Security News > 2022 > February > US says Russian state hackers breached defense contractors

Russian-backed hackers have been targeting and compromising U.S. cleared defense contractors since at least January 2020 to gain access to and steal sensitive info that gives insight into U.S. defense and intelligence programs and capabilities.
Since January 2020, Russian hacking groups have breached multiple CDC networks and, in some cases, have maintained persistence for at least six months, regularly exfiltrating hundreds of documents, emails, and other data.
"Compromised entities have included CDCs supporting the U.S. Army, U.S. Air Force, U.S. Navy, U.S. Space Force, and DoD and Intelligence programs," the FBI, NSA, and CISA revealed in a joint advisory published today.
Last month, the three agencies also warned that Russian-backed hacking groups are targeting organizations from U.S. critical infrastructure sectors.
In July 2021, the U.S. government also announced a reward of up to $10 million through its Rewards for Justice program for information on malicious cyber activities coordinated by state hackers targeting critical infrastructure sectors.
"NSA encourages all U.S. cleared defense contractors - with or without evidence of compromise - to apply the mitigations in the advisory to reduce the risk of compromise by Russian state-sponsored cyber actors," the NSA added today.
News URL
Related news
- US sanctions Chinese company linked to Flax Typhoon hackers (source)
- Russian ISP confirms Ukrainian hackers "destroyed" its network (source)
- US Treasury hack linked to Silk Typhoon Chinese state hackers (source)
- Treasury hackers also breached US foreign investments review office (source)
- How Russian hackers went after NGOs’ WhatsApp accounts (source)
- US sanctions Chinese firm, hacker behind telecom and Treasury hacks (source)
- Hackers game out infowar against China with the US Navy (source)
- Subaru Starlink flaw let hackers hijack cars in US and Canada (source)
- EU sanctions Russian GRU hackers for cyberattacks against Estonia (source)
- US freezes foreign aid, halting cybersecurity defense and policy funds for allies (source)