Department of Defense, Major Private Contractor Potentially Vulnerable in Cyber Attack

Computer security tokens used by the U.S. government may be compromised.

ByABC News
March 17, 2011, 8:55 PM

March 18, 2011 — -- A U.S. cyber security company charged with protecting computers for the U.S. government and thousands of private clients has itself been the target of a hacking attack, potentially compromising the security of software used by the Department of Defense and major defense contractor Lockheed Martin.

While the U.S. government has been aware of the attack and working with the company on plugging the security breach for more than a week, according to sources familiar with the investigation, it was only Thursday that Massachusetts-based company RSA alerted the public. RSA, the security division of EMC, claims over 25,000 clients and 40 million users of its security token technology worldwide.

"Recently our security systems identified an extremely sophisticated cyber attack in progress being mounted against RSA," said executive chairman Arthur Coviello in a statement posted on the company's website and in a filing to the SEC notifying shareholders of an adverse event. "Our investigation also revealed that the attack resulted in certain information being extracted from RSA's systems. Some of that information is specifically related to RSA's SecurID two-factor authentication products."

In addition to the U.S. government, according to its website, RSA SecurID customers include major American corporations, healthcare institutions and charities, as well as banks and institutions that cater to high net worth individuals, like Rolls Royce and Bentley Motors. The state of Kansas is also listed as a SecureID customer. Other RSA clients include the FBI, Northrop Grumman and German government.

"This is a very major security compromise that has possibly put at risk numerous sensitive government sites and private industry as well" said former U.S. National Security Advisor Richard Clarke, an ABC News consultant.

Coviello said that that while some information relating to RSA's token authentication system had been "extracted" by the intruders, RSA is "confident that the information extracted does not enable a successful direct attack on any of our RSA SecurID customers."

A company spokesman would not comment on reports of a delay in alerting the public, but in his online statement RSA executive chairman Coviello said, "We took a variety of aggressive measures against the threat to protect our business and our customers, including further hardening of our IT infrastructure".

Click Here for the Blotter Homepage.

Coviello said that that while some information relating to RSA's token authentication system had been \"extracted\" by the intruders, RSA is \"confident that the information extracted does not enable a successful direct attack on any of our RSA SecurID customers.\"

\"Follow

A company spokesman would not comment on reports of a delay in alerting the public, but in his online statement RSA executive chairman Coviello said, \"We took a variety of aggressive measures against the threat to protect our business and our customers, including further hardening of our IT infrastructure\".

