Connect with us

Published

on

Ransomware has long been plaguing American municipalities. It appeared to be another typical ransomware attack that impacted the city of Columbus, Ohio, this past July. The city’s response to the hack, however, was not, and it has cybersecurity and legal experts across the country questioning its motives.

Connor Goodwolf (legal name is David Leroy Ross) is an IT consultant who plumbs the dark web as part of his job. “I track dark web-type crimes, criminal organizations, and stuff like what the Telegram CEO has been arrested for,” Goodwolf said.

So when word got out that the city of Columbus, his hometown, had been breached, Goodwolf did what he does: he poked around online. It didn’t take him long to discover what the hackers had in their possession.

“It wasn’t the biggest, but it was one of the most impactful breaches I have seen,” Goodwolf said.

In some ways, he described it as a routine breach, with personal identifiable information, protected health information, Social Security numbers and driver’s license photos exposed. However, because multiple databases were breached, it was more encompassing than other attacks. According to Goodwolf, the hackers had breached multiple databases from the city, the police, and the prosecutor’s office. There were arrest records and sensitive information about minors and domestic violence victims. Some of the breached databases, he says, went back to 1999. 

Goodwolf found over three terabytes of data that took over 8 hours to download.

“The first thing I see is the prosecutor’s database, and I’m like ‘holy sh-t’ these are domestic violence victims. When it comes to domestic violence victims, we need to protect them the most because they have already been victimized once, and now they are again by having their information exposed,” he said.

Goodwolf’s first action was to contact the city to let them know how serious the breach was, because what he saw contradicted official statements. At a press conference on August 13,  Columbus Mayor Andrew Ginther said: “The personal data that the threat actor published to the dark web was either encrypted or corrupted, so the majority of the data came by the threat actor is unusable.”

But what Goodwolf was finding didn’t support that view. “I tried to reach out to the city multiple times to multiple departments and was blown off,” he said.

Google-owned Mandiant, as well as many other top cybersecurity firms, have been tracking a continued increase in ransomware attacks, both in prevalence and severity, and the rise of the Rhysida Group behind the Columbus hack, which has come into prominence within the last year.

The Rhysida Group claimed responsibility for the hack. While not much is known about the cyber gang, Goodwolf and other security experts say they appear to be state-sponsored and based in Eastern Europe, possibly linked to Russia. Goodwolf says these ransomware gangs are “professional operations” with a staff, paid vacation, and PR people.

“They have ramped up the attacks and targets since last autumn,” he said.

The U.S. government’s Cybersecurity and Infrastructure Security Agency issued a bulletin about Rhysida last November.

Goodwolf said that because no one from the city responded to him he went to the local media and shared data with journalists to get the word out about the seriousness of the breach. And that is when he heard from the city of Columbus, in the form of a lawsuit and a temporary restraining order preventing him from disseminating additional information. 

The city defended its response in a statement to CNBC:

“The City initially moved to obtain this order, which was granted by the Court, to prevent the dissemination of sensitive and confidential information, potentially including the identities of undercover police officers, that threatens public safety and criminal investigations.”

The city’s temporary 14-day restraining order against Goodwolf has since expired, and now it has a preliminary injunction and an agreement with Goodwolf not to release more data.

“It should be noted that the Court order does not prohibit the defendant from discussing the data breach or even describing what kind of data was exposed,” the city’s statement added. “It simply prohibits the individual from disseminating the stolen data posted on the dark web. The City remains engaged with federal authorities and cyber security experts to respond to this cyber intrusion.”

Meanwhile, the mayor did have to perform a mea culpa at a subsequent press conference, saying his initial statements were based on the information he had at the time. “It was the best information we had at the time. Clearly, we discovered that that was inaccurate information and I have to accept responsibility for that.”

Realizing the exposure to residents was greater than first thought, the city is offering two years of free credit monitoring from Experian. This includes anyone who has had contact with the city of Columbus via an arrest or other business. Columbus is also working with Legal Aid to see what additional protections are needed for domestic violence victims who may have been compromised or need help with civil protection orders.

To date, the city has not paid the hackers, who were demanding $2 million in ransom.   

‘He’s Not Edward Snowden’

Those who study cybersecurity law and work within the realm expressed surprise at Columbus filing a civil lawsuit against the researcher.

“Lawsuits against data security researchers are rare,” said Raymond Ku, professor of law at Case Western Reserve University. On the rare occasion they do happen, he said, it is usually when the researcher is alleged to have disclosed how a flaw was or can be exploited, which would then allow others to take advantage of the flaw as well.

