
Ransomware attackers used compromised password to access Colonial Pipeline network
CNN
Ransomware attackers gained access to Colonial Pipeline's computer networks in April using a compromised password, according to the company and a cybersecurity firm it hired -- leading to the deliberate shutdown of one of America's most important fuel distribution companies and the panic gas buying that ensued for days.
The password had been linked to a disused virtual private networking account used for remote access, FireEye confirmed to CNN, and the account was not guarded by an extra layer of security known as multi-factor authentication. Bloomberg first reported the password vulnerability following interviews with Charles Carmakal, senior vice president at Mandiant — the forensic division of FireEye — and Joseph Blount, Colonial's CEO.More Related News

A little-known civil rights office in the Department of Education that helps resolve complaints from students across the country about discrimination and accommodating disabilities has been gutted by the Trump administration and is now facing a ballooning backlog, a workforce that’s in flux and an unclear mandate.