Click Here for the Blotter Homepage. ","publishedDate":"2011-03-18T00:55:28Z","contributors":[{"name":"ABC News","url":"","role":"","logo":"","logoAlt":""}],"modifiedDate":"2011-03-25T17:46:16Z","section":"Blotter","wordCount":374,"relatedTags":{"heading":"Related Topics","tags":[]},"lead":{"ratio":"16x9","disableForMobile":false,"type":"xl","mediaType":"image","alignCaptionToBody":true},"ads":{"Sticky":{"kvps":{"test":true}},"RightRail":{"kvps":{"test":true}},"InlineBox":{},"InlineOutstream":{"disabled":false},"Taboola":{"position":"bottom","pageType":"article","config":{"network":"abcnews-abcnews","mode":"thumbnails-a","container":"taboola-below-article-thumbnails","type":"article","targetType":"mix","placement":"Below Article Thumbnails"}}},"featuredVideo":null,"dateline":"March 18, 2011 —","seo":{},"LivePromotion":{}},"autoUpdate":{"enabled":false,"topics":["general-elections-2020-balance-of-power"]}},"upw":{"balanceOfPower":{"electoral":{"header":"Biden Projected to be President-Elect","candidates":{"democrats":{"id":1036,"displayName":"Joe Biden","shortDisplayName":"J. Biden","firstName":"Joe","lastName":"Biden","party":"democrats","major":true,"incumbent":false,"winner":true,"votes":306},"republicans":{"id":8639,"displayName":"Donald Trump","shortDisplayName":"D. Trump","firstName":"Donald","lastName":"Trump","party":"republicans","major":true,"incumbent":true,"winner":false,"votes":232},"other":{"displayName":"Other","votes":0}},"parties":{"democrats":"democrats","republicans":"republicans"},"type":"electoral","votes":{"democrats":{"available":{},"total":306,"difference":{},"popular":{"displayValue":"81,283,098","value":81283098}},"republicans":{"available":{},"total":232,"difference":{},"popular":{"displayValue":"74,222,958","value":74222958}},"other":{"available":{},"total":0,"popular":{}},"total":538},"needed":{"displayText":"270 to win","displayValue":"270","value":270},"lastUpdated":{"value":"2020-12-18T21:15:13.850Z","displayValue":"December 18, 4:15:13PM ET"},"reporting":"99% of Expected Vote Reporting"},"senate":{"header":"Senate Seat Results","candidates":{"democrats":{"displayName":"Democrats","icon":"party-democrats","votes":46,"winner":false},"republicans":{"displayName":"Republicans","icon":"party-republicans","votes":50,"winner":false},"other":{"displayName":"Other","votes":2}},"parties":{"democrats":"democrats","republicans":"republicans"},"type":"senate","votes":{"democrats":{"available":{"displayText":"12 Democrats up for election","shortDisplayText":"12 Dems. up for election","displayValue":"12","value":12},"total":46,"difference":{"displayText":"Gained 1 seat","displayValue":"1","value":1},"popular":{}},"republicans":{"available":{"displayText":"23 Republicans up for election","shortDisplayText":"23 Reps. up for election","displayValue":"23","value":23},"total":50,"difference":{"displayText":"Lost 1 seat","displayValue":"-1","value":-1},"popular":{}},"other":{"available":{"displayText":"0 Others up for election","shortDisplayText":"0 Others up for election","displayValue":"0","value":0},"total":2,"popular":{}},"total":100},"needed":{"displayText":"51 for control","displayValue":"51","value":51},"lastUpdated":{"value":"2020-12-17T18:22:05.390Z","displayValue":"December 17, 1:22:05PM ET"}},"house":{"header":"House Results: Dems Retain Control","candidates":{"democrats":{"displayName":"Democrats","icon":"party-democrats","votes":222,"winner":true},"republicans":{"displayName":"Republicans","icon":"party-republicans","votes":210,"winner":false},"other":{"displayName":"Other","votes":0}},"parties":{"democrats":"democrats","republicans":"republicans"},"type":"house","votes":{"democrats":{"available":{"displayText":"233 Democrats up for election","shortDisplayText":"233 Dems. up for election","displayValue":"233","value":233},"total":222,"difference":{"displayText":"Lost 10 seats","displayValue":"-10","value":-10},"popular":{}},"republicans":{"available":{"displayText":"201 Republicans up for election","shortDisplayText":"201 Reps. up for election","displayValue":"201","value":201},"total":210,"difference":{"displayText":"Gained 10 seats","displayValue":"10","value":10},"popular":{}},"other":{"available":{"displayText":"1 Others up for election","shortDisplayText":"1 Others up for election","displayValue":"1","value":1},"total":0,"popular":{}},"total":435},"needed":{"displayText":"218 for control","displayValue":"218","value":218},"lastUpdated":{"value":"2020-12-17T18:22:02.900Z","displayValue":"December 17, 1:22:02PM ET"}},"lastUpdated":{"value":"2020-12-18T21:15:13.850Z","displayValue":"December 18, 4:15:13PM ET"},"autoUpdate":{"enabled":false,"topics":["general-elections-2020-balance-of-power"]},"electionsConfig":{}},"types":["electoral","senate","house"]}},"analytics":{"accountID":"wdgnewabcnews,wdgasec,wdgnewabcnweb,wdgnewabcnewsrollup","ns":"abcnews","pageName":"abcn:blotter:story","pageType":"story","pageUrl":"abcnews.go.com/Blotter/dod-private-contractors-potentially-vulnerable-rsa-cyber-attack/story?id=13162204&page=2&userab=abcn_web_article_ts-218*variant_c-820","globalSpecVersion":"v1.08","siteDifferentiator":"abcn:site","tagID":"apage_news01","userABCookie":"abcn_web_article_ts-218*variant_c-820","alertTag":"none","authors":"ABC News","authorsBureau":"none","authorsUnit":"none","dateline":"March 18, 2011 —","id":"13162204","modDate":"2011-03-25","mediaOnPage":"none","modTime":"13:46","provider":"ABC News","pubDate":"2011-03-17","pubTime":"20:55","section":"Blotter","subBrand":"none","title":"Department of Defense, Major Private Contractor Potentially Vulnerable in Cyber Attack","videoId":"none","videoName":"none","wordCount":374},"taboola":{"config":{"network":"abcnews-abcnews","mode":"thumbnails-a","type":"other","targetType":"mix","placement":null,"pageTypeOverrides":{"story":{"mode":"thumbnails-a","type":"article","targetType":"mix","placement":"Below Article Thumbnails"},"home":{"mode":"thumbnails-b","container":"taboola-homepage-thumbnails","type":"home","targetType":"mix","placement":"Homepage Thumbnails"},"section":{"mode":"thumbnails-b","type":"category","targetType":"mix","placement":"Section Front Thumbnails"},"liveBlog":{"mode":"thumbnails-d","type":"other","targetType":"mix","placement":"Blog"}}}}},"request":{"headers":{},"httpVersion":"1.1","method":"GET","url":"/Blotter/dod-private-contractors-potentially-vulnerable-rsa-cyber-attack/story?id=13162204&page=2&userab=abcn_web_article_ts-218*variant_c-820","vary":{"host":"abcnews.go.com","cached":true,"path":"/Blotter/dod-private-contractors-potentially-vulnerable-rsa-cyber-attack/story","forwarded-proto":"https","device":"desktop","country":"us","userab":"abcn_web_article_ts-218*variant_c-820","region":"gdpr"}},"viewport":{"width":1260,"height":0},"user":{}};