and inventory tools, and the use of red-teaming, bug bounties and pen-tests in modern security programs.

Register

In this live webinar, learn how to define your minimum viable business, identify the systems it depends on, measure actual recovery time against business requirements, and present the gaps to the board as measurable risk.

Register

People on the Move

Tom Bonos has been named Chief Revenue Officer at Sumo Logic.

Axonius has appointed Chris Jones as CTSO and Dan Schoenbaum as SVP of Business Development.

Optiv has appointed Sean Forkan as Chief Revenue Officer (CRO).

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.