Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cyberwarfare

Hacking the Hackers? US Spy Agency at Center of Apparent Breach

The US National Security Agency, which gained international notoriety in 2013 after Edward Snowden revealed its data snooping techniques, has itself become the target of an apparent data breach.

The US National Security Agency, which gained international notoriety in 2013 after Edward Snowden revealed its data snooping techniques, has itself become the target of an apparent data breach.

Mysterious hackers calling themselves the “Shadow Brokers” leaked online what appears to be classified NSA computer code.

Several security experts told US media the code appears genuine, and Snowden said “circumstantial evidence” pointed to Russian involvement.

As of Wednesday, the NSA still had not responded to multiple requests for comment. The hackers over the weekend posted two sets of files, one that is freely accessible and another that remains encrypted.

The Shadow Brokers said they would release this additional information subject to raising 1 million Bitcoins — digital currency, in this case worth about $575 million — through an online auction.

According to the New York Times, much of the code was created to peer through the computer firewalls of foreign powers like Russia, China and Iran.

Such access would enable the NSA to plant malware in rivals’ systems and monitor — or even attack — their networks.

Whoever obtained the code would have had to break into NSA servers that store the files, the Times said.

Advertisement. Scroll to continue reading.

Former NSA employees who worked at the agency’s hacking division known as Tailored Access Operations told the Washington Post the hack appeared genuine.

“Without a doubt, they’re the keys to the kingdom,” one former TAO employee told the Post.

“The stuff you’re talking about would undermine the security of a lot of major government and corporate networks both here and abroad,” the employee was quoted as saying.

Former NSA contractor Snowden, who has been living in Russia since leaking documents revealing the scope of the agency’s monitoring of private data, said the hack could be a warning to the United States after Democratic presidential nominee Hillary Clinton’s campaign accused Moscow of hacking into Democratic National Committee emails.

“Why did they do it? No one knows, but I suspect this is more diplomacy than intelligence, related to the escalation around the DNC hack,” Snowden said in a series of more than a dozen tweets about the Shadow Brokers hack.

“Circumstantial evidence and conventional wisdom indicates Russian responsibility. Here’s why that is significant:” he added, explaining that the hack could be an effort to influence US officials wondering how aggressively to respond to the DNC hack.

A website initially used by the group to publicize its hack had been taken down as of Wednesday morning.

Related: “Shadow Brokers” Claim Hack of NSA-Linked Equation Group

Related: Report Connects Elite Hacking Group to NSA-Linked Cyberweapons

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Cyberwarfare

WASHINGTON - Cyberattacks are the most serious threat facing the United States, even more so than terrorism, according to American defense experts. Almost half...

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Cyberwarfare

Russian espionage group Nomadic Octopus infiltrated a Tajikistani telecoms provider to spy on 18 entities, including government officials and public service infrastructures.

Cyberwarfare

Several hacker groups have joined in on the Israel-Hamas war that started over the weekend after the militant group launched a major attack.

Cyberwarfare

An engineer recruited by intelligence services reportedly used a water pump to deliver Stuxnet, which reportedly cost $1-2 billion to develop.

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...

Cyberwarfare

The war in Ukraine is the first major conflagration between two technologically advanced powers in the age of cyber. It prompts us to question...