London Daily

Focus on the big picture.
Tuesday, Oct 06, 2026

Suspected Russian hack is much worse than first feared: Here's what you need to know

Suspected Russian hack is much worse than first feared: Here's what you need to know

The scale of a sophisticated cyberattack on the U.S. government that was unearthed this week is much bigger than first anticipated.

The Cybersecurity and Infrastructure Security Agency said in a summary Thursday that the threat “poses a grave risk to the federal government.”

It added that “state, local, tribal, and territorial governments as well as critical infrastructure entities and other private sector organizations” are also at risk.

CISA believes the attack began at least as early as March. Since then, multiple government agencies have reportedly been targeted by the hackers, with confirmation from the Energy and Commerce departments so far.

“This threat actor has demonstrated sophistication and complex tradecraft in these intrusions,” CISA said. “Removing the threat actor from compromised environments will be highly complex and challenging.”

Russia accused


CISA has not said who it thinks is the “advanced persistent threat actor” behind the “significant and ongoing” campaign, but many experts are pointing to Russia.

“The magnitude of this ongoing attack is hard to overstate,” former Trump Homeland Security Advisor Thomas Bossert said in a piece for The New York Times on Thursday. “The Russians have had access to a considerable number of important and sensitive networks for six to nine months.”

Russian presidential spokesman Dmitry Peskov rejected the accusations, according to the Tass news agency.

“Even if it is true there have been some attacks over many months and the Americans managed to do nothing about them, possibly it is wrong to groundlessly blame Russians right away,” he told Tass. “We have nothing to do with this.”

The Russian Embassy in London did not immediately respond to CNBC’s request for comment.

The FBI said Wednesday it is “investigating and gathering intelligence in order to attribute, pursue, and disrupt the responsible threat actors.”

At this stage, it’s not clear what the hackers have done beyond accessing top-secret government networks and monitoring data.

Hackers also accessed systems at the National Nuclear Security Administration, which maintains the U.S. nuclear weapons stockpile, according to the Politico news site, citing officials familiar with the matter.

SolarWinds backdoor


CISA said those behind the attack used network management software made by SolarWinds, a Texas-headquartered IT firm, to breach the government networks.

As many as 18,000 SolarWinds Orion customers downloaded a software update that contained a backdoor, which the hackers used to gain access to the networks.


CISA issued an “emergency directive” this week instructing federal civilian agencies to “immediately disconnect or power down affected SolarWinds Orion products from their network.”

But the perpetrators may have used other means to access the networks. CISA said Thursday is investigating “evidence of additional access vectors, other than the SolarWinds Orion platform.”

Microsoft customers targeted


Microsoft was hacked in connection with the attack on SolarWinds’ widely used management software, Reuters reported Thursday.

Like with the cyberattack of SolarWinds, hackers infiltrated Microsoft products and then went after others, Reuters said, citing people familiar with the matter.

“We have been actively looking for indicators of this actor and can confirm that we detected malicious SolarWinds binaries in our environment, which we isolated and removed. We have not found evidence of access to production services or customer data,” a Microsoft spokesperson said in a statement shared with CNBC.

“Our investigations, which are ongoing, have found absolutely no indications that our systems were used to attack others,” they added.

Microsoft said that more than 40 client organizations were compromised in the attack.

“While roughly 80% of these customers are located in the United States, this work so far has also identified victims in seven additional countries,” Microsoft President Brad Smith said in a blog.

“This includes Canada and Mexico in North America; Belgium, Spain and the United Kingdom in Europe; and Israel and the UAE in the Middle East. It’s certain that the number and location of victims will keep growing.”

Smith added that “this is not espionage as usual” and “while governments have spied on each other for centuries, the recent attackers used a technique that has put at risk the technology supply chain for the broader economy.”


U.S. President-elect Joe Biden pledged Thursday to make cybersecurity a key area of focus for his administration.

“A good defense isn’t enough; We need to disrupt and deter our adversaries from undertaking significant cyberattacks in the first place,” Biden said in a statement issued by his transition team.

“We will do that by, among other things, imposing substantial costs on those responsible for such malicious attacks, including in coordination with our allies and partners. Our adversaries should know that, as President, I will not stand idly by in the face of cyber assaults on our nation.”

