This website collects cookies to deliver better user experience, you agree to the Privacy Policy.
Accept
Sign In
The Texas Reporter
  • Home
  • Trending
  • Texas
  • World
  • Politics
  • Opinion
  • Business
    • Business
    • Economy
    • Real Estate
  • Crypto & NFTs
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Travel
    • Fashion
    • Books
    • Arts
  • Health
  • Sports
  • Entertainment
Reading: Russia Appears to Carry Out Hack Through System Used by U.S. Aid Agency
Share
The Texas ReporterThe Texas Reporter
Font ResizerAa
Search
  • Home
  • Trending
  • Texas
  • World
  • Politics
  • Opinion
  • Business
    • Business
    • Economy
    • Real Estate
  • Crypto & NFTs
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Travel
    • Fashion
    • Books
    • Arts
  • Health
  • Sports
  • Entertainment
Have an existing account? Sign In
Follow US
© The Texas Reporter. All Rights Reserved.
Politics

Russia Appears to Carry Out Hack Through System Used by U.S. Aid Agency

Editorial Board
Editorial Board Published May 28, 2021
Share
Russia Appears to Carry Out Hack Through System Used by U.S. Aid Agency
SHARE

Hackers linked to Russia’s main intelligence agency surreptitiously seized an email system used by the State Department’s international aid agency to burrow into the computer networks of human rights groups and other organizations of the sort that have been critical of President Vladimir V. Putin, Microsoft Corporation disclosed on Thursday.

Discovery of the breach comes only three weeks before President Biden is scheduled to meet Mr. Putin in Geneva, and at a moment of increased tension between the two nations — in part because of a series of increasingly sophisticated cyberattacks emanating from Russia.

The newly disclosed attack was also particularly bold: By breaching the systems of a supplier used by the federal government, the hackers sent out genuine-looking emails to more than 3,000 accounts across more than 150 organizations that regularly receive communications from the United States Agency for International Development. Those emails went out as recently as this week, and Microsoft said it believes the attacks are ongoing.

The email was implanted with code that would give the hackers unlimited access to the computer systems of the recipients, from “stealing data to infecting other computers on a network,” Tom Burt, a Microsoft vice president, wrote on Thursday night.

Last month, Mr. Biden announced a series of new sanctions on Russia and the expulsion of diplomats for a sophisticated hacking operation, called SolarWinds, that used novel methods to breach at least seven government agencies and hundreds of large American companies.

That attack went undetected by the U.S. government for nine months, until it was discovered by a cybersecurity firm. In April, Mr. Biden said he could have responded far more strongly, but “chose to be proportionate” because he did not want “to kick off a cycle of escalation and conflict with Russia.”

The Russian response nonetheless seems to have been escalation. The malicious activity was underway as recently as the past week. That suggests that the sanctions and whatever additional covert actions the White House carried out — part of a strategy of creating “seen and unseen” costs for Moscow — has not choked off the Russian government’s appetite for disruption.

A spokesperson for the Cybersecurity and Infrastructure Security Agency at the Department of Homeland Security said late Thursday that the agency was “aware of the potential compromise” at the Agency for International Development and that it was “working with the F.B.I. and U.S.A.I.D. to better understand the extent of the compromise and assist potential victims.”

Microsoft identified the Russian group behind the attack as Nobelium, and said it was the same group responsible for the SolarWinds hack. Last month, the American government explicitly said that SolarWinds was the work of the S.V.R., one of the most successful spinoffs from the Soviet-era K.G.B.

The same agency was involved in the hacking of the Democratic National Committee in 2016, and before that, in attacks on the Pentagon, the White House email system and the State Department’s unclassified communications.

It has grown increasingly aggressive and creative, federal officials and experts say. The SolarWinds attack was never detected by the United States government, and was carried out through code implanted in network management software that the government and private companies use widely. When customers updated the SolarWinds software — much like updating an iPhone overnight — they were unknowingly letting in an invader.

Among the victims last year were the Departments of Homeland Security and Energy, as well as nuclear laboratories.

When Mr. Biden came to office, he ordered a study of the SolarWinds case, and officials have been working to prevent future “supply chain” attacks, in which adversaries infect software used by federal agencies. That is similar to what happened in this case, when Microsoft’s security team caught the hackers using a widely used email service, provided by a company called Constant Contact, to send malicious emails that appeared to come from genuine Agency for International Development addresses.

Updated 

May 26, 2021, 9:17 p.m. ET

But the content was, at times, hardly subtle. In one email sent through Constant Contact’s service on Tuesday, the hackers highlighted a message claiming that “Donald Trump has published new emails on election fraud.” The email bore a link that, when clicked, drops malicious files onto the computers of the recipients.

Microsoft noted that the attack differed “significantly” from the SolarWinds hack, using new tools and tradecraft in an apparent effort to avoid detection. It said that the attack was still in progress and that the hackers were continuing to send spearphishing emails, with increasing speed and scope. That is why Microsoft took the unusual step of naming the agency whose email addresses were being used and of publishing samples of the fake email.

In essence, the Russians got into the Agency for International Development email system by routing around the agency and going directly after its software suppliers. Constant Contact manages mass emails and other communications on the aid agency’s behalf.

“Nobelium launched this week’s attacks by gaining access to the Constant Contact account of U.S.A.I.D.,” Mr. Burt of Microsoft wrote. Constant Contact could not be reached for comment.

Microsoft, like other major firms involved in cybersecurity, maintains a vast sensor network to look for malicious activity on the internet, and is frequently a target itself. It was deeply involved in revealing the SolarWinds attack.

In this case, Microsoft reported, the goal of the hackers was not to go after the State Department or the aid agency, but to use their connections to get inside groups that work in the field — and in many cases rank among Mr. Putin’s most potent critics.

