web analytics

DHS Calls Into Question Physical Security in Johnson Controls Cyberattack – Source: www.darkreading.com

Rate this post

Source: www.darkreading.com – Author: Dark Reading Staff, Dark Reading

In the latest development of the cyberattack impacting Johnson Controls International (JIC), officials at the Department of Homeland Security (DHS) are now determining if the attack has affected sensitive physical security information.

Johnson Controls serves as a government contractor providing manufacturing services such as HVAC, fire, and security equipment. Due to the nature of these services, officials at DHS are raising concerns of compromised information such as DHS floor plans. Reports state that an internal memo details “classified/sensitive contracts for DHS that depict the physical security of many DHS facilities.”

It is still unclear as to what information was accessed in the breach, which is believed to be a ransomware attack, but reports state that “until further notice, we should assume that [the contractor] stores DHS floor plans and security information tied to contracts on their servers.”

Concerns are heightened due to a potential government shutdown, which could begin this coming Sunday, making the incident not only a security issue, but a time-sensitive one. More than 80% of the Cybersecurity and Infrastructure Security Agency (CISA) workforce will be furloughed should this shutdown go into effect, and cyberattacks across the nation’s software supply chain will heighten putting critical infrastructure at risk.

“There is absolutely a trend emerging in ransomware attacks with cyber criminals going deeper into their victims’ systems to deal a more crippling blow,” noted John Gunn, CEO of Token, in an emailed statement, underscoring the harsh levels cybercriminals are willing to go to in their attacks, including those against government agencies.

This incident highlights the importance of the executive order President Biden issued in 2021 for federal agencies to bolster their cybersecurity safeguards and brings into question the security of third-party suppliers and contractors.

Keep up with the latest cybersecurity threats, newly-discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.

Subscribe

Original Post URL: https://www.darkreading.com/ics-ot/dhs-calls-into-question-physical-security-in-johnson-controls-cyberattack

Category & Tags: –

LinkedIn
Twitter
Facebook
WhatsApp
Email

advisor pick´S post

More Latest Published Posts