{"id":9815,"date":"2020-06-17T18:45:00","date_gmt":"2020-06-17T15:45:00","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/cia-unit-that-crafts-hacking-tools-didnt-protect-itself-report\/"},"modified":"2020-06-17T18:45:00","modified_gmt":"2020-06-17T15:45:00","slug":"cia-unit-that-crafts-hacking-tools-didnt-protect-itself-report","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/cia-unit-that-crafts-hacking-tools-didnt-protect-itself-report\/","title":{"rendered":"#CIA unit that crafts hacking tools didn\u2019t protect itself: report"},"content":{"rendered":"<p>&#8220;<strong>#CIA unit that crafts hacking tools didn\u2019t protect itself: report<\/strong>&#8221;<\/p>\n<div>\n                        WASHINGTON \u2014 A specialized CIA unit that developed sophisticated hacking tools and cyber weapons didn\u2019t do enough to protect its own operations and wasn\u2019t prepared to adequately respond when the secrets were stolen, according to an internal report prepared after the worst data loss in the intelligence agency\u2019s history.<\/p>\n<p>\u201cThese shortcomings were emblematic of a culture that evolved over years that too often prioritized creativity and collaboration at the expense of security,\u201d according to the report, which raises questions about cybersecurity practices inside U.S. intelligence agencies.<\/p>\n<p>Sen. Ron Wyden, D-Ore., a senior member of the Senate Intelligence Committee, obtained the redacted report from the Justice Department after it was introduced as evidence in a court case this year involving the stolen CIA hacking tools.<\/p>\n<p>He released it on Tuesday along with a letter he wrote to new national intelligence director John Ratcliffe, asking him to explain what steps he\u2019s taking to protect the nation\u2019s secrets held by federal intelligence agencies.<\/p>\n<p>The October 2017 report, whose findings were first reported by The Washington Post, examined the theft one year earlier of sensitive cyber tools the CIA had developed to hack into the networks of adversaries.<\/p>\n<p>The document is dated months after WikiLeaks announced that it had acquired tools created by the CIA\u2019s specialized Center for Cyber Intelligence. The anti-secrecy website published comprehensive de<a href=\"https:\/\/buradabiliyorum.com\/en\/category\/download-scripts-themes-apps\/\" data-internallinksmanager029f6b8e52c=\"9\" title=\"Download Scripts &amp; Themes &amp; Apps\" target=\"_blank\" rel=\"noopener\">script<\/a>ions of 35 tools, including internal CIA documents associated with them, according to the report.<\/p>\n<p>The report describes the spring 2016 theft as the largest data loss in agency history \u2014 compromising at least 180 gigabytes to as much as 34 terabytes of information, or the equivalent of 11.6 million to 2.2 billion pages in Microsoft Word.<\/p>\n<p>The agency did not realize the loss had occurred until the WikiLeaks announcement a year later, the report said. As officials scrambled to pinpoint who was responsible, they ultimately identified as a prime suspect a CIA software engineer who they said had left the agency on stormy terms after falling out with colleagues and supervisors and had acted out of revenge.<\/p>\n<p>The former employee, Joshua Schulte, was charged by the Justice Department with stealing the material and transmitting it to WikiLeaks. But a jury deadlocked on those charges and convicted him in March of more minor charges after a trial in Manhattan.<\/p>\n<p>The CIA report revealed lax cybersecurity measures by the specialized unit and the niche information <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/technology\/\" data-internallinksmanager029f6b8e52c=\"4\" title=\"Technology\" target=\"_blank\" rel=\"noopener\">technology<\/a> systems that it relies upon, which is separate from the systems more broadly used by everyday agency employees. The report says that because the stolen data was on a system that lacked user activity monitoring, it was not detected until WikiLeaks announced it in March 2017.<\/p>\n<p>\u201cHad the data been stolen for the benefit of a state adversary and not published, we might still be unaware of the loss\u201d the report says.<\/p>\n<p>The report, prepared by the CIA\u2019s WikiLeaks Task Force, suggests the CIA should have been better prepared in light of devastating data breaches at other intelligence agencies. The hacking tools compromise occurred about three years after Edward Snowden, a former contractor for the National Security Agency, confiscated classified information about the NSA\u2019s surveillance operations, and disclosed it.<\/p>\n<p>\u201cCIA has moved too slowly to put in place the safeguards that we knew were necessary given successive breaches to other U.S. Government agencies,\u201d the report said.