Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

TomCADem

(17,837 posts)
Thu May 13, 2021, 11:49 AM May 2021

Colonial Pipeline Reportedly Paid $5M Ransom to Free Data System

Source: The Street

Colonial Pipeline Co. reportedly paid Eastern European hackers almost $5 million in ransom on Friday to free up its data system, after it had shut its East Coast pipeline system.

Two knowledgeable sources provided the information to Bloomberg. Their account conflicted with reports earlier this week that the company wouldn't pay ransom to the hackers.

The payment was made in the form of untraceable cryptocurrency within hours after the attack, which had led Colonial to close its pipeline for safety, the sources said.

Once the hackers got their money, they gave Colonial a decrypting tool to restore its frozen computer network, the sources said. The tool acted slowly, so the company continued using its own backups to restore the system, one of the sources said.

Read more: https://www.msn.com/en-us/money/markets/colonial-pipeline-reportedly-paid-5m-ransom-to-free-data-system/ar-BB1gHvVG



Unlike the Trump administration, which tried to hide the hacks to the US infrastructure, Biden should treat this like a terrorist attack originating from the country of the hackers.

https://apnews.com/article/donald-trump-politics-mark-levin-coronavirus-pandemic-hacking-6080f156125a4a46edef2a6dcf826611

Trump downplays Russia in first comments on hacking campaign

WASHINGTON (AP) — Contradicting his secretary of state and other top officials, President Donald Trump on Saturday suggested without evidence that China — not Russia — may be behind the cyber espionage operation against the United States and tried to minimize its impact.

In his first comments on the breach, Trump scoffed at the focus on the Kremlin and downplayed the intrusions, which the nation’s cybersecurity agency has warned posed a “grave” risk to government and private networks.

“The Cyber Hack is far greater in the Fake News Media than in actuality. I have been fully briefed and everything is well under control,” Trump tweeted. He also claimed the media are “petrified” of “discussing the possibility that it may be China (it may!).”

