Hackers breached DHS after alarms were twice ruled ‘false positives’


Hackers managed to find their way into the US Department of Homeland Security’s primary information sharing platform, gaining unfettered access to the HSIN network that hosts unclassified information that multiple US agencies and international rely on.

The hack allowed the attackers to modify server files, run malicious code and steal credential files while installing backdoors and deleting logs to remove their digital footprint.

Their movements were flagged twice by automated systems and analysts in May 2026, before being dismissed as a false positive each time before an active breach was declared a month later.

Read more…
Source:  TechRadar News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • Philippines, US sign military intelligence-sharing deal to counter China

    November 18, 2024

    The Philippines and the United States have signed a military intelligence-sharing deal, in a further deepening of security ties between the two defence treaty allies as they seek to counter a resurgent China. Secretary of Defense Gilberto Teodoro and his visiting US counterpart Lloyd Austin signed the agreement on Monday during a ceremony at the Department ...

  • T-Mobile Targeted in Chinese Cyber-Espionage

    November 16, 2024

    Chinese hackers feasted on T-Mobile as their latest cyber espionage victim. The leading carrier in the US is not the only company affected as other telecom giants are at risk of getting infiltrated. Hackers linked to a Chinese intelligence agency invaded T-Mobile’s network in a months-long operation designed to monitor cellphone communications of high-value intelligence targets, ...

  • Meta will face antitrust trial over Instagram, WhatsApp acquisitions

    November 13, 2024

    Facebook owner Meta Platforms must face trial in a U.S. Federal Trade Commission lawsuit seeking its break-up over claims that it bought Instagram and WhatsApp to crush emerging competition in social media, a judge in Washington ruled on Wednesday. Judge James Boasberg largely denied Meta’s motion to end the case filed against Facebook in 2020, during ...

  • FBI: 2023 Top Routinely Exploited Vulnerabilities

    November 12, 2024

    In 2023, malicious cyber actors exploited more zero-day vulnerabilities to compromise enterprise networks compared to 2022, allowing them to conduct cyber operations against higher-priority targets. In 2023, the majority of the most frequently exploited vulnerabilities were initially exploited as a zero-day, which is an increase from 2022, when less than half of the top exploited vulnerabilities ...

  • Pentagon leaker Jack Teixeira sentenced to 15 years in prison

    November 12, 2024

    Jack Teixeira, a member of the Massachusetts National Guard, has been jailed for 15 years for leaking classified documents about the war in Ukraine and other military secrets. A federal judge in Boston, United States, on Tuesday sentenced the 22-year-old after he pleaded guilty earlier this year to six counts of wilful retention and transmission of ...

  • FBI: Easy Access to Information for Conducting Fraudulent Emergency Data Requests Impacts US-Based Companies and Law Enforcement Agencies

    November 4, 2024

    The Federal Bureau of Investigation (FBI) is releasing this Private Industry Notification to highlight a trend of compromised US and foreign government email addresses used to conduct fraudulent emergency data requests to US-based companies, exposing personally identifying information (PII). While the concept of fraudulent emergency data requests was previously used by other threat actors, such as ...