Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Incident Response

Report: Jet Propulsion Laboratory Hacked for 10 Months

A report says hackers stole data from NASA’s Jet Propulsion Laboratory in Southern California for nearly a year without being detected.

A report says hackers stole data from NASA’s Jet Propulsion Laboratory in Southern California for nearly a year without being detected.

NASA Jet Propulsion Laboratory hacked for 10 months

The Pasadena Star-News reports Friday that security weaknesses allowed hackers to steal 500 megabytes of data from 23 files, including two containing restricted information related to the Curiosity rover Mars mission.

A report this week from NASA’s Office of the Inspector General says hackers used a credit card-sized computer and a compromised external user account.

They operated for 10 months until the hack was discovered in April 2018.

As a result, NASA temporarily disconnected several space flight-related systems from JPL’s computer network.

The Star-News says hackers also broke into JPL in 2009, 2011, 2014, 2016 and 2017.

NASA recommended security fixes that should be completed over the next year.

RelatedNASA’s Cybersecurity Program Gets Failing Grade

Advertisement. Scroll to continue reading.

Related: Ex-NASA Contractor Pleads Guilty in Cyberstalking Scheme

Related: NASA Denies Drone Hack, Data Leak

Related: Exploit Payload Possibly Made It Onto NASA’s Orion Spacecraft

view counter
Written By

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Shay Mowlem has been named CMO of runtime and application security company Contrast Security.

Attack detection firm Vectra AI has appointed Jeff Reed to the newly created role of Chief Product Officer.

Shaun Khalfan has joined payments giant PayPal as SVP, CISO.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Data Breaches

LastPass DevOp engineer's home computer hacked and implanted with keylogging malware as part of a sustained cyberattack that exfiltrated corporate data from the cloud...

Incident Response

Microsoft has rolled out a preview version of Security Copilot, a ChatGPT-powered tool to help organizations automate cybersecurity tasks.

Data Breaches

GoTo said an unidentified threat actor stole encrypted backups and an encryption key for a portion of that data during a 2022 breach.

Application Security

GitHub this week announced the revocation of three certificates used for the GitHub Desktop and Atom applications.

Incident Response

Meta has developed a ten-phase cyber kill chain model that it believes will be more inclusive and more effective than the existing range of...

Cloud Security

VMware described the bug as an out-of-bounds write issue in its implementation of the DCE/RPC protocol. CVSS severity score of 9.8/10.