There is no evidence to suggest that is the case. Secretary of State Mike Pompeo said late Friday that Russia was “pretty clearly” behind the operation against the United States.
63 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Colonial Pipeline Reportedly Paid $5M Ransom to Free Data System (Original Post) TomCADem May 2021 OP
US cybersecurity experts will be interested in the decrytion key Deminpenn May 2021 #1
The decryption key is unique to each infection. PSPS May 2021 #6
Would think it's like bombs, though Deminpenn May 2021 #28
No. RSA encryption means, without the unique key for that individual infection, you've had it. PSPS May 2021 #31
I would think this, right here, Miguelito Loveless May 2021 #2
Exactly. What legitimate purpose does cryptocurrency serve... TomCADem May 2021 #5
When I ask this of crypto proponents Miguelito Loveless May 2021 #8
It serves the purpose DENVERPOPS May 2021 #19
How does cryptocurrency end money laundering by the white collar mob? AllyCat May 2021 #22
Actually, they have a perfect money laundry in London Warpy May 2021 #27
Two legitimate purposes Tom JohnSJ May 2021 #32
You forgot buying illegal items off the Dark Web... jmowreader May 2021 #61
Gosh, it is sooooo flexible JohnSJ May 2021 #62
The genie is out of the bottle melm00se May 2021 #25
Seems to me this only works if Miguelito Loveless May 2021 #39
Unfortunately melm00se May 2021 #48
All banks must deal withe Federal Reserve Miguelito Loveless May 2021 #60
Or regulate it. ffr May 2021 #43
Of course, consumers will repay the ransom. ProudMNDemocrat May 2021 #3
Especially since Colonial didn't HAVE to turn off the tap, but since they did, prices shot up. They FailureToCommunicate May 2021 #49
"untraceable cryptocurrency" is a widely-believed falsehood PSPS May 2021 #4
While that is true of some crypto currencies, others are much harder to trace.... getagrip_already May 2021 #15
They're all traceable. PSPS May 2021 #26
The FB( cracked Tor Warpy May 2021 #29
China? Virtually all ransomware attacks originate in russia or eastern europe. PSPS May 2021 #30
I read it earlier, now I can't find the article Warpy May 2021 #37
hint - cyber criminals don't use bitcoin, and it wasn't china..... n/t getagrip_already May 2021 #35
not all are as easy to track as bitcoin..... getagrip_already May 2021 #38
They're all traceable. Don't believe the sizzle. PSPS May 2021 #45
and aes 2048 can be broken - but.... getagrip_already May 2021 #56
tRump gave the words crime pays a whole new meaning. nt yaesu May 2021 #7
Now, can they follow the money? ancianita May 2021 #9
Putin's hold on Trump still intact Chainfire May 2021 #10
Guess who lost here! 3825-87867 May 2021 #11
Post removed Post removed May 2021 #13
Excuse me? 3825-87867 May 2021 #16
Uh, no. Not pro-Putin. Try reading it again. AllyCat May 2021 #23
Thank you Allycat 3825-87867 May 2021 #50
The cost is passed along DENVERPOPS May 2021 #17
The UCA? The United Cities of America? AllyCat May 2021 #24
United Corporations of America DENVERPOPS May 2021 #57
many businesses have cyber insurance neohippie May 2021 #44
The insurance premiums are probably DENVERPOPS May 2021 #58
I agree rockfordfile May 2021 #59
We need to get serious TheFarseer May 2021 #12
Either someone is lying to us Rocknation May 2021 #14
Should be an instant and lethal visit The Mouth May 2021 #18
Ex-Pres. seems pretty cool with Extorsion. Of course. Evolve Dammit May 2021 #20
So the criminals have a name now? Shanti Shanti Shanti May 2021 #21
A nice attack on the Russian oil and gas industry would be nice. roamer65 May 2021 #33
i really hope they had not. barbtries May 2021 #34
The vast majority of these ransomware attacks neohippie May 2021 #36
Gee, I wonder who needed and got the money bucolic_frolic May 2021 #40
Equates to pennies for them. Traildogbob May 2021 #41
$5M more to hire more talent and improve their ransomeware practices ffr May 2021 #42
I don't understand why President Biden is to blame for a private company being hacked! kimbutgar May 2021 #46
This message was self-deleted by its author kimbutgar May 2021 #47
This message was self-deleted by its author hamsterjill May 2021 #51
That seems to be the going rate DFW May 2021 #52
"(K)nowledgeable sources" doesn't necessarily mean truthful sources FBaggins May 2021 #53
Fire the CEO and reduce his termination pay by $5M. Then, we will NCjack May 2021 #54
so, now they will be embolden to do more of this . AllaN01Bear May 2021 #55
This is terrorism and I hope Biden responds appropriately, like a drone-strike on the hackers homes. Devil Child May 2021 #63

TomCADem

(17,837 posts)
5. Exactly. What legitimate purpose does cryptocurrency serve...
Thu May 13, 2021, 11:59 AM
May 2021

...but I bet that if Biden supports, watch Republicans immediately jump on the side of terrorists again.

Miguelito Loveless

(5,532 posts)
8. When I ask this of crypto proponents
Thu May 13, 2021, 12:12 PM
May 2021

they give me all sorts of arguments that pretty much sound the same as the nonsense I get from gun advocates who tell me guns maintain "freedom" and "protect" us from tyrannical government.

DENVERPOPS

(13,003 posts)
19. It serves the purpose
Thu May 13, 2021, 01:14 PM
May 2021

of ending all MONEY LAUNDERING by all the white collar mob......and tyrants around the world.....

AllyCat

(18,655 posts)
22. How does cryptocurrency end money laundering by the white collar mob?
Thu May 13, 2021, 01:38 PM
May 2021

And tyrants? It seems that it is just easier for them to launder money through virtual currency.

Warpy

(114,503 posts)
27. Actually, they have a perfect money laundry in London
Thu May 13, 2021, 01:58 PM
May 2021

especially the tyrants.

Cryptocurrency is how drug lords and other scum move their money around.

Oh, it started out high minded, defeat the man, increase privacy, blah blah blah. Now it's a pure Ponzi scheme being exploited by some Very Bad Men (TM).

I would love to see governments unite to ban these scams, uniting in this is what it will take since new ones keep popping up like poison mushrooms.

Miguelito Loveless

(5,532 posts)
39. Seems to me this only works if
Thu May 13, 2021, 02:42 PM
May 2021

crypto can be exchanged for legal tender. Stop that, and the party is over. Also, treat any bank/business that facilitates crypto, or any person facilitating is engaged in money laundering.

