A Russian hacker group. succeeded in entering several US government agenciesThis was announced on Thursday by the Cybersecurity and Infrastructure Security Agency (CISA).
Behind the cyberattack is the CL0P group, also known as TA505. has its own base of operations in RussiaThis was stated by a senior US government official in a press statement.
This source explained that currently no test which indicates that the “hackers” acted in agreement with the Russian government.
In a telephone press conference, CISA Director Jen Easterly stated that attack “will not have a significant impact” in government activities and explained that it was a campaign of small-scale cyber attacks.
Easterly assured that what happened This has nothing to do with a massive cyber attack. that Russian agents took action in 2019 against about 18,000 US government agencies and large companies in the country, taking advantage of problems on the SolarWinds platform.
In this case, attackers took advantage of a vulnerability to software called MOVEit, which is widely used in the federal government for file encryption and data transfer.
According to information released this Thursday, “hackers” used this vulnerability to infect computers with malware, steal data and then ask for a reward from the victims.
you might be interested > US accuses Russian citizen of cyberattacks
Ipswitch, the company that developed this software, detailed on June 5 in a statement about a vulnerability that was discovered in “MOVEit” and announced that opened an investigationin addition to working with their clients to avoid any damage.
Two days later, on June 7, CISA itself issued a report asking government agencies to exercise caution and pointed to “CL0P” as the culprit.
This new attack adds to those that have hit universities, hospitals and local governments across the United States in recent weeks.
Among the victims are Johns Hopkins University in Baltimore and health centers affiliated with that educational center, which suffered a May 31 cyberattack that resulted in the theft of personal information ranging from patient names to bank details, the institution said yesterday, Wednesday, in a statement.
you might be interested > China-backed hackers attack critical US infrastructure
In addition, the Georgia State University System, which includes the University of Georgia, which has 40,000 students, and a dozen more centers of higher educationannounced on Wednesday that it had been subjected to a cyberattack and was investigating its “scale” and “severity”.
As reported in recent days, the governments of the states of Illinois and Minnesota also came under cyberattack at the end of May. (EFE)