{"id":26056,"date":"2020-06-16T16:34:25","date_gmt":"2020-06-16T23:34:25","guid":{"rendered":"https:\/\/lapost.us\/?p=26056"},"modified":"2020-06-16T16:34:25","modified_gmt":"2020-06-16T23:34:25","slug":"report-finds-cia-security-failures-led-to-massive-breach","status":"publish","type":"post","link":"https:\/\/lapost.us\/?p=26056","title":{"rendered":"Report finds CIA security failures led to massive breach"},"content":{"rendered":"<p>A newly unclassified internal CIA report found that a massive 2017 data breach of the agency that enabled classified information to be sent to WikiLeaks was caused by the CIA failing to secure its own systems.<\/p>\n<p>The report, put together by the CIA\u2019s WikiLeaks Task Force in 2017, is partially redacted and was released publicly on Tuesday by Sen. Ron Wyden (D-Ore.), a member of the Senate Intelligence Committee.<\/p>\n<p>According to the report, a CIA employee was able to steal up to 34 terabytes of information, or around 2.2 billion pages in Microsoft Word, of classified data and leak it to WikiLeaks in the spring of 2017 due to major security lapses at the CIA\u2019s Center for Cyber Intelligence (CCI).<\/p>\n<p>\u201cIn a press to meet growing and critical mission needs, CCI had prioritized building cyber weapons at the expense of securing their own systems,\u201d the task force wrote in the report. \u201cDay-to-day security practices had become woefully lax.\u201d<\/p>\n<p>The investigators added that \u201cCCI focused on building cyber weapons and neglected to also prepare mitigation packages if those tools were exposed. These shortcomings were emblematic of a culture that evolved over years that too often prioritized creativity and collaboration at the expense of security.\u201d<\/p>\n<p>The leak marked the largest data breach in the CIA\u2019s history and included information on hacking tools used by the agency to break into smartphones and other internet-connected devices.<\/p>\n<p>The task force noted that due to failures to address vulnerabilities in IT systems, if WikiLeaks had not published the stolen information, the CIA \u201cmight still be unaware of the loss \u2014 as would be true for the vast majority of data on Agency mission systems.\u201d<\/p>\n<p>In a letter to Director of National Intelligence John Ratcliffe on Tuesday, Wyden criticized the intelligence community for its \u201cwidespread cybersecurity problems.\u201d<\/p>\n<p>Wyden specifically pointed to a 2014 move by Congress that required all federal agencies, with the exception of the intelligence community, to adopt cybersecurity practices and protocols from the Department of Homeland Security (DHS).<\/p>\n<p>\u201cWhile Congress exempted the Intelligence Community from the requirement to implement DHS\u2019 cybersecurity directives, Congress did so reasonably expecting that intelligence agencies that have been entrusted with our nation\u2019s most valuable secrets would of course go above and beyond the steps taken by the rest of the government to secure their systems,\u201d Wyden wrote. \u201cUnfortunately it is now clear that exempting the intelligence community from baseline federal cybersecurity requirements was a mistake.\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A newly unclassified internal CIA report&#46;&#46;&#46;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-26056","post","type-post","status-publish","format-standard","hentry","category-u-s-a"],"_links":{"self":[{"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts\/26056","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=26056"}],"version-history":[{"count":1,"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts\/26056\/revisions"}],"predecessor-version":[{"id":26057,"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts\/26056\/revisions\/26057"}],"wp:attachment":[{"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=26056"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=26056"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=26056"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}