President Donald Trump, who has been silent about the hacking, threatened on Thursday to veto the National Defense Authorization Act, which includes money to help prevent such cyberattacks.

Newsletter

Related Articles

0:00
0:00
Close
Green Party Faces Backlash Over Resolution Equating Zionism With Racism
Conservatives Debate Scrapping Environmental Rules for New Homes
Cornwall Insight Warns UK Energy Bills Could Approach £2,000 This Winter
UK Coach Operators Warn of Service Cuts as Diesel Prices Exceed £2
Scottish Parliament Approves £68 Billion Budget With New Tax and Property Measures
FCA Opens Independent Review Into Handling of Epstein Whistleblower
UK Government Drops Plan to Suspend Jury Trials in England and Wales
Bank of England Holds Interest Rate at 3.75% as Markets Watch November
Two Iranian Nationals Charged Over Alleged Plot Targeting Manchester Jewish Community
UK Fiscal Headroom Halves to £11 Billion Ahead of Budget, EY Warns
US Bomber Withdrawal From RAF Fairford Prompts UK Security Review
Sarah Wakfer Appointed Chair of Northern Ireland’s Health and Care Regulator
Scotland Housing Completions Fall to 11-Year Low Amid National Shortage
UK Water Companies Face Tougher Oversight and Unannounced Regulatory Inspections
Middle East Conflict Pushes UK Fuel and Wholesale Energy Prices Higher
Andy Burnham Raises Prospect of Second Brexit Referendum in Review of UK-EU Relations
EY Warns UK Fiscal Headroom Has Halved to £11 Billion Ahead of Autumn Budget
BT Accused of Pressuring Vulnerable Customers During Digital Landline Shift
British Carmakers Warn of Growing Pressure From EU-China Tariff Dispute
Green Party of England and Wales Adopts Motion Defining Zionism as Racism
Medical Charity Threatens NHS Legal Action Over Two-Year Autism and ADHD Assessment Waits
British Transport Police Report Record Rise in Violence on Railways
Glasgow Council Workers Face Pay Cuts Under Fire-and-Rehire Plan
British Medical Groups Press Prime Minister Andy Burnham to Cancel £330 Million Palantir NHS Contract
UK Faces Record Bluetongue Outbreak Across Livestock Farms
UK Schools Report Thousands of Child-on-Child Sexual Offences
High Court Overturns Ban Blocking Gaza Families From Reuniting With Relatives in UK
G7 Authorizes Emergency Fuel Release as UK Diesel Prices Hit £2 a Litre
France and Italy Draw 1-1 in Nations League Match
Pope Leo XIV and Prince Albert II of Monaco Meet in Metz
SNCF Expands Low-Cost Ouigo High-Speed Service Between Lyon and Bordeaux
Paris Expands Dedicated Cargo Bike Routes for Urban Deliveries
French Film Industry Pushes for Tighter Streaming Investment Rules
Marseille Court Hands Down Prison Terms in Public Procurement Corruption Case
LVMH and Kering Rely on US Demand as Chinese Luxury Spending Slows
Toulouse Aerospace Sector Launches €80 Million Modernization Fund
Javier Milei Courts French Investment in LNG and Lithium
Mistral AI Launches Sovereign Model for European Public Services
French Competition Authority Fines Retailers €40 Million Over Misleading Promotions
France Records Exceptional Electricity Exports as Nuclear Output Recovers
Dassault Aviation Expands Rafale Assembly Capacity at Mérignac
Sanofi Invests €1 Billion in New Biologics Production Hub Near Lyon
France Protests Germany’s Extension of Border Controls Into 2027
French Public-Sector and Transport Unions Threaten National Strike
France Deploys Riot Police After Violence in Lyon Suburbs
French Anti-Terrorism Prosecutors Investigate Radicalized Flydubai Co-Pilot
France’s Defense Budget Surpasses NATO’s 2% of GDP Target
French Government Faces No-Confidence Threat Over Budget
France and G7 Release 100 Million Barrels From Strategic Oil Reserves
France Convenes Emergency Defense Council Over Threats to Commercial Shipping
×