Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Breaches

Library of Congress Says an Adversary Hacked Some Emails

The Library of Congress has notified lawmakers of a “cyber breach” of its IT system by an adversary and a hack of emails.

The Library of Congress has notified lawmakers of a “cyber breach” of its IT system by an adversary, a hack of emails between some congressional offices and library staff, according to an email obtained by The Associated Press.

The library said that an adversary accessed email communications during the period from January to September.

The matter has been referred to law enforcement, the library said. Authorities gave no immediate information on the attacker, including whether their identity was known.

“The Library has mitigated the vulnerability that the adversary used to access the environment and has taken measures to prevent such incidents in the future,” the library said in the notification.

NBC News first reported the breach.

The Library of Congress operates across from the U.S. Capitol within the complex grounds. It is the largest library in the world, according to its website, and it holds “millions of books, films and video, audio recordings, photographs, newspapers, maps and manuscripts in its collections.”

Advertisement. Scroll to continue reading.

The Library is also the main research arm of Congress, and the home of the U.S. Copyright Office.

In the notification about the breach, the library noted that the House and Senate’s information technology networks, “including individual House and Senate email accounts, were not compromised in any way.”

It said “an adversary accessed email communications between congressional offices and some Library staff, including the Congressional Research Service, compromising the information obtained in those emails.”

The notifications said the U.S. Copyright Office systems were not impacted by the breach.

The library said it is in the process of analyzing which email communications were accessed and would contact specific congressional offices and staff members with more information.

Related: Details and Lessons Learned From the Ransomware Attack on the British Library

Related: Ransomware Attack Disrupts Seattle Public Library Services

Written By

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Today’s attackers are no longer breaking in — they’re logging in. Join this live webinar as we break down the modern identity attack chain and examine how recent breaches exploited weaknesses in authentication, identity verification, and access management processes.

Register

AI has accelerated both sides of the fight. Adversaries are weaponizing vulnerabilities faster, while defenders are racing to ship detections and configurations. Join this live webinar as we explore how to prove your controls actually hold against new threats, map your security maturity, and unite breach simulation with automated pentesting into a single, coordinated program.

Register

People on the Move

SolarWinds has appointed Justin Henkel as Chief Information Security Officer.

J. Paul Haynes has joined Cinchy as Chief Executive Officer.

Hatem Naguib has become Chief Executive Officer at Sysdig.

More People On The Move

Expert Insights

Four decades of incident response experience suggest that exploits are often the symptom, not the root cause, of today’s cybersecurity failures.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.