Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Billions Spent on U.S. Cyberdefenses Failed to Detect Giant Russian Hack
The New York Times via Yahoo ^ | December 17th, 2020 | David E. Sanger, Nicole Perlroth and Julian E. Barnes

Posted on 12/17/2020 11:35:26 AM PST by Mariner

WASHINGTON — Over the past few years, the U.S. government has spent tens of billions of dollars on cyberoffensive abilities, building a giant war room at Fort Meade, Maryland, for U.S. Cyber Command, while installing defensive sensors all around the country — a system named Einstein to give it an air of genius — to deter the nation’s enemies from picking its networks clean, again.

(Excerpt) Read more at news.yahoo.com ...


TOPICS: Business/Economy; Crime/Corruption; Foreign Affairs; News/Current Events
KEYWORDS: cybersecurity; cyberwarfare; hacking; passwords; solarwinds
Navigation: use the links below to view more comments.
first 1-2021-4041 next last
"Reuters earlier reported that a researcher informed the company last year that he had uncovered the password to SolarWinds’ update mechanism — the vehicle through which 18,000 of its customers were compromised. The password was “solarwinds123.”

AND no way to protect against malicious code injection by the multiple parties, worldwide, who are building their management suite.

And that suite connects to every device in the network via SNMP V2 "Securely". Pulling User and Machine IDs (necessary for both QoS and NAC)...enabling administrative access to every connected machine, switch, router, security device/firewall, Authentication/Directory server etc.

Hack of the century, so far. And somebody has to fry for it.

Many will focus on the NYT's Russia Russia Russia and anti-Trump characterizations. But when they emote, they will fail to understand the breadth and depth of this attack.

1 posted on 12/17/2020 11:35:26 AM PST by Mariner
[ Post Reply | Private Reply | View Replies]

To: Mariner

2 posted on 12/17/2020 11:37:33 AM PST by Intar
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mariner

Because they didn’t read about it in Yahoo! news first.


3 posted on 12/17/2020 11:37:43 AM PST by PGR88
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mariner

What do you expect from a govt that is so incompetent that it actually makes it possible to access secret data on the world wide web? Seriously. This is moronic beyond comprehension and proof of how abysmally stupid these people are who are supposed to be caretakers of the public trust.


4 posted on 12/17/2020 11:39:58 AM PST by Seruzawa (TANSTAAFL!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mariner

It’s China that’s attacking us. The media still is covering for China and their Manchurian Candidates, Biden and Harris.


5 posted on 12/17/2020 11:41:44 AM PST by ransomnote (IN GOD WE TRUST)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Seruzawa

Government is so inept and swampy that it would take Trump working the rest of his life and then some just to make a tiny dent in it. We’d have to build many more prisons.


6 posted on 12/17/2020 11:43:41 AM PST by Don Corleone (The truth the whole truth and nothing but the truth)
[ Post Reply | Private Reply | To 4 | View Replies]

To: Intar

Well,

That’s because that is all the old folks in senior levels know (1947 - 1989) many former military or other gov...

Besides, Bill Gates, Jeff Bezos and Walmart would be upset if we look at the Chinese to much. They’re our friends, in case you didn’t know.


7 posted on 12/17/2020 11:43:58 AM PST by Red6
[ Post Reply | Private Reply | To 2 | View Replies]

To: Mariner
Does the U.S. Cyber Command leadership have an explanation for the FUBAR yet?!?
8 posted on 12/17/2020 11:44:04 AM PST by Carl Vehse
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mariner
Have we hit thirty trillion yet? Maybe the national debt is that missing black hole they're looking for.
9 posted on 12/17/2020 11:47:06 AM PST by SpaceBar
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mariner

Yawn.


10 posted on 12/17/2020 11:54:31 AM PST by Trumpisourlastchance
[ Post Reply | Private Reply | To 1 | View Replies]

To: Intar

It’s bullshit spouted by psychotics.


11 posted on 12/17/2020 11:55:15 AM PST by Trumpisourlastchance
[ Post Reply | Private Reply | To 2 | View Replies]

To: SpaceBar

157 Trillion. The nation is done. Save yourselves.


12 posted on 12/17/2020 11:55:55 AM PST by Trumpisourlastchance
[ Post Reply | Private Reply | To 9 | View Replies]

To: Mariner

billions to the CIA each year and they failed to foresee the collapse of the soviet union?
bunch of yahoo’s


13 posted on 12/17/2020 11:56:10 AM PST by Joe Boucher ( Molon Labe' Baby, Molon Labe )
[ Post Reply | Private Reply | To 1 | View Replies]

To: Joe Boucher

The solarwinds thing is no joke. I don’t know who did it, but they did it.


14 posted on 12/17/2020 11:58:39 AM PST by rlbedfor
[ Post Reply | Private Reply | To 13 | View Replies]

To: Mariner

makes sense...obviously the Democrat Party has changed its name to ....RUSSIAN Party!!!!


15 posted on 12/17/2020 11:59:41 AM PST by mo ("If you understand, no explanation is needed; if you don't understand, no explanation is possible)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mariner

> SNMP V2

Owww. Way back in the day (decades ago) I was writing BER level code to integrate this with databases. There ain’t no modern security in there.


16 posted on 12/17/2020 12:02:23 PM PST by glorgau
[ Post Reply | Private Reply | To 1 | View Replies]

To: Carl Vehse

They are still “assessing impact” lol

In other words, coming up with a plausible BS story to cov4er their collective ass.

And where the hell was the vaunted NSA?


17 posted on 12/17/2020 12:06:18 PM PST by Mariner (War Criminal #18)
[ Post Reply | Private Reply | To 8 | View Replies]

To: glorgau

“There ain’t no modern security in there.”

It’s handled at the next layer up, Network Access Control.

Or, should be.

But if the master SNMP platform is compromised, you have everything. All of it.


18 posted on 12/17/2020 12:08:56 PM PST by Mariner (War Criminal #18)
[ Post Reply | Private Reply | To 16 | View Replies]

To: Mariner
Over the past few years, the U.S. government has spent tens of billions of dollars on cyberoffensive abilities

The problem with cyber is that what you spent over the past few years isn't meaningful Training, yes. Everything else is going to get dated ... fast! You need to be spending constantly to stay ahead of the curve, and not just on defensive measures. To play defense you must thoroughly understand offense. And you need to spend to reinvent both all the time or you get left behind.

19 posted on 12/17/2020 12:13:07 PM PST by pepsi_junkie (Often wrong, but never in doubt!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mariner
"Reuters earlier reported that a researcher informed the company last year that he had uncovered the password to SolarWinds’ update mechanism — the vehicle through which 18,000 of its customers were compromised. The password was “solarwinds123.”

Please tell me this is a joke...

20 posted on 12/17/2020 12:14:12 PM PST by GOPJ (If China let go a virus that primarily killed gays, would Madison Ave. still up Chinese in TV ads? )
[ Post Reply | Private Reply | To 1 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-4041 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson