Follow Slashdot blog updates by subscribing to our blog RSS feed

 



Forgot your password?
typodupeerror
×
Security

Alaska Discloses 'Sophisticated' Nation-State Cyberattack on Health Service (therecord.media) 11

A nation-state cyber-espionage group has gained access to the IT network of the Alaska Department of Health and Social Service (DHSS), the agency said last week. From a report: The attack, which is still being investigated, was discovered on May 2, earlier this year, by a security firm, which notified the agency. While the DHSS made the incident public on May 18 and published two updates in June and August, the agency did not reveal any details about the intrusion until last week, when it officially dispelled the rumor that this was a ransomware attack. Instead, the agency described the intruders as a "nation-state sponsored attacker" and "a highly sophisticated group known to conduct complex cyberattacks against organizations that include state governments and health care entities."
This discussion has been archived. No new comments can be posted.

Alaska Discloses 'Sophisticated' Nation-State Cyberattack on Health Service

Comments Filter:
  • by mi ( 197448 ) <slashdot-2017q4@virtual-estates.net> on Monday September 20, 2021 @12:05PM (#61813983) Homepage Journal

    The little Baltic country had to defend its networks from Russian onslaught [bbc.com]. They succeeded too — perhaps, Americans ought to invite help of Estonia, a fellow NATO-member...

  • I am always sceptical when I hear that a government department or corporation that has failed to protect its computers from attack is nonetheless able to identify the attackers. The same goes for Mandiant, whose role is unclear. Were they just passing by when they noticed the door hanging open and the windows smashed? Or were they working for the ADHSS in some capacity?

    • by DarkOx ( 621550 )

      Were they just passing by when they noticed the door hanging open and the windows smashed? Or were they working for the ADHSS in some capacity?

      I would say they were almost certainly brought in to do incident response and forensics. They may have or may not have had a ore-existing relationship to help with table top exercise, pen test, and response planning.

      Pretty she they did not just notice some broken windows

    • by ytene ( 4376651 )
      My first thought was pretty much exactly the same as yours.

      Then it occurred to me that (Alaskan) Senator Lisa Murkowski comes up for re-election next year. So... if you wanted to "tip the scales" in Alaska and you could get access to state infrastructure, maybe that would give you a route to forging identities on a whole-sale basis, right? I have ZERO evidence to support this - just "thinking out loud".

      I'm not sure which is the least plausible - that a nation state would take an interest in Alaska's m
      • by HiThere ( 15173 )

        There's no particular reason that the scenario you mention couldn't be a "both...and..." scenario. Nation-states are also known to occasionally want an infusion of cash from outside. And sometimes there's someone running a department there that isn't totally honest. Lots of possible scenarios for movie plots where you don't need any evidence.

        Or perhaps you could mangle it into a reframe of "The Producers".

    • I am always sceptical when I hear that a government department or corporation that has failed to protect its computers from attack is nonetheless able to identify the attackers

      Well identifying who it was isn't exactly rocket science, 99.99% of all attackers can be identified by the following:

      if( attack was ransomware or general disruption )
      printf( "It was Russia" );
      else
      if( attack was espionage )
      printf( "It was China" );
      else
      {
      /* NOTREACHED */
      printf( "Fucked if I know who it was" );
      }

  • by DarkOx ( 621550 ) on Monday September 20, 2021 @12:51PM (#61814177) Journal

    "'Sophisticated' Nation-State Cyberattack on Health Service" - Translation we know this happened because someone made a decision that every arm-chair expert will recognize as bad and we haven't a clue who is really behind it but there was Cyrillic in a string so - RUSSIA

  • It said "Click here to win a pony" insterad of "Click here to get infected"?

  • Lemme guess, someone opened a Microsoft Office document that came in an email attachment.
  • Perhaps patients should have a backup of their own data...?

Living on Earth may be expensive, but it includes an annual free trip around the Sun.

Working...