“At least a quarter of the targeted organizations were involved in international development, humanitarian, and human rights work,” Mr. Burt wrote. While he did not name them, many such groups have revealed Russian action against dissidents, or protested the poisoning, conviction and jailing of Russia’s best-known opposition leader, Alexei A. Navalny.

The attack suggests Russia’s intelligence agencies are stepping up their campaign, perhaps to demonstrate that the country would not back down in the face of sanctions, the expulsion of diplomats and other pressure.

Mr. Biden raised the SolarWinds attack with Mr. Putin in a phone call last month, telling him that the sanctions and expulsions were a demonstration of how his administration would no longer tolerate an increased tempo of cyberoperations.

Mr. Putin has denied Russian involvement, and some Russian news outlets have argued that the United States launched the attack against itself.

At the time, the White House also placed a range of new sanctions on Russian individuals and assets, including new restrictions on purchasing Russia’s sovereign debt, which will make it more difficult for Russia to raise money and support its currency.

“This is the start of a new U.S. campaign against Russian malign behavior,” Treasury Secretary Janet L. Yellen said at the time.

Tensions over Russia’s harboring of cybercriminals escalated significantly this month after a ransomware group held hostage the business networks at Colonial Pipeline. The attack forced the company to shut down a pipeline that brings nearly half the gas, diesel and jet fuel to the East Coast, prompting a surge in gas prices and panic buying at the pump.

Mr. Biden said two weeks ago that “we have been in direct communication with Moscow about the imperative for responsible countries to take decisive action against these ransomware networks.”

TAGGED:Politics
Share This Article
Twitter Email Copy Link Print
Previous Article Senate Poised to Pass 5 Billion Bill to Bolster Competitiveness With China Senate Poised to Pass $195 Billion Bill to Bolster Competitiveness With China
Next Article Facebook Takes on Superspreaders Facebook Takes on Superspreaders

Editor's Pick

Sizzling Lady Summer time Begins within the Bathe—Right here’s Learn how to Prep Your Pores and skin

Sizzling Lady Summer time Begins within the Bathe—Right here’s Learn how to Prep Your Pores and skin

We might obtain a portion of gross sales if you buy a product by a hyperlink on this article. Most…

By Editorial Board 8 Min Read
Alpine’s Sizzling Hatch EV Has a Constructed-In, ‘Gran Turismo’ Model Driving Teacher

One other win over its Renault 5 sibling is a multi-link rear…

3 Min Read
Louis Vuitton Is Dropping a New Perfume As a result of It’s Sizzling | FashionBeans

We independently consider all beneficial services and products. Any services or products…

2 Min Read

Latest

Debut Novel The Revenant’s Mark Blends Revolutionary War History with Dark Fantasy in a Haunting Tale of Resurrection and Reckoning

Debut Novel The Revenant’s Mark Blends Revolutionary War History with Dark Fantasy in a Haunting Tale of Resurrection and Reckoning

LITTLETON, CO — Wesley C. Martin, a former U.S. Marine…

July 19, 2025

GARI Emerges as a Global Leader in Research Mentorship and Scholarly InnovationAustin, Texas

As global higher education continues to…

July 19, 2025

“A Family’s Fight to Reclaim Their Legacy”

Introduction: For generations, the Wright family…

July 9, 2025

AR Global Inc CEO Kason Roberts Donates to Support Kerrville Storm Victims, Mobilizes Team for Restoration Efforts

Kerrville, Texas — In the aftermath…

July 9, 2025

Bitcoin Tops $109,000 After Senate Passes Trump’s ‘Big Beautiful Bill’ – “The Defiant”

The crypto market posted modest good…

July 9, 2025

You Might Also Like

Trump hasn’t delivered ‘no taxes on tips’ promise—however Democrats ought to
Politics

Trump hasn’t delivered ‘no taxes on tips’ promise—however Democrats ought to

In its explainer on President Donald Trump’s “no taxes on tips” provision in his “One Big, Beautiful Bill,” NPR used…

5 Min Read
Elon Musk’s obnoxious political ambitions are tanking Tesla
Politics

Elon Musk’s obnoxious political ambitions are tanking Tesla

Tesla traders reportedly aren’t thrilled about CEO Elon Musk’s plans to launch a political get together. Based on The Washington…

6 Min Read
Sign is again to hang-out the Trump workforce—this time concentrating on Marco Rubio
Politics

Sign is again to hang-out the Trump workforce—this time concentrating on Marco Rubio

There’s an impersonator of Secretary of State Marco Rubio on the free, and so they’re utilizing synthetic intelligence to focus…

4 Min Read
RFK Jr. is steering public well being companies off a cliff
Politics

RFK Jr. is steering public well being companies off a cliff

It’s tough to maintain monitor of all of the methods through which Well being and Human Providers Secretary Robert F.…

6 Min Read
The Texas Reporter

About Us

Welcome to The Texas Reporter, a newspaper based in Houston, Texas that covers a wide range of topics for our readers. At The Texas Reporter, we are dedicated to providing our readers with the latest news and information from around the world, with a focus on issues that are important to the people of Texas.

Company

  • About Us
  • Newsroom Policies & Standards
  • Diversity & Inclusion
  • Careers
  • Media & Community Relations
  • WP Creative Group
  • Accessibility Statement

Contact Us

  • Contact Us
  • Contact Customer Care
  • Advertise
  • Licensing & Syndication
  • Request a Correction
  • Contact the Newsroom
  • Send a News Tip
  • Report a Vulnerability

Term of Use

  • Digital Products Terms of Sale
  • Terms of Service
  • Privacy Policy
  • Cookie Settings
  • Submissions & Discussion Policy
  • RSS Terms of Service
  • Ad Choices

© The Texas Reporter. All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?