London Daily

Focus on the big picture.
Thursday, Mar 26, 2026

Suspected Russian hack is much worse than first feared: Here's what you need to know

Suspected Russian hack is much worse than first feared: Here's what you need to know

The scale of a sophisticated cyberattack on the U.S. government that was unearthed this week is much bigger than first anticipated.

The Cybersecurity and Infrastructure Security Agency said in a summary Thursday that the threat “poses a grave risk to the federal government.”

It added that “state, local, tribal, and territorial governments as well as critical infrastructure entities and other private sector organizations” are also at risk.

CISA believes the attack began at least as early as March. Since then, multiple government agencies have reportedly been targeted by the hackers, with confirmation from the Energy and Commerce departments so far.

“This threat actor has demonstrated sophistication and complex tradecraft in these intrusions,” CISA said. “Removing the threat actor from compromised environments will be highly complex and challenging.”

Russia accused


CISA has not said who it thinks is the “advanced persistent threat actor” behind the “significant and ongoing” campaign, but many experts are pointing to Russia.

“The magnitude of this ongoing attack is hard to overstate,” former Trump Homeland Security Advisor Thomas Bossert said in a piece for The New York Times on Thursday. “The Russians have had access to a considerable number of important and sensitive networks for six to nine months.”

Russian presidential spokesman Dmitry Peskov rejected the accusations, according to the Tass news agency.

“Even if it is true there have been some attacks over many months and the Americans managed to do nothing about them, possibly it is wrong to groundlessly blame Russians right away,” he told Tass. “We have nothing to do with this.”

The Russian Embassy in London did not immediately respond to CNBC’s request for comment.

The FBI said Wednesday it is “investigating and gathering intelligence in order to attribute, pursue, and disrupt the responsible threat actors.”

At this stage, it’s not clear what the hackers have done beyond accessing top-secret government networks and monitoring data.

Hackers also accessed systems at the National Nuclear Security Administration, which maintains the U.S. nuclear weapons stockpile, according to the Politico news site, citing officials familiar with the matter.

SolarWinds backdoor


CISA said those behind the attack used network management software made by SolarWinds, a Texas-headquartered IT firm, to breach the government networks.

As many as 18,000 SolarWinds Orion customers downloaded a software update that contained a backdoor, which the hackers used to gain access to the networks.


CISA issued an “emergency directive” this week instructing federal civilian agencies to “immediately disconnect or power down affected SolarWinds Orion products from their network.”

But the perpetrators may have used other means to access the networks. CISA said Thursday is investigating “evidence of additional access vectors, other than the SolarWinds Orion platform.”

Microsoft customers targeted


Microsoft was hacked in connection with the attack on SolarWinds’ widely used management software, Reuters reported Thursday.

Like with the cyberattack of SolarWinds, hackers infiltrated Microsoft products and then went after others, Reuters said, citing people familiar with the matter.

“We have been actively looking for indicators of this actor and can confirm that we detected malicious SolarWinds binaries in our environment, which we isolated and removed. We have not found evidence of access to production services or customer data,” a Microsoft spokesperson said in a statement shared with CNBC.

“Our investigations, which are ongoing, have found absolutely no indications that our systems were used to attack others,” they added.

Microsoft said that more than 40 client organizations were compromised in the attack.

“While roughly 80% of these customers are located in the United States, this work so far has also identified victims in seven additional countries,” Microsoft President Brad Smith said in a blog.

“This includes Canada and Mexico in North America; Belgium, Spain and the United Kingdom in Europe; and Israel and the UAE in the Middle East. It’s certain that the number and location of victims will keep growing.”

Smith added that “this is not espionage as usual” and “while governments have spied on each other for centuries, the recent attackers used a technique that has put at risk the technology supply chain for the broader economy.”


U.S. President-elect Joe Biden pledged Thursday to make cybersecurity a key area of focus for his administration.

“A good defense isn’t enough; We need to disrupt and deter our adversaries from undertaking significant cyberattacks in the first place,” Biden said in a statement issued by his transition team.

“We will do that by, among other things, imposing substantial costs on those responsible for such malicious attacks, including in coordination with our allies and partners. Our adversaries should know that, as President, I will not stand idly by in the face of cyber assaults on our nation.”

President Donald Trump, who has been silent about the hacking, threatened on Thursday to veto the National Defense Authorization Act, which includes money to help prevent such cyberattacks.

