RSA attacked by two groups

Powered by SC Magazine
 

Claims nation-state led the attack, but lacks evidence to lay blame.

RSA has confirmed that a nation state actor was one of two groups behind the attack against the company earlier this year.

Executive chairman Art Coviello said at the RSA Conference Europe that the sophistication of the attack could only originate from a nation state.

Howver he said RSA lacks the forensic evidence to attribute the attacks.

“For us, the breach was a validation of our strategy that a perimeter defence was not effective and that is why we bought NetWitness so that we were able to do remediation."

"There has been no successful attacks with the information and only one incident where the information taken was used in an attack.”

Eddie Schwartz, CISO of RSA, who arrived at the company as a result of the NetWitness acquisition, said that the attackers abused the naming convention and had an understanding of the network.

Coviello later said that two groups attacked the company and coordinated from a nation state, with one supporting another and one that was very visible.

RSA president Tom Heiser refused to disclose the cost of replacing tokens and said supply met demand around August.

“We got to to the top 500 customers relatively quickly and the challenge was to meet the needs of tens of thousands of customers, so we used our marketing and press departments to identify those customers. We could not hand-pick who we went to.”

This article originally appeared at scmagazineuk.com

Copyright © SC Magazine, US edition


RSA attacked by two groups
Tags
 
 
 
Top Stories
Toll Group to go Google
Poaches Woolworths project manager.
 
How News Corp's CIO tackled skills in his race to the cloud
What to do when your team’s talents are no longer needed.
 
Photos: How Thodey transformed Telstra
From turbulent Trujillo to Australia's leading telco.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Who do you trust most to protect your private data?







   |   View results
Your bank
  35%
 
Your insurance company
  5%
 
A technology company (Google, Facebook et al)
  8%
 
Your telco, ISP or utility
  8%
 
A retailer (Coles, Woolworths et al)
  4%
 
A Federal Government agency (ATO, Centrelink etc)
  18%
 
An Australian law enforcement agency (AFP, ASIO et al)
  15%
 
A State Government agency (Health dept, etc)
  7%
TOTAL VOTES: 3920

Vote
Do you support the abolition of the Office of the Information Commissioner?

   |   View results
I support shutting down the OAIC.
  27%
 
I DON'T support shutting the OAIC.
  73%
TOTAL VOTES: 1331

Vote