Baltimore Sun

West targets a web of Russian hackers

U.S. joins others in charging GRU agency after wave of cyberattac­ks

- By Gregory Katz, Michael Balsamo and Raf Casert

LONDON — The West unveiled anonslaugh­t of new evidence and indictment­s Thursday accusing Russian military spies of hacking so widespread that it seemed to target anyone, anywhere who investigat­es Moscow’s involvemen­t in an array of criminal activities — including doping, poisoning and the downing of a plane.

Russia denied the charges, neither humbled nor embarrasse­d by the revelation­s on one of the most high-tension days in East-West relations in years. Moscow lashed back with allegation­s that the Pentagon runs a clandestin­e U.S. biological weapons program involving toxic mosquitoes, ticks and more.

Thenucleus of Thursday’s drama was Russia’s military intelligen­ce agency known as the GRU, increasing­ly the embodiment of Russian meddling abroad.

In the last 24 hours: U.S. authoritie­s charged seven officers from the GRU with hacking internatio­nal agencies; British and Australian authoritie­s accused the GRU of adevastati­ng 2017 cyberattac­k on Ukraine, the email leaks that rocked the U.S. 2016 election and other damaging hacks; and Dutch officials alleged that four GRU agents tried and failed to hack into the world’s chemical weapons watchdog, the Organizati­on for the Prohibitio­n of Chemical Weapons.

The U.S. Justice Department charged seven GRU officers, including the four caught in The Hague, in an internatio­nal hacking rampage that targeted more than 250 athletes, a Pennsylvan­iabased nuclear energy company, a Swiss chemical laboratory and the OPCW.

The indictment said the GRU targets had publicly supported a ban on Russian athletes in internatio­nal sports competitio­ns and because they had condemned what they called a statespons­ored doping program by Russia.

The attempted break-in at the OPCW— involving hacking equipment in the trunk of a car and a trail of physical and virtual clues — was the most stunning operation revealed Thursday.

“Basically, the Russians got caught with their equipment, people who were doing it, and they have got to pay the piper. They are going to have to be held to account,” U.S. Defense Secretary Jim Mattis said in Brussels, where he was meeting with NATO allies.

Mattis said the Westhas“a wide variety of responses” available.

Deputy Foreign Minister Sergei RyabkovofR­ussia said the U.S. is taking a “dangerous path” by “deliberate­ly inciting tensions in relations between the nuclear powers,” adding that Washington’s European allies should also think about it.

While the accusation­s expose how much damage Russia can do in foreign lands, through remote hacking and on-site infiltrati­on — they also expose how little Western countries can do to stop it.

Russia is already under EU and U.S. sanctions, and dozens of GRU agents and alleged Russian trolls have The Netherland­s expelled four Russians in April after uncovering an effort by Russia’s GRU military intelligen­ce agency to hack a chemical weapons watchdog. been indicted by the U.S but will likely never be handed over to face Americanju­stice.

Still, to the Western public, Thursday may have been a pivotal day, with accusation­s so extensive, and the chorus of condemnati­on so loud, that it left little doubt of massive Russian wrongdoing. A wealth of surveillan­ce footage released by Western intelligen­ce agencies was confirmed by independen­t reporting.

The litany of accusation­s of GRU malfeasanc­e began overnight, when British and Australian authoritie­s accused the Russian agency of being behind the catastroph­ic 2017 cyberattac­k in Ukraine. The malicious software outbreak knocked out ATMs, gas stations, pharmacies and hospitals and, according to a secret White House assessment recently cited by Wired, caused $10 billion in damageworl­dwide.

The British and Australian­s also linked the GRU to other hacks, including the Democratic Party email leaks and online cyber propaganda that sowed havoc before Americans voted in the 2016 presidenti­al election.

Later Thursday, Dutch defense officials released photos and a timeline of GRU agents’ botched attempt to break into the chemical weapons watchdog using Wi-Fi hacking equipment hidden in a car parked outside a nearby Marriott Hotel. The OPCW was investigat­ing a nerve agent attack on a former GRU spy, Sergei Skripal, and his daughter in Salisbury, England, that Britain has blamed on the Russian government. Moscow denies involvemen­t.

Photograph­s released by the Dutch Ministry of Defense showed a trunk loaded with a computer, battery, a bulky white transforme­r and a hidden antenna; officials said the equipment was operationa­l when Dutch counterint­elligence interrupte­d the operation.

What Dutch authoritie­s found seemed to be the work of an amateur. A taxi receipt in the pocket of one of the agents showed he had hired a cab to take him from a street next to GRU headquarte­rs to Moscow’s Sheremetye­vo Airport. A laptop found with the team appeared to tie them to other alleged GRU hacks.

The men were expelled instead of arrested, because they were traveling on diplomatic passports.

The Dutch also accused the GRU of trying to hack investigat­ors examining the 2014 downing of a Malaysian Airlines jetliner over eastern Ukraine that killed all 298 people on board. A Dutchled team says it has evidence the missile that brought the plane down came from a Russia-based military unit. Russia has denied the charge.

 ?? DUTCH DEFENSE MINISTRY ??
DUTCH DEFENSE MINISTRY

Newspapers in English

Newspapers from United States