Newsletter

Related Articles

0:00
0:00
Close
Jaguar Land Rover Halts Production at UK Plant Amid Supplier Disruption
UK Police Reverse Position, Confirm Arrests Will Resume for Palestine Action Protests
UK Small Businesses Face Europe’s Steepest Cost Pressures, New Survey Reveals
US Envoy Urges UK to Proceed with King’s Visit Amid Diplomatic Sensitivities
FTSE 100 Drops Over One Percent as Middle East Tensions Weigh on Markets
UK CO2 Plant Set to Reopen as Authorities Move to Safeguard Supplies Amid Middle East Tensions
Trump Urges Stronger Defence Investment as He Questions Allied Naval Capabilities
New COVID Variant Detected in UK Raises Concerns Over Vaccine Effectiveness
FTSE Russell Moves to Standardise Free-Float Rules for UK and International Listings
HBO Max Launches in UK and Ireland, Marking Major Step in Global Streaming Expansion
UK Signals Readiness to Seize Russian ‘Shadow Fleet’ Vessels in Escalation of Sanctions Enforcement
Escalating Middle East Conflict Seen as Major Threat to UK Economic Stability
Early Challenges Mark Prince Harry and Meghan’s Australia Visit
UK Government Rejects Cover-Up Claims After Theft of Former PM Aide’s Phone
Cyprus Opens Strategic Talks with UK Over Sovereign Base Areas
UK Faces Risk of Sharp Inflation Surge Despite Stable Pre-Crisis Figures
UK Police Arrest Two Over Suspected Antisemitic Arson as Iran Link Investigated
UK Inflation Holds at Three Percent Ahead of Oil Price Shock from Iran Conflict
UK Fuel Prices Face Upward Pressure as Global Oil Trends Raise Cost Outlook
Girlguiding UK Sets September Deadline for Membership Policy Change Affecting Trans Participants
Germany and UK Accelerate Wind Power Expansion to Strengthen Energy Security
UK Moves to Ban Cryptocurrency Donations to Political Parties Over Foreign Influence Concerns
UK and Turkey Finalise Major Air Defence Agreement Worth Billions
Apple Introduces Mandatory Age Verification for iPhone Users in the UK
Diverging Views Emerge Over Meghan Markle’s Planned Australia Appearance
Trump Signals Frustration with UK Leadership Amid Diverging Approaches to Iran Conflict
UK Government Takes Control of Hunterston B as Landmark Nuclear Decommissioning Begins
UK Public Inflation Expectations Jump Sharply in March, Raising Pressure on Bank of England
UK Ministers Warn Expanded North Sea Drilling Would Deepen Exposure to Global Energy Volatility
Delayed UK Defence Investment Plan Leaves Suppliers Under Severe Financial Strain
Can Iran Strike the UK? Assessing the Real Military Threat as Conflict Escalates
Sanctioned Iranian Banker Linked to Luxury Marbella Villa Through UK Corporate Structure
Casey Bloys Navigates HBO Max UK Launch, Paramount Integration and Industry Buzz Over Netflix Meeting
Iran Conflict Sparks Sharp Turbulence in UK Mortgage Market, Reaching Pandemic-Era Disruption Levels
Major Donor Urges University of Kentucky to Reconsider Mitch Barnhart’s Post-Retirement Role
United Kingdom Moves to Lead International Effort to Reopen Strait of Hormuz
UK Police Investigate Targeted Attack on Jewish Ambulance Vehicles
UK Police Investigate Targeted Attack on Jewish Ambulance Vehicles
Senior UK Advocate Criticises Barnhart Retirement Appointment, Calls for Reconsideration
UK Finds No Evidence of Direct Iranian Threat to Britain, Says Prime Minister Starmer
Assessing Iran’s Strike Capability and the UK’s Readiness Amid Rising Tensions
NATO Unable to Confirm Iran’s Role in Strike on UK-US Base as Tehran Denies Involvement
University of Kentucky’s Youling Xiong Receives SEC Faculty Achievement Award for 2026
Trump Highlights Satirical Portrayal of UK Leadership Amid Talks with Prime Minister Starmer on Iran Conflict
Trump Highlights Satirical Portrayal of UK Leadership Amid Talks with Prime Minister Starmer on Iran Conflict
UK Fuel Prices Surge Toward Crisis Levels as Experts Warn of Further Sharp Increases
UK Fuel Prices Surge Toward Crisis Levels as Experts Warn of Further Sharp Increases
Duchess of Sussex Secures ‘As Ever’ Trademark Rights in Australia Ahead of High-Profile Visit
UK Reaffirms Security as Officials Reject Claims of Immediate Iranian Missile Threat
Rising Middle East Tensions Spark ‘Trumpflation’ Debate Over Impact on UK Households
×