Washington Post Servers Infiltrated, Employee Credentials Stolen

  /     /     /  
Publicated : 22/11/2024   Category : security


Washington Post Servers Infiltrated, Employee Credentials Stolen


Newspaper suffers second major breach in three years, Chinese espionage suspected



The Washington Post late today reported that its servers were hacked and employee usernames and passwords were compromised in the attack, which was detected by a contractor that monitors the news organizations network.
Post officials today were alerted by incident response and detection firm Mandiant. Officials at the media organization believe the intrusion may only have been in the works for a few days, although they do not yet have full details on the breadth of the exposed information. Post employees are being urged to change their usernames and passwords, even though those passwords were encrypted.
The news organizations publishing system, email, and employee personal information appear to be safe despite the breach, the
report says
.
A server used by the Posts foreign staff was initially infiltrated, which then led to the breach of other company servers, the report says.
Chinese cyberespionage attackers are considered a likely culprit, especially given the 2011 breach of the Posts network that had the earmarks of a cyberspying mission out of China. That attack appeared to be part of a campaign of targeted attacks against major media outlets, human rights groups, and defense contractors. The New York Times and The Wall Street Journal were also hit in those attacks.
The Post in August was the target of the Syrian Electronic Army (SEA) hacktivist group, which employed a phishing attack
that resulted in a Post staff writers personal Twitter account being hijacked
by the SEA to post its own messages. And some articles from the Posts website were temporarily redirected to the SEAs website.
Have a comment on this story? Please click Add Your Comment below. If youd like to contact
Dark Readings
editors directly,
send us a message
.

Last News

▸ ArcSight prepares for future at user conference post HP acquisition. ◂
Discovered: 07/01/2025
Category: security

▸ Samsung Epic 4G: First To Use Media Hub ◂
Discovered: 07/01/2025
Category: security

▸ Many third-party software fails security tests ◂
Discovered: 07/01/2025
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
Washington Post Servers Infiltrated, Employee Credentials Stolen