financetom
Technology
financetom
/
Technology
/
Colonial Pipeline CEO to face Congress as US recovers most of ransom
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Colonial Pipeline CEO to face Congress as US recovers most of ransom
Jun 8, 2021 2:29 AM

The chief executive of the massive fuel pipeline hit by ransomware last month is expected to detail his company’s response to the cyberattack and to explain his decision to authorize a multimillion-dollar payment when he testifies before Congress this week.

Colonial Pipeline CEO Joseph Blount will face the Senate Homeland Security Committee on Tuesday, one day after the Justice Department revealed it had recovered the majority of the USD 4.4 million ransom payment the company made in hopes of getting its system back online. A second hearing is set for Wednesday before the House Homeland Security Committee.

Blount’s testimony marks his first appearance before Congress since the May 7 ransomware attack that led Georgia-based Colonial Pipeline, which supplies roughly half the fuel consumed on the East Coast, to temporarily halt operations. The attack has been attributed to a Russia-based gang of cybercriminals using the DarkSide ransomware variant, one of more than 100 variants the FBI is currently investigating.

The company decided soon after the attack to pay ransom of 75 bitcoin, then valued at roughly USD 4.4 million. Though the FBI has historically discouraged ransomware payments for fear of encouraging cyberattacks, Colonial officials have said they saw the transaction as necessary to resume the vital fuel transport business as rapidly as possible.

The operation to seize cryptocurrency paid to the Russia-based hacker group is the first of its kind to be undertaken by a specialized ransomware task force created by the Biden administration Justice Department. It reflects a rare victory in the fight against ransomware as US officials scramble to confront a rapidly accelerating threat targeting critical industries around the world.

By going after the entire ecosystem that fuels ransomware and digital extortion attacks including criminal proceeds in the form of digital currency we will continue to use all of our resources to increase the cost and consequences of ransomware and other cyber-based attacks, Deputy Attorney General Lisa Monaco said at a news conference announcing the operation.

In a statement Monday, Blount said he was grateful for the FBI’s efforts and said holding hackers accountable and disrupting their activities ”is the best way to deter and defend against future attacks of this nature.

The private sector also has an equally important role to play and we must continue to take cyber threats seriously and invest accordingly to harden our defenses, he added.

Cryptocurrency is favored by cybercriminals because it enables direct online payments regardless of geographical location, but in this case, the FBI was able to identify a virtual currency wallet used by the hackers and recovered the proceeds from there, Abbate said. The Justice Department did not provide details about how the FBI had obtained a key for the specific bitcoin address but said law enforcement had been able to track multiple transfers of the cryptocurrency.

For financially motivated cybercriminals, especially those presumably located overseas, cutting off access to revenue is one of the most impactful consequences we can impose, Abbate said.

The Bitcoin amount seized 63.7, currently valued at USD 2.3 million after the price of Bitcoin tumbled amounted to 85 percent of the total ransom paid, which is the exact amount that the cryptocurrency-tracking firm Elliptic says it believes was the take of the affiliate who carried out the attack. The ransomware software provider, DarkSide, would have gotten the other 15 percent.

The extortionists will never see this money, said Stephanie Hinds, the acting U.S. attorney for the Northern District of California, where a judge earlier Monday authorized the seizure warrant.

Ransomware attacks in which hackers encrypt a victim organization’s data and demand a hefty sum for returning the information have flourished across the globe. Last year was the costliest on record for such attacks. Hackers have targeted vital industries, as well as hospitals and police departments.

Weeks after the Colonial Pipeline attack, a ransomware attack attributed to REvil, a Russian-speaking gang that has made some of the largest ransomware demands on record in recent months, disrupted production at Brazils JBS SA, the world’s largest meat processing company.

The ransomware business has evolved into a highly compartmentalized racket, with labor divided among the provider of the software that locks data, ransom negotiators, hackers who break into targeted networks, hackers skilled at moving undetected through those systems and exfiltrating sensitive data and even call centers in India employed to threaten people whose data was stolen to pressure for extortion payments.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Apple shareholders vote to keep its diversity policies
Apple shareholders vote to keep its diversity policies
Feb 25, 2025
(Reuters) -Apple shareholders voted to keep the tech giant's diversity, equity and inclusion policies on Tuesday, a win for management which had opposed efforts by a conservative group to scrap the program. The vote at the iPhone maker's annual meeting was seen as a test of shareholder views about the value of DEI programs, which many companies added or beefed...
INSIGHT-DeepSeek rushes to launch new AI model as China goes all in
INSIGHT-DeepSeek rushes to launch new AI model as China goes all in
Feb 25, 2025
(Repeats story published Tuesday night in Asia) * DeepSeek likely to release next-generation R2 model before May - sources * Startup shuns typical Chinese tech giant culture, is known for flat hierarchy * China embraces DeepSeek after initial regulatory concerns about its mass chip purchases * Firm instructed to keep low-profile amid global concerns about its privacy practices By Eduardo...
Apple shareholders vote to keep its diversity policies
Apple shareholders vote to keep its diversity policies
Feb 25, 2025
* Proposal coincided with Trump attack on DEI * Apple ( AAPL ) says its oversight avoids legal risks * Cook says company's success comes from 'culture of collaboration' (Adds vote totals and details) By Stephen Nellis Feb 25 (Reuters) - Apple ( AAPL ) shareholders voted to keep the tech giant's diversity, equity and inclusion policies on Tuesday, a...
WiseTech Global names billionaire founder Richard White executive chairman
WiseTech Global names billionaire founder Richard White executive chairman
Feb 25, 2025
(Reuters) - Australian logistics software maker WiseTech Global ( WTCHF ) appointed Richard White as its executive chairman on Wednesday, even as the firm's board and investors remain split over the billionaire founder's role following a flurry of controversies. Earlier in the week, four non-executive directors announced their departure from the firm, owing to differing views around White's role in...
Copyright 2023-2025 - www.financetom.com All Rights Reserved