The major purpose of crypto that I have seen is to facilitate crimes such as blackmail, extortion, money laundering, and tax evasion.

melm00se

(5,147 posts)
48. Unfortunately
Thu May 13, 2021, 04:11 PM
May 2021

you would have to prove that.

The state cannot assume that the possessor of cryptocurrency is going to break the law.

Additionally, all it takes is one state to allow the exchange of cryptocurrency for legal tender and the system breaks down.

Miguelito Loveless

(5,532 posts)
60. All banks must deal withe Federal Reserve
Thu May 13, 2021, 08:02 PM
May 2021

so any state that decides it wants to exchange crypto can find itself cut off from the Federal banking system. A currency can't exist without gov't tolerance at least. I would subject crypto to the same reporting requirements as regular cash. Transactions over $10K must be explained and documented.

Cryptocurrency is a financial ghost gun. Sure it MIGHT have a legitimate use, but not in practice. It pretty much exists to facilitate crime.

FailureToCommunicate

(14,584 posts)
49. Especially since Colonial didn't HAVE to turn off the tap, but since they did, prices shot up. They
Thu May 13, 2021, 04:15 PM
May 2021

will reap more than enough to cover the ransom, AND still claim they have to have the rest of us pay for their lax, hackable systems.

PSPS

(15,261 posts)
4. "untraceable cryptocurrency" is a widely-believed falsehood
Thu May 13, 2021, 11:59 AM
May 2021

The owner of the "wallet" can be identified and the funds can be frozen and clawed back.

getagrip_already

(17,802 posts)
15. While that is true of some crypto currencies, others are much harder to trace....
Thu May 13, 2021, 12:32 PM
May 2021

Guess which they tell you to use?

PSPS

(15,261 posts)
26. They're all traceable.
Thu May 13, 2021, 01:58 PM
May 2021

It's just not talked about very often for obvious reasons but it is mentioned in several indictments I've read.

Warpy

(114,503 posts)
29. The FB( cracked Tor
Thu May 13, 2021, 02:03 PM
May 2021

so I think by now they've managed to crack Bitcoin, which is how the scammers have been traced to China.

getagrip_already

(17,802 posts)
38. not all are as easy to track as bitcoin.....
Thu May 13, 2021, 02:32 PM
May 2021

Not all use standard blockchain and go to great lengths to obscure traceability.

Ever hear of Monero, Zcash, Komodo, or Horizen?

Not your daddies block chain.

getagrip_already

(17,802 posts)
56. and aes 2048 can be broken - but....
Thu May 13, 2021, 05:49 PM
May 2021

At what cost, and what level of effort, and in what timeframe.

Untraceable doesn't mean unbreakable, just impractical.

3825-87867

(1,831 posts)
11. Guess who lost here!
Thu May 13, 2021, 12:19 PM
May 2021

For 5 million, they could have had a rather good backup system and better security. But, hey, who cares when you really get down to it?
The company isn't going to lose on this. The "ransom" will be paid by its customers through rate increases (temporary til 2100 A.D., of course) or special fees.

Sounds like a good plan to allow companies to raise prices and set blame elsewhere and in reality, lose nothing.

The Russians didn't screw an American Company, they just stuck it up the asses of the American People. And I wouldn't be surprised if more happens.

Putin moved into 21st Century Warfare while we're still on the beach waiting for supplies that Republicans (R - Russian) claim cost too much.

And the Pipeline Company? Do you think they really care? If they did then they should have had better preparation and while their almighty bottom line is their reason to exist, they WILL get their money back (from us) and then some.

SAPs - Stupid American People

Response to 3825-87867 (Reply #11)

AllyCat

(18,655 posts)
23. Uh, no. Not pro-Putin. Try reading it again.
Thu May 13, 2021, 01:40 PM
May 2021

Completely agree with the poster. The American people get screwed and the corporation can do it again and probably make some money in the process. Unbridled American capitalism at work again...for the corporations!

DENVERPOPS

(13,003 posts)
17. The cost is passed along
Thu May 13, 2021, 01:00 PM
May 2021

the corporations never absorb the costs of their poor decisions...........

