Email this article   Print article 


RSA Hacked; SecurID Customers At Risk?

By Andrew R Hickey
March 18, 2011    8:45 AM ET

Page 1 of 2

RSA customers could be at risk after the company's two-factor SecurID tokens fell victim to what it's calling sophisticated cyber-attack.

Art Coviello, executive chairman of Bedford, Mass.-based RSA, the security arm of EMC, told customers in an open letter this week that RSA had recently identified an attack in progress against RSA and its investigation revealed that an Advanced Persistent Threat (APT) was carried out against the company and information specifically related to RSA's SecurID two-factor authentication products was extracted.

Two-factor authentication is the process where users provide two independent identifying factors to obtain access to systems. In the case of SecurID, the two authentication factors would be a password and a physical token. RSA's SecurID products are used on PCs, USB drives and other devices for an extra layer of security that goes beyond user names and passwords to grant access to systems.

Coviello wrote that it does not appear that any customers were attacked, but that the data gathered could be used to weaken the defense provided by SecurID products.

"While at this time we are confident that the information extracted does not enable a successful direct attack on any of our RSA SecurID customers, this information could potentially be used to reduce the effectiveness of a current two-factor authentication implementation as part of a broader attack," Coviello wrote in the letter detailing the attack on RSA's SecurID offering. "We are very actively communicating this situation to RSA customers and providing immediate steps for them to take to strengthen their SecurID implementations."

The attack comes roughly a month after RSA hosted its annual RSA Conference, which has become the de facto IT security conference in the nation.

Coviello wrote that there is no evidence that any customer security related or other RSA products have been victims of the attack. No EMC products were affected, Coviello added.

"It is important to note that we do not believe that either customer or employee personally identifiable information was compromised as a result of this incident."

Coviello said RSA will mount a full court press to ensure that it provides its SecurID customers tools, processes and support needed to bulk up their systems in the face of the attack. RSA's partners will play a key role.

"Our full support will include a range of RSA and EMC internal resources as well as close engagement with our partner ecosystems and our customers' relevant partners," Coviello wrote.

NEXT: RSA SecurID Attack: Customer Next Steps

1 | 2 | Next >>

To continue reading this article, please download the free CRN Tech News app for your iPad or Windows 8 device.
Related: Videos | Slide Shows | Comments

SHARE THIS ARTICLE

More Security

Recent Articles

10 Security Companies That Have Scored CIA Funding

CIA-funded venture firm invests millions in technology startups, mostly security firms. Find out which security companies won In-Q-Tel funding.

Head-To-Head: Symantec Vs. McAfee In Endpoint Protection

McAfee and Symantec are archrivals with a firm grip on the North American security market. CRN pits both vendors' endpoint security products against each other and names a winner.

The 8 Steps Behind The Massive $45M Cyber Bank Heist

More than $45 million was stolen from banks in the U.S. and 19 other countries in a scheme that law enforcement is calling an international conspiracy to drain millions from bank accounts using stolen debit cards and PIN numbers. Here's how they did it.

  More Slide Shows




Related Videos
Loading...