"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2020-12-13T22:53:28Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2020/12/13/us-agencies-investigating-hacking-data-breach-nr-vpx.cnn"
data-branding-key=""
data-video-slug="us agencies investigating hacking data breach nr vpx"
data-first-publish-slug="us agencies investigating hacking data breach nr vpx"
data-video-tags="commerce departments,continents and regions,crime, law enforcement and corrections,criminal offenses,digital crime,digital security,government and public administration,government bodies and offices,government departments and authorities,government organizations - us,north america,technology,the americas,united states,us department of homeland security,us federal departments and agencies"
data-details="">
Video Ad Feedback
US agencies investigating hack of government networks
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2020-12-13T22:53:28Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2020/12/13/us-agencies-investigating-hacking-data-breach-nr-vpx.cnn"
data-branding-key=""
data-video-slug="us agencies investigating hacking data breach nr vpx"
data-first-publish-slug="us agencies investigating hacking data breach nr vpx"
data-video-tags="commerce departments,continents and regions,crime, law enforcement and corrections,criminal offenses,digital crime,digital security,government and public administration,government bodies and offices,government departments and authorities,government organizations - us,north america,technology,the americas,united states,us department of homeland security,us federal departments and agencies"
data-details="">
Video Ad Feedback
US agencies investigating hack of government networks
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2024-06-13T16:27:27Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2024/06/13/marjorie-taylor-greene-donald-trump-capitol-visit-speaker-johnson-digvid.cnn"
data-branding-key=""
data-video-slug="marjorie taylor greene donald trump capitol visit speaker johnson digvid"
data-first-publish-slug="marjorie taylor greene donald trump capitol visit speaker johnson digvid"
data-video-tags=""
data-details="">
Video Ad Feedback
MTG says Trump told her to 'be nice' to Speaker Johnson
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2024-06-03T18:00:41Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2024/06/03/fauci-death-threats-covid-origins-hearing-sot-dle-digvid.cnn"
data-branding-key=""
data-video-slug="fauci death threats covid origins hearing sot dle digvid"
data-first-publish-slug="fauci death threats covid origins hearing sot dle digvid"
data-video-tags=""
data-details="">
Video Ad Feedback
Fauci gets emotional discussing threats made against his family
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2024-06-01T16:40:38Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2024/06/01/smr-charlamagne-tha-god-on-black-voters-digvid.cnn"
data-branding-key=""
data-video-slug="SMR Charlamagne tha God on black voters digvid"
data-first-publish-slug="SMR Charlamagne tha God on black voters digvid"
data-video-tags=""
data-details="">
Video Ad Feedback
Charlamagne tha God: America has zero protection from people like Donald Trump
The US Commerce Department confirmed Sunday it has been the victim of a data breach in an attack that is believed to be linked to Russia.
“We can confirm there has been a breach in one of our bureaus,” the Commerce Department said in a statement to CNN. “We have asked CISA and the FBI to investigate, and we cannot comment further at this time.”
The Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency also confirmed the data security incident, telling CNN in a statement, “We have been working closely with our agency partners regarding recently discovered activity on government networks.”
“CISA is providing technical assistance to affected entities as they work to identify and mitigate any potential compromises,” the statement continued.
CISA issued a directive late Sunday that tech company SolarWinds was compromised and it posed “unacceptable risks to the security of federal networks,” said CISA acting Director Brandon Wales.
SolarWinds Orion products are used by a number of federal civilian agencies for network management and CISA is urging the agencies to review their networks for any possible signs of a data breach. This is only the fifth emergency directive issued since 2015, when CISA was created by Congress in the Cybersecurity Act.
SolarWinds said in a statement Sunday night that the breach of their system was “was likely conducted by an outside nation state and intended to be a narrow, extremely targeted, and manually executed attack, as opposed to a broad, system-wide attack.”
The Washington Post reported Sunday that Russian government hackers targeted Commerce as well as the Treasury Department and other government agencies, according to people familiar with the matter who requested anonymity because of the sensitivity of the matter. The paper reported the FBI is investigating and that the same Russia-linked group breached the elite cybersecurity firm FireEye, which just last week disclosed an attack compromising the so-called “Red Team” tools it uses to protect cybersecurity clients, including government customers.
CNN has previously reported the Russian-affiliated group, known as APT29, as the suspected culprit behind the FireEye breach, citing a person familiar with the matter.
“It’s all related,” said a source familiar with the attacks on both FireEye and those reported Sunday. Russia has maintained a steady, aggressive cyber campaign against both the US public and private sectors.
“These sorts of attacks leveraging trusted relationships are extraordinarily difficult to detect and defend against in real-time,” the person said, adding that while the Commerce and Treasury Departments are the victims that have so far been identified, “there will no doubt be more.”
Last week, the National Security Agency published an advisory warning that Russian state-sponsored actors were accessing data on protected systems and called for various government networks, including the Defense Department’s, to be patched immediately.
The Treasury Department, the National Security Council, the FBI, National Security Agency and US Cyber Command did not immediately respond to CNN’s request for comment.
This story has been updated with additional reporting.