Just wait until the good ol' USA becomes a wholly owned subsidiary of the UCA......United Corps of America.
That will just become an automatic thing when the republicans install their Corporate Fascist Tyranny.

No one has heard much from Trailer Trash Barbie and her husband Jared. Maybe Putin set them up as a malware franchisee of Putin's very own Russian hackers.........

All roads lead to Putin..............was it Pelosi that said that?

And Putin is still going after the U.S. via Kompromat he has on countless Republican leaders.........

DENVERPOPS

(13,003 posts)
57. United Corporations of America
Thu May 13, 2021, 05:49 PM
May 2021

or better yet......United Corporations of Fascist America......

has a nice ring to it, don't you think? THE REPUBLICANS sure as hell do..........

neohippie

(1,263 posts)
44. many businesses have cyber insurance
Thu May 13, 2021, 03:02 PM
May 2021

Our company went through one of these attacks and the I think most of the expenses related to it were covered by our insurance many of these policies cover extortion and then the costs to help prevent future attacks as well.

DENVERPOPS

(13,003 posts)
58. The insurance premiums are probably
Thu May 13, 2021, 06:06 PM
May 2021

just short of how much the cyber thieves would demand...........

and a ton more to pay for future security costs of improvement......

Soon, all these corporations will figure out a way to ask the Politicians to make a law that the federal gov't will cover the costs for a small token of what the insurance companies want for the coverage.

Crazy?

What about the Federal Insurance program for flood insurance???? No insurance company would touch flood insurance for any amount of money, so the feds offer the insurance for a considerably cheaper price. When you see all those coastline uber wealthy homes that get totaled in a hurricane????? You can be sure that a large portion is subsidized by taxpayers thru that gov't flood insurance...........

Rocknation

(44,998 posts)
14. Either someone is lying to us
Thu May 13, 2021, 12:29 PM
May 2021

Last edited Sun Jun 6, 2021, 09:41 PM - Edit history (1)

or Colonial plans to use the payment as an excuse to jack up post-hack gas prices...though I find it quite interesting that former President Putin Pal has started playing his "No Collusion with Russia" broken record again.

https://www.democraticunderground.com/10142742123


rocktivity

The Mouth

(3,413 posts)
18. Should be an instant and lethal visit
Thu May 13, 2021, 01:03 PM
May 2021

from a SEAL team when they figure out who it was.

I'd love to interrogate one of those 'hackers'.

neohippie

(1,263 posts)
36. The vast majority of these ransomware attacks
Thu May 13, 2021, 02:25 PM
May 2021

These cyber gangs are most likely linked and backed by nation states that are the enemies of the US.

North Korea, Russia and even Arabic actors are know to use these kinds of crimes to move billions of dollars from European and North American targets of ransomware attacks using crypto-currencies. The crypto-currencies allow these countries to avoid international banking and US sanctions, they allow them to get around embargos etc...


And yes the attacks all use unique decryption keys.

Its not just the crypto-currencies that allow this to happen, its also email services that allow the users to remain anonymous too that are needed so that these criminals can evade being traced as well, so they are constantly hiding behind other hacked systems to launch new attacks and jumping from one email account to another so that they are harder to trace back to the gangs or track their locations

This is a huge international problem and it will be while these nation states allow this to happen and give the criminals safe harbor

Response to TomCADem (Original post)

Response to TomCADem (Original post)

DFW

(59,875 posts)
52. That seems to be the going rate
Thu May 13, 2021, 04:25 PM
May 2021

About 2 years ago, they tried this with my outfit, too, and asked $5 million to ransom us. But our IT department anticipates this kind of attack all the time, and backs everything up offline every few hours. Back then, it was every day, but as it cost us a few days of reconstruction for that one day, we now do it every few hours. The good news is that we didn't pay those assholes a dime (or a ruble), but they probably just shrug their shoulders and move on to the next victim, and hope for better luck next time.

FBaggins

(28,670 posts)
53. "(K)nowledgeable sources" doesn't necessarily mean truthful sources
Thu May 13, 2021, 04:36 PM
May 2021

The company has reason to want people to believe that they didn't pay a ransom (or need to)... but the hackers have a reason to want people to believe that paying them is a rational decision.

Latest Discussions»Latest Breaking News»Colonial Pipeline Reporte...