Security News > 2022 > February > US says Russian state hackers breached cleared defense contractors
Russian-backed hackers have been targeting and compromising U.S. cleared defense contractors since at least January 2020 to gain access to and steal sensitive info that gives insight into U.S. defense and intelligence programs and capabilities.
Since January 2020, Russian hacking groups have breached multiple CDC networks and, in some cases, have maintained persistence for at least six months, regularly exfiltrating hundreds of documents, emails, and other data.
"Compromised entities have included CDCs supporting the U.S. Army, U.S. Air Force, U.S. Navy, U.S. Space Force, and DoD and Intelligence programs," the FBI, NSA, and CISA revealed in a joint advisory published today.
Last month, the three agencies also warned that Russian-backed hacking groups are targeting organizations from U.S. critical infrastructure sectors.
In July 2021, the U.S. government also announced a reward of up to $10 million through its Rewards for Justice program for information on malicious cyber activities coordinated by state hackers targeting critical infrastructure sectors.
"NSA encourages all U.S. cleared defense contractors - with or without evidence of compromise - to apply the mitigations in the advisory to reduce the risk of compromise by Russian state-sponsored cyber actors," the NSA added today.
News URL
Related news
- US, UK warn of Russian APT29 hackers targeting Zimbra, TeamCity servers (source)
- US sanctions crypto exchanges used by Russian ransomware gangs (source)
- Microsoft and DOJ disrupt Russian FSB hackers' attack infrastructure (source)
- 100+ domains seized to stymie Russian Star Blizzard hackers (source)
- US Government, Microsoft Aim to Disrupt Russian threat actor ‘Star Blizzard’ (source)
- Pro-Ukrainian Hackers Strike Russian State TV on Putin's Birthday (source)
- US says Chinese hackers breached multiple telecom providers (source)
- Russian hackers deliver malicious RDP configuration files to thousands (source)
- US warns of last-minute Iranian and Russian election influence ops (source)
- US indicts Snowflake hackers who extorted $2.5 million from 3 victims (source)