Government Takes Helm on Cybersecurity As Ransomware and Spying Threats Grow

July 20, 2021 by Tom Ramstack
Government Takes Helm on Cybersecurity As Ransomware and Spying Threats Grow

WASHINGTON — As the international blame game over ransomware heats up this week, the U.S. government is scrambling for solutions with increasingly combative strategies.

Legislation that won tentative approval in Congress on Monday anticipates a bigger role for the U.S. government in overseeing cybersecurity of critical industries.

Other pending bills would regulate cryptocurrency sought by cyberthieves and more aggressively track down sources of the attacks.

“One thing is certain,” said Rep. Diana DeGette, D-Colo. “The problem is not going away.”

DeGette is chairwoman of the House Energy and Commerce subcommittee on oversight and investigations, which held a hearing Tuesday on how Congress should respond to ransomware threats.

“We need not only a whole of government approach but a whole of society approach,” DeGette said.

The subcommittee listened to industry representatives who described damage from ransomware and suggested methods for addressing the attacks. Ransomware refers to Internet-based attacks on computer systems in which the attackers threaten to publish the victims’ personal data or perpetually block access to it unless a ransom is paid.

Kemba Walden, assistant general counsel for Microsoft Corporation, said about 2,400 U.S. organizations endured ransomware attacks last year along with a half-billion dollars in damage.

As the pace of ransomware picks up, she said last year’s attacks were “the tip of the iceberg” of what’s coming.

“Ransomware is a profitable business with almost no barriers to entry,” Walden said.

Private businesses could stop most of the attacks by using two-factor authentication to gain access to their computers, she said. A larger effort against the attackers must come from the government.

Christian Dameff, medical director of cybersecurity for the University of California at San Diego Health, said cyberattacks against hospitals have sometimes forced delays in surgeries and infringement of medical records.

“Cyberattacks on a hospital have the potential to threaten life and limb,” Dameff said.

He mentioned the example of an April 29 cyberattack on five San Diego hospitals that gave the attackers access to private medical records and shut the staff out of access to their own computers. Some patients were unable to renew their prescriptions or communicate with their doctors about treatment through the hospitals’ Internet portal until the problem was resolved.

In addition, cyberattacks in the past two years have hit hospitals in Hackensack, New Jersey; St. Louis, Missouri.; and Tuscaloosa, Alabama.

Other recent attacks forced executives at energy company Colonial Pipeline and meat processing company JBS S.A. to pay millions of dollars in cryptocurrency ransom to restore their ability to operate and to serve their U.S. customers. 

Internationally, oil fields in Saudi Arabia and oil operations of Mexican company Pemex were shut down temporarily by cyberattacks.

Most of the attacks were blamed on Russian criminal gangs operating with the knowledge of their government.

On Monday, the United States and several other countries pinned additional blame on the Chinese military. They said the Chinese orchestrated a cyberattack in January on Microsoft email systems used by tens of thousands of organizations worldwide.

They also said the Chinese know about criminal ransomware hackers in their country but do nothing to stop them. The victims included Europe’s top banking regulator.

China’s “pattern of irresponsible behavior in cyberspace is inconsistent with its stated objective of being seen as a responsible leader in the world,” a White House statement said.

At the congressional hearing Tuesday, Rep. Morgan Griffith, R-Va., said, “The federal government has strong resources to respond to attacks.”

He added, “We need to make better use of our resources.”

With similar ideas in mind, the House of Representatives on Monday approved two bills aimed at preventing cyberattacks on critical energy infrastructure. They would expand the U.S. Department of Energy’s role in cybersecurity and boost information-sharing between government and industry on the threats.

The two bills — H.R. 3119, the Energy Emergency Leadership Act, and H.R. 2931, Enhancing Grid Security through Public-Private Partnerships Act — now move to a possible vote in the Senate.

A+
a-
  • Congress
  • cybercrime
  • cybersecurity
  • federal government
  • In The News

    Health

    Voting

    Cybercrime

    April 29, 2025
    by Tom Ramstack
    FBI Reports Sharp Increase in American Cybercrime Victims

    WASHINGTON — The FBI’s new Internet Crime Report released last week shows Americans lost $16.6 billion to cybercrime in 2024... Read More

    WASHINGTON — The FBI’s new Internet Crime Report released last week shows Americans lost $16.6 billion to cybercrime in 2024 despite an intensified government effort to stop it. The losses were up by one-third from a year earlier.  Fraud was the most common crime, particularly among... Read More

    March 10, 2025
    by Dan McCue
    Cyberattack Puts X on Ice as Social Media Platform Suffers Multiple Outages

    WASHINGTON — If at first you don’t succeed, hit retry and retry and retry again. That was the message from... Read More

    WASHINGTON — If at first you don’t succeed, hit retry and retry and retry again. That was the message from Elon Musk’s X as the social media platform experienced multiple outages on Monday. Musk attributed the outages to a "massive" and unusual cyberattack. “We get attacked... Read More

    The US and Microsoft Disrupt a Russian Hacking Group Targeting American Officials and Nonprofits

    WASHINGTON (AP) — A hacking group tied to Russian intelligence tried to worm its way into the systems of dozens... Read More

    WASHINGTON (AP) — A hacking group tied to Russian intelligence tried to worm its way into the systems of dozens of Western think tanks, journalists and former military and intelligence officials, Microsoft and U.S. authorities said Thursday. The group, known as Star Blizzard to cyberespionage experts,... Read More

    June 24, 2024
    by Tom Ramstack
    Russian Software Company Sanctioned as US Warns of Espionage Threat

    WASHINGTON — The U.S. Treasury Department on Friday sanctioned a Russian software company that sells antivirus and cybersecurity software in... Read More

    WASHINGTON — The U.S. Treasury Department on Friday sanctioned a Russian software company that sells antivirus and cybersecurity software in the United States, some of it to government agencies. The Treasury Department said it found links between Kaspersky Lab and the Russian military indicating the software... Read More

    October 7, 2023
    by Dan McCue
    Hackers Access DC Voter Records

    WASHINGTON — Hackers breached the District of Columbia's Board of Elections website on Thursday, gaining access to 600,000 "lines" of... Read More

    WASHINGTON — Hackers breached the District of Columbia's Board of Elections website on Thursday, gaining access to 600,000 "lines" of U.S. voter data, including D.C. voters reports, city officials said. Sarah Winn Graham, the spokeswoman for the board, said a hacking group known as RansomVC claimed... Read More

    July 18, 2023
    by Tom Ramstack
    Congress Told AI Holds Great Risks and Benefits for US Military

    WASHINGTON — Artificial intelligence experts warned Tuesday during a congressional hearing of ominous dangers for the United States if it... Read More

    WASHINGTON — Artificial intelligence experts warned Tuesday during a congressional hearing of ominous dangers for the United States if it falls behind in developing the technology but a bright future by taking the lead. One of the greatest risks would be defending against a foreign enemy... Read More

    News From The Well
    scroll top