<\/p>\n<p>Among the problems the report identified: sensitive cyber weapons were not compartmented, passwords were shared and users had indefinite access to historical data.<\/p>\n<figure id=\"attachment_15848191\"><img alt=\"John Ratcliffe\" data- data- height=\"441\" width=\"662\"><\/img><figcaption><span>John Ratcliffe<\/span><span>Andrew Harnik\/Getty Images<\/span><\/figcaption><\/figure>\n<p>CIA spokesman Timothy Barrett declined to comment on the report\u2019s findings, but said the \u201cCIA works to incorporate best-in-class technologies to keep ahead of and defend against ever-evolving threats.\u201d<\/p>\n<p>Sean Roche, a former associate deputy director for digital innovation at the CIA who testified at the Schulte trial, said that although the CIA did have a problem with one of its networks, \u201cto say that the people at the CIA don\u2019t take security seriously is not accurate. It\u2019s completely inaccurate.\u201d<\/p>\n<p>Speaking Tuesday at a webinar hosted by the Cipher Brief, an online <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/news\/\" data-internallinksmanager029f6b8e52c=\"2\" title=\"News\" target=\"_blank\" rel=\"noopener\">news<\/a>letter that focuses on intelligence, Roche likened the task force report to an after-accident report by the National Transportation Safety Board.<\/p>\n<p>\u201cThis broke. This is what happened,\u201d Roche said. \u201cWe need to make sure this doesn\u2019t happen again. How is that not a healthy thing for an organization that doesn\u2019t have a public eye into what it\u2019s doing?\u201d<\/p>\n<p>The disclosure of the hacking tools featured prominently in Schulte\u2019s trial, with prosecutors portraying him as a disgruntled software engineer who exploited a little-known back-door in a CIA network to copy the hacking arsenal without raising suspicion.<\/p>\n<p>\u201cThese leaks were devastating to national security,\u201d Assistant U.S. Attorney Matthew Laroche told jurors. \u201cThe CIA\u2019s cyber tools were gone in an instant. Intelligence gathering operations around the world stopped im<a href=\"https:\/\/buradabiliyorum.com\/en\/category\/social-mediaa\/\" data-internallinksmanager029f6b8e52c=\"1\" title=\"Social Media\" target=\"_blank\" rel=\"noopener\">media<\/a>tely.\u201d<\/p>\n<p>Defense attorney Sabrina Shroff argued that investigators could not be sure who took the data because the CIA network in question \u201cwas the farthest thing from being secure\u201d and could be accessed by hundreds of people.<\/p>\n<p>Ultimately, Schulte was convicted of contempt of court and making false statements after a four-week trial. The jury was unable to reach a verdict on the more significant charges.\n            <\/p><\/div>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/nypost.com\/2020\/06\/17\/cia-unit-that-crafts-hacking-tools-failed-to-protect-itself\/\" target=\"_blank\" rel=\"noopener noreferrer\">Source<\/a><\/span><\/p>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more Living News articles, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/general\/\" target=\"_blank\" rel=\"noopener noreferrer\">General category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>if you want to <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/watch-movies-tv-seriess\/\" data-internallinksmanager029f6b8e52c=\"8\" title=\"Watch Movies &amp; TV Series\" target=\"_blank\" rel=\"noopener\">watch Movies<\/a> or Tv Shows go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/dizi.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Dizi.BuradaBiliyorum.Com<\/a> <\/span> for forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;#CIA unit that crafts hacking tools didn\u2019t protect itself: report&#8221; WASHINGTON \u2014 A specialized CIA unit that developed sophisticated hacking tools and cyber weapons didn\u2019t do enough to protect its own operations and wasn\u2019t prepared to adequately respond when the secrets were stolen, according to an internal report prepared after the worst data loss in&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"","fifu_image_alt":"","footnotes":""},"categories":[1],"tags":[20677],"class_list":["post-9815","post","type-post","status-publish","format-standard","hentry","category-general","tag-cia-unit-that-crafts-hacking-tools-didnt-protect-itself-report"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/9815","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=9815"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/9815\/revisions"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=9815"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=9815"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=9815"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}