Homeland Security Adviser Pins Wannacry Attack On North Korea In Wall Street Journal Op-Ed

from the so-that's-the-way-we're-doing-things-now dept

With politically-expeditious timing, Homeland Security Advisor Tom Bossert has pinned the Wannacry attacks on North Korea. The delivery method for the news was odd as well: a “commentary” piece in the Wall Street Journal’s op-ed pages.

Cybersecurity isn’t easy, but simple principles still apply. Accountability is one, cooperation another. They are the cornerstones of security and resilience in any society. In furtherance of both, and after careful investigation, the U.S. today publicly attributes the massive “WannaCry” cyberattack to North Korea.

The attack spread indiscriminately across the world in May. It encrypted and rendered useless hundreds of thousands of computers in hospitals, schools, businesses and homes. While victims received ransom demands, paying did not unlock their computers. It was cowardly, costly and careless. The attack was widespread and cost billions, and North Korea is directly responsible.

We do not make this allegation lightly. It is based on evidence. We are not alone with our findings, either. Other governments and private companies agree. The United Kingdom attributes the attack to North Korea, and Microsoft traced the attack to cyber affiliates of the North Korean government.

While it’s nice to hear this is “based on evidence” and that a “careful investigation” was performed, the op-ed piece still raises questions. Attribution is always difficult, but there seems to be info missing.

Wannacry was ransomware, but nowhere in Bossert’s piece is there any indication North Korea turned a profit. The article says Wanncry “cost” billions, but it doesn’t say anything about North Korea suddenly being awash in illicitly-obtained cash.

Also glossed over in Bossert’s tough-talking attribution announcement/cybersecurity muscle flexing is the original source of the Wannacry ransomware: purloined NSA exploits. There are all kinds of problems with Bossert’s announcement, as Marcy Wheeler points out:

The guy who — well after it was broadly known to be wrong — officially claimed WannaCry was spread by phishing is now offering this as his evidence that North Korea is the culprit:

We do not make this allegation lightly. It is based on evidence.

A representative of the government whose tools created this attack, said this without irony.

The U.S. must lead this effort, rallying allies and responsible tech companies throughout the free world to increase the security and resilience of the internet.

And the guy whose boss has, twice in the last week, made googly eyes at Vladimir Putin said this as if he could do so credibly.

As we make the internet safer, we will continue to hold accountable those who harm or threaten us, whether they act alone or on behalf of criminal organizations or hostile nations.

None of this necessarily adds up to the US government pinning the attacks on the wrong entity, but given the pedigree of the mouthpiece and the administration’s desire to minimize reports of Russian government-directed cyberattacks, pinning this on the President’s favorite Twitter punching bag (MSM notwithstanding) seems more convenient than accurate.

Even if it’s 100% accurate, there had to have been better ways to deliver this news than with a threat of actual, physical war appended. Bossert’s piece — after glossing over the NSA’s inadvertent contribution to the worldwide ransomware attack and throwing some shade at the previous administration — wraps everything up with this:

As for North Korea, it continues to threaten America, Europe and the rest of the world—and not just with its nuclear aspirations. It is increasingly using cyberattacks to fund its reckless behavior and cause disruption across the world. Mr. Trump has already pulled many levers of pressure to address North Korea’s unacceptable nuclear and missile developments, and we will continue to use our maximum pressure strategy to curb Pyongyang’s ability to mount attacks, cyber or otherwise.

Using cyberattacks as an excuse for IRL attacks is a scary idea. The Trump Administration seems willing to draw down on North Korea at any moment, which isn’t good news for anyone anywhere in the world. And it follows the newly-minted tradition established by the Obama Administration: mixing and matching war metaphors to treat cyberattacks like Pearl Harbor.

Filed Under: , , , ,

Rate this comment as insightful
Rate this comment as funny
You have rated this comment as insightful
You have rated this comment as funny
Flag this comment as abusive/trolling/spam
You have flagged this comment
The first word has already been claimed
The last word has already been claimed
Insightful Lightbulb icon Funny Laughing icon Abusive/trolling/spam Flag icon Insightful badge Lightbulb icon Funny badge Laughing icon Comments icon

Comments on “Homeland Security Adviser Pins Wannacry Attack On North Korea In Wall Street Journal Op-Ed”

Subscribe: RSS Leave a comment
Uriel-238 (profile) says:

Does it even matter where the Wannacry attacks came from?

They exploits used in Wannacry were preserved by the CIA (meaning they weren’t published and fixed) so that the CIA could use them.

When one country hijacks and uses another country’s illegal weapon we still blame the origin country for creating the illegal weapon in the first place.

Then we concern ourselves with what the hijacking country did.

orbitalinsertion (profile) says:

1. Things are so bad, we need to continue ratcheting up tensions with North Korea simply to fuel a distraction.

2. This generates another handy occasion to have a go at “industry” for “security” to prod them to do what authoritarians in government want (work with them under the table, hand over data, compromise products, make questionable new “security efforts”, backdoor encryption, etc.) instead of suggesting they ever write better code, make less insanely insecure products, or exercise ancient, basic security measures in their networked systems.

And a good time was had by all.

Add Your Comment

Your email address will not be published. Required fields are marked *

Have a Techdirt Account? Sign in now. Want one? Register here

Comment Options:

Make this the or (get credits or sign in to see balance) what's this?

What's this?

Techdirt community members with Techdirt Credits can spotlight a comment as either the "First Word" or "Last Word" on a particular comment thread. Credits can be purchased at the Techdirt Insider Shop »

Follow Techdirt

Techdirt Daily Newsletter

Techdirt Deals
Techdirt Insider Discord
The latest chatter on the Techdirt Insider Discord channel...