US DoD Department Hacked And Data Compromised
Saturday, February 22, 2020
One security expert said that the DISA breach on the surface looks to have been minor, but an investigation was needed to uncover if other systems were impacted.
“The details of the reported breach are pretty obscure,” said Ilia Kolochenko, founder and CEO of web security company ImmuniWeb. “At first glance, just one system hosting employee data had been breached and, if so, it seems to be a comparatively insignificant security incident of minor importance.”
“However, an in-depth investigation should be urgently conducted to ascertain whether other systems or devices have been impacted,” said Kolochenko. “Frequently, nation-state attackers commence their attacks by breaching the weakest link accessible from the Internet and then silently propagate to all other interconnected systems in a series of chained attacks.”
“Worse, access to personal data of the agency staff greatly facilitates a wide spectrum of sophisticated spear-phishing and identity theft attacks capable to bypass virtually any modern layers of defense,” Kolochenko added.
“The present disclosure timeline seems to be impermissibly protracted given that the breach reportedly happened almost a year ago,” said Kolochenko. “This may be an indicator of attack sophistication, and what has been reported so far may just the tip of the iceberg.” Read Full Article
TechRepublic: MGM Hotel breach highlights need for sophisticated cloud security
Forbes: U.S. Defense Agency That Secures Trump’s Communications Confirms Data Breach