US Federal Reserve says internal site breached by hackers

Advertisement
By Reuters | Updated: 6 February 2013 15:16 IST
The Federal Reserve said on Tuesday that one of its internal websites had been briefly breached by hackers, though no critical functions of the U.S. central bank were affected by the intrusion.

The admission, which raises questions about cyber-security at the Fed, follows a claim that hackers linked to the activist group Anonymous had struck the Fed on Sunday, accessing personal information of more than 4,000 U.S. bank executives, which it published on the Web.

"The Federal Reserve system is aware that information was obtained by exploiting a temporary vulnerability in a website vendor product," a Fed spokeswoman said.

"Exposure was fixed shortly after discovery and is no longer an issue. This incident did not affect critical operations of the Federal Reserve system," the spokeswoman said, adding that all individuals effected by the breach had been contacted.

Advertisement

Technology news site ZDNet separately reported that Anonymous appeared to have published information allegedly containing the login information, credentials, Internet protocol addresses and contact information of more than 4,000 U.S. bankers on Sunday night.

Advertisement

The claim was made via Twitter over an account registered to OpLastResort, which is linked to Anonymous, a loosely organized group of hacker activists who have claimed responsibility for scores of attacks on government and corporate sites over the past several years.

OpLastResort is a campaign that some hackers linked to Anonymous have started to protest government prosecution of computer prodigy Aaron Swartz, who committed suicide on January 11.

Advertisement

The Fed declined to identify which website had been hacked. But information that it provided to bankers indicated that the site, which was not public, was a contact database for banks to use during a natural disaster.

A copy of the message sent by the Fed to members of its Emergency Communication System (ECS), which was obtained by Reuters, warned that mailing address, business phone, mobile phone, business email, and fax numbers had been published.

Advertisement

"Some registrants also included optional information consisting of home phone and personal email. Despite claims to the contrary, passwords were not compromised," the Fed said.

The central bank separately confirmed the authenticity of the message to ECS members.

The website's purpose is to allow bank executives to update the Fed if their operations have been flooded or otherwise damaged in a storm or other disaster. That helps the Fed to assess the overall impact of the event on the banking system.

Hackers identifying themselves as Anonymous infiltrated the U.S. Sentencing Commission website late last month to protest the government's treatment of the Swartz case.

Swartz was charged with using the Massachusetts Institute of Technology's computer networks to steal more than 4 million articles from JSTOR, an online archive and journal distribution service. He faced a maximum sentence of 31 years if convicted.

Cyber-security specialists said that any organization's computer systems could be breached, and that it was up to an organization like the Fed to prioritize its security needs, in order to protect its most sensitive information from attack.

"Every system is going to have some vulnerability to it. You cannot set up a system that will survive all possible attacks," said Mark Rasch, director of Privacy and security consulting at CSC and a former federal cyber crimes prosecutor.

"You have to defend against every possible vulnerability and the attackers only have to find one way in," he said.

© Thomson Reuters 2013

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo X300, Vivo X300 Pro India Launch Today: Everything You Need to Know
  2. Samsung Galaxy Z TriFold Launched With 10-Inch Display at This Price
  3. Apple Adds iPhone SE (First Generation), More Products to Obsolete List
  4. Vivo V70 FE Tipped to Launch in India Soon With These Specifications
  5. OnePlus Pad Go 2 Gets Certification in the US Ahead of December 17 Launch
  6. OnePlus 15R, OnePlus Pad Go 2 Set for Live Launch at Bengaluru Keynote
  7. Redmi 15C 5G Confirmed to Launch With 6,000mAh Battery and This Chip
  8. Vivo X300 Ultra Launch Timeline, Battery Capcity Leaked
  9. Netflix Will Not Let You Cast From a Phone to TVs and Streaming Devices
  1. iPhone SE, iPad Pro 12.9-Inch (Second Generation) Added to Apple's Vintage and Obsolete Products List
  2. OnePlus 15R, OnePlus Pad Go 2 to Launch at Bengaluru Keynote; Key Specifications Revealed
  3. Samsung Galaxy Z TriFold Launched With 10-Inch Inner Display, 5,600mAh Battery: Price, Specifications
  4. Vivo X300, Vivo X300 Pro Launching Today: Know Price in India, Features and Specifications
  5. Scientists Warn Southern Ocean Could ‘Burp’ Stored Heat, Delaying Global Cooling for 100 Years
  6. New Gravitational-Wave Signal May Reveal Primordial Black Holes Born After the Big Bang
  7. James Webb Space Telescope Finds Unexpected Ultraviolet Radiation Around Young Protostars
  8. Cristina Kathirvelan Begins Streaming on Aha Tamil: A Heartwarming Tale of Love and Mistaken Identity
  9. Ranveer Singh-Starrer Dhurandhar OTT Release Date Reportedly Out: Everything You Need to Know
  10. Bad Guys 2 Now Streaming Online: What You Need to Know About DreamWorks’ Funniest Heist Crew
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.