Washington Post servers attacked, paper suspects Chinese hackers
Chinese hackers are suspected to be behind the attack
IDG News Service - The Washington Post's servers were recently broken into by a group of unknown origin that gained access to the user names and passwords of its employees, the paper said on Wednesday.
The extent of the loss of company data was not immediately clear, though officials are planning to ask all employees to change their user names and passwords, the newspaper said in a report. The Post said the passwords were encrypted. However, hackers in some cases have been able to decode encrypted passwords.
The Post did not see any evidence that the hackers accessed information about its subscribers, such as credit cards or home addresses. Nor were there immediate signs that they accessed the Post's publishing system or email, nor sensitive personal information of its employees, such as Social Security numbers.
Post officials learned of the intrusion on Wednesday from Mandiant, a cybersecurity contractor that monitors the paper's networks. The breach was of relatively short duration, maybe a few days at most, and an investigation is ongoing, the story said, citing a Post spokeswoman. It marks at least the third intrusion for the paper over the past three years, according to the paper.
The Post could not be immediately reached for comment.
The Post suspects that Chinese hackers may be behind the intrusion. Evidence from a 2011 breach of the paper's network pointed to the involvement of Chinese hackers. Earlier this year, attacks on the The Wall Street Journal and The New York Times also raised suspicions of hacking from China.
The latest intrusion began with the breach of a server used by the Post's foreign staff which then spread to other company servers before being discovered, the paper said.
- Step Out of the Bull's-Eye Learn about the evolution of targeted attacks, the latest in security intelligence, and strategic steps to keep your business safe.
- Using Cyber Insurance and Cybercrime Data to Limit Your Business Risk This paper examines the challenges of understanding cyber risks, the importance of having the right cyber risk intelligence, and how to use this...
- 5 Tips to Secure Small Business Backdoors in the Enterprise Supply Chain This paper examines the insecurity of the small businesses in the supply chain and offers tips to close those backdoors into the enterprise.
- Comprehensive Advanced Threat Defense The hot topic in the information security industry these days is "Advanced Threat Defense" (ATD). This paper describes a comprehensive, network-based approach to...
- Live Webcast Security Vulnerabilities Associated With Having Local Administrator Privileges Viewfinity will demonstrate how removing admin rights and granularly managing privileges at the application level reduces the attack surface.
- Security Vulnerabilities Associated With Having Local Administrator Privileges Viewfinity will demonstrate how removing admin rights and granularly managing privileges at the application level reduces the attack surface.
- What Does it Take to Deliver a Superior Customer Experience? The Two Top-Rated Online Retailers, B&H Photo and Crutchfield Electronics, Share Their Secrets Discuss practical CX tools and service methods such as contact center agents and the use of realtime speech analytics to help contact center... All Cybercrime and Hacking White Papers | Webcasts