SolarWinds Hackers Said to Have Stolen Sensitive US Data on Russia Sanctions, Intelligence Probes

American officials have blamed Russia’s SVR foreign intelligence service for the SolarWinds hack.

Advertisement
By Reuters | Updated: 8 October 2021 14:21 IST
Highlights
  • The campaign alarmed officials with its stealth and careful staging
  • The group also took advantage of weaknesses in Microsoft's methods
  • The hackers breached unclassified Justice Department networks

The hackers burrowed into the code production process at SolarWinds

The suspected Russian hackers who used SolarWinds and Microsoft software to burrow into US federal agencies emerged with information about counter-intelligence investigations, policy on sanctioning Russian individuals and the country's response to COVID-19, people involved in the investigation told Reuters.

The hacks were widely publicised after their discovery late last year, and American officials have blamed Russia's SVR foreign intelligence service, which denies the activity. But little has been disclosed about the spies' aims and successes.

Advertisement

The reluctance of some publicly traded companies to explain their exposure has prompted a broad Securities and Exchange Commission inquiry.

The campaign alarmed officials with its stealth and careful staging. The hackers burrowed into the code production process at SolarWinds, which makes widely used software for managing networks.

Advertisement

The group also took advantage of weaknesses in Microsoft's methods for identifying users in Office 365, breaching some targets that used Microsoft software but not SolarWinds.

It has been previously reported that the hackers breached unclassified Justice Department networks and read emails at the departments of treasury, commerce and homeland security. Nine federal agencies were breached. The hackers also stole digital certificates used to convince computers that software is authorised to run on them and source code from Microsoft and other tech companies.

Advertisement

One of the people involved said that the exposure of counter-intelligence matters being pursued against Russia was the worst of the losses.

A spokesperson for the Justice Department did not respond to a request for comment.

Advertisement

A White House official said that President Joe Biden has issued orders improving federal agency security, among other things requiring more multifactor-authentication and more monitoring of workplace devices.

In an annual threat-review paper released on Thursday, Microsoft said the Russian spies were ultimately looking for government material on sanctions and other Russia-related policies, along with US methods for catching Russian hackers.

Cristin Goodwin, general manager of Microsoft's Digital Security Unit, said the company drew its conclusions from the types of customers and accounts it saw being targeted. In such cases, she told Reuters, “You can infer the operational aims from that.”

Others who worked on the government's investigation went further, saying they could see the terms that the Russians used in their searches of US digital files, including “sanctions.”

Chris Krebs, the former head of US cyber-defense agency CISA and now an adviser to SolarWinds and other companies, said the combined descriptions of the attackers' goals were logical.

“If I'm a threat actor in an environment, I've got a clear set of objectives. First, I want to get valuable intelligence on government decision-making. Sanctions policy makes a ton of sense,” Krebs said.

The second thing is to learn how the target responds to attacks, or "counter-incident response," he said: "I want to know what they know about me so I can improve my tradecraft and avoid detection.”

© Thomson Reuters 2021


Amazon's month-long sale, the Great Indian Festival, is back. This week on Orbital, the Gadgets 360 podcast, Amazon India's consumer electronics head Akshay Ahuja takes us behind the scenes. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: SolarWinds, Microsoft, COVID 19
Advertisement

Related Stories

Popular Mobile Brands
  1. Realme P4 Lite 5G Launched in India With These Specifications
  2. Huawei MatePad SE 11 Set to Launch at This Price in India
  3. OnePlus Nord 6 Could Launch in India at This Price
  4. Here Are the Best Laser Printers for Home Printing Needs
  5. OnePlus Watch 4 Could Launch Soon, Listing on EMVCo Site Hints
  6. iQOO Z11, iQOO Z11x to Launch in China On This Date
  7. WhatsApp Could Soon Bring Noise Cancellation for Video, Voice Calls
  1. All the Empty Rooms Now Available for Streaming Online: What You Need to Know
  2. Bitcoin Trades Near $71,000 as Macro Uncertainty and ETF Flows Weigh on Sentiment
  3. OnePlus Nord Buds 4 Pro Launched in India With Up to 55dB ANC, Up to 54 Hours of Total Playback Time: Price, Features
  4. Realme P4 Lite 5G Launched in India With Dimensity 6300 5G Chip, 7,000mAh Battery: Price, Specifications
  5. OnePlus Watch 4 Reportedly Visits Certification Database Hinting at an Imminent Launch
  6. Microsoft Pauses Automatic Rollout of Microsoft 365 Copilot App on Windows
  7. Vivo X300 Ultra and Vivo X300s Launch Date Announced as Company Teases Designs
  8. iQOO Z11, iQOO Z11x China Launch Date Announced: Expected Features, Specifications
  9. Fortnite Returns to Google Play Store for Android Users Worldwide
  10. WhatsApp Beta Update Reportedly Adds Noise Cancellation for Video, Voice Calls on Android
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.