New Report Says Russian Hacking Came From Russia

Fight disinformation: Sign up for the free Mother Jones Daily newsletter and follow the news that matters.


Today the FBI and the Department of Homeland Security released a joint report directly accusing the Russians of hacking into the servers of “a U.S. political party,” including a spearphishing campaign “launched as recently as November 2016, just days after the U.S. election.” I’m not quite sure why they’re being so precious about naming the DNC, which has gotten several miles of press coverage, but the ways of intelligence organizations are mysterious:

This document provides technical details regarding the tools and infrastructure used by the Russian civilian and military intelligence Services (RIS) to compromise and exploit networks and endpoints associated with the U.S. election….This activity by RIS is part of an ongoing campaign of cyber-enabled operations directed at the U.S. government and its citizens.

The report doesn’t actually say an awful lot about how they know this hacking comes from Russia, but it does include one bit of signature code to watch out for. We also learn about lots of funky code names for Russian hacking operations:

APT28, APT29, Agent.btz, BlackEnergy V3, BlackEnergy2 APT, CakeDuke, Carberp, CHOPSTICK, CloudDuke, CORESHELL, CosmicDuke, COZYBEAR, COZYCAR, COZYDUKE, CrouchingYeti, DIONIS, Dragonfly, Energetic Bear, EVILTOSS, Fancy Bear, GeminiDuke, GREY CLOUD, HammerDuke, HAMMERTOSS, Havex, MiniDionis, MiniDuke, OLDBAIT, OnionDuke, Operation Pawn Storm, PinchDuke, Powershell backdoor, Quedagh, Sandworm, SEADADDY, Seaduke, SEDKIT, SEDNIT, Skipper, Sofacy, SOURFACE, SYNful Knock, Tiny Baron, Tsar Team, twain_64.dll, VmUpgradeHelper.exe, Waterbug, X-Agent

So what are we going to do about this? Here’s the New York Times:

The Obama administration struck back at Russia on Thursday for its efforts to influence the 2016 election, ejecting 35 Russian intelligence operatives from the United States and imposing sanctions on Russia’s two leading intelligence services.

The administration also sanctioned four top officers of one of those services, the military intelligence unit known as the G.R.U., which the White House believes ordered the attacks on the Democratic National Committee and other political organizations….In addition, the State Department announced the closing of two “recreational facilities” — one in New York, another in Maryland — that it said were used for Russian intelligence activities, although officials would not say whether they were specifically used in the election-related hacks.

This brings back memories, doesn’t it? It’s just like the Cold War, and Russia will no doubt expel 35 Americans in a few days. However, this also puts Donald Trump on the spot. Will he reverse the sanctions on GRU when he takes office? It’s one thing to do nothing and hope everyone forgets about it, but it’s quite another to actively reverse sanctions that are based on the conclusions of our own intelligence agencies. What are you gonna do, Donald?

WE'LL BE BLUNT.

We have a considerable $390,000 gap in our online fundraising budget that we have to close by June 30. There is no wiggle room, we've already cut everything we can, and we urgently need more readers to pitch in—especially from this specific blurb you're reading right now.

We'll also be quite transparent and level-headed with you about this.

In "News Never Pays," our fearless CEO, Monika Bauerlein, connects the dots on several concerning media trends that, taken together, expose the fallacy behind the tragic state of journalism right now: That the marketplace will take care of providing the free and independent press citizens in a democracy need, and the Next New Thing to invest millions in will fix the problem. Bottom line: Journalism that serves the people needs the support of the people. That's the Next New Thing.

And it's what MoJo and our community of readers have been doing for 47 years now.

But staying afloat is harder than ever.

In "This Is Not a Crisis. It's The New Normal," we explain, as matter-of-factly as we can, what exactly our finances look like, why this moment is particularly urgent, and how we can best communicate that without screaming OMG PLEASE HELP over and over. We also touch on our history and how our nonprofit model makes Mother Jones different than most of the news out there: Letting us go deep, focus on underreported beats, and bring unique perspectives to the day's news.

You're here for reporting like that, not fundraising, but one cannot exist without the other, and it's vitally important that we hit our intimidating $390,000 number in online donations by June 30.

And we hope you might consider pitching in before moving on to whatever it is you're about to do next. It's going to be a nail-biter, and we really need to see donations from this specific ask coming in strong if we're going to get there.

payment methods

WE'LL BE BLUNT.

We have a considerable $390,000 gap in our online fundraising budget that we have to close by June 30. There is no wiggle room, we've already cut everything we can, and we urgently need more readers to pitch in—especially from this specific blurb you're reading right now.

We'll also be quite transparent and level-headed with you about this.

In "News Never Pays," our fearless CEO, Monika Bauerlein, connects the dots on several concerning media trends that, taken together, expose the fallacy behind the tragic state of journalism right now: That the marketplace will take care of providing the free and independent press citizens in a democracy need, and the Next New Thing to invest millions in will fix the problem. Bottom line: Journalism that serves the people needs the support of the people. That's the Next New Thing.

And it's what MoJo and our community of readers have been doing for 47 years now.

But staying afloat is harder than ever.

In "This Is Not a Crisis. It's The New Normal," we explain, as matter-of-factly as we can, what exactly our finances look like, why this moment is particularly urgent, and how we can best communicate that without screaming OMG PLEASE HELP over and over. We also touch on our history and how our nonprofit model makes Mother Jones different than most of the news out there: Letting us go deep, focus on underreported beats, and bring unique perspectives to the day's news.

You're here for reporting like that, not fundraising, but one cannot exist without the other, and it's vitally important that we hit our intimidating $390,000 number in online donations by June 30.

And we hope you might consider pitching in before moving on to whatever it is you're about to do next. It's going to be a nail-biter, and we really need to see donations from this specific ask coming in strong if we're going to get there.

payment methods

We Recommend

Latest

Sign up for our free newsletter

Subscribe to the Mother Jones Daily to have our top stories delivered directly to your inbox.

Get our award-winning magazine

Save big on a full year of investigations, ideas, and insights.

Subscribe

Support our journalism

Help Mother Jones' reporters dig deep with a tax-deductible donation.

Donate