“He wasn’t Edward Snowden,” said Kyle Hanslovan, CEO of cybersecurity company Huntress, who described himself as troubled by the city of Columbus’s response and what it could mean for future breaches. Snowden was a government contract employee who leaked classified information and faced criminal charges, but considered himself a whistleblower. Goodwolf, Hanslovan says, is a Good Samaritan who independently found the breached data.

“In this case, it appears we have just silenced someone who, as far as I can tell, appears to be a security researcher who did the bare minimum and confirmed the official statements made were not true. This can’t possibly be an appropriate use of the courts,” Hanslovan said, predicting the case will be quickly overturned.

Columbus City Attorney Zach Klein said during a September press conference that the case was “not about freedom of speech or whistleblowing. This is about downloading and disclosure of stolen criminal investigatory records.”

Hanslovan worries about the ripple effect where cybersecurity consultants and researchers are afraid to do their jobs for fear of being sued. “The bigger story here is are we seeing the emergence of a new playbook” for hacking response in which individuals are silenced, and that should not be welcomed, he said. “Silencing any opinion, even for 14 days, could be enough to prevent something credible from coming to light, and that terrifies me,” Hanslovan said. “That voice needs to be heard. As we see bigger cybersecurity incidents come up, I am worried that folks will be more concerned bringing them to light.”

Scott Dylan, founder of United Kingdom-based venture capital firm NexaTech Ventures, also thinks the actions of the city of Columbus could induce a chilling effect on the field of cybersecurity.

“As the field of cyberlaw continues to mature, this case is likely to be referenced in future discussions about the role of researchers in the aftermath of data breaches,” Dylan said.

He says legal frameworks must evolve to keep pace with the sophistication of both cyberattacks and the ethical dilemmas they generate, and the approach taken by Columbus is a mistake.

Meanwhile, the legal process will grind on for Goodwolf. Despite Columbus and Goodwolf reaching an agreement last week on the dissemination of information, the city is still suing him for damages in a civil suit that could reach $25,000 or higher. Goodwolf is representing himself in his talks with the city, though says that he has a lawyer on standby, if needed.

Some residents have filed a class-action lawsuit against the city. Goodwolf says that 55% of the information breached has been sold onto the dark web, while 45% is available for anyone with the skills to access it.

Dylan thinks the city is taking a big risk, even if its actions may be legally defensible, by creating the appearance of an attempt to silence discourse rather than encourage transparency. “It’s a strategy that could backfire, both in terms of public trust and future litigation,” he said.

“I am hoping the city realizes the mistake of filing a civil suit and the implications not just on security,” Goodwolf said, noting that Intel is building a $1 billion facility in a Columbus suburb. In recent years, the city has been positioning itself as a new tech hub in the Midwest, and attacking white hats and cybersecurity researchers, he said, could cause some in the tech sector to rethink it as a location.

Continue Reading

Technology

Cryptocurrencies jump to start 2025, bitcoin rises back above $96,000

Published

on

By

Cryptocurrencies jump to start 2025, bitcoin rises back above ,000

Representations of cryptocurrency Bitcoin are seen in this illustration taken November 25, 2024. 

Dado Ruvic | Reuters

Cryptocurrencies rose to start the year, rebounding from recent losses as investor optimism returned to the market.

The price of bitcoin rose 2% to $96,711.71 Thursday, bringing its new year gain to about 3% when counting trading from the Jan. 1 session.

The CoinDesk 20 index, a measure of the broader cryptocurrency market, advanced 4%. The token tied to Solana, the popular Ethereum competitor, led the gains with a 7% increase. Crypto stocks Coinbase and MicroStrategy each climbed 4% as well.

Stock Chart IconStock chart icon

hide content

Bitcoin rebounds to start the year

This year is expected to be a banner year for the crypto industry thanks to a more favorable regulatory environment promised by President-elect Donald Trump. Investors are hoping Congress will pass its first ever crypto focused legislation – which could be centered around stablecoins or market structure.

Traders are also keen to see the crypto public equity markets open up with more initial public offerings and progress on a potential national strategic bitcoin reserve.

Crypto assets slid into the end of 2024. Although the post-election rally that sent bitcoin to new records above $100,000 had fizzled, the flagship cryptocurrency still ended the year up more than 120%. Long-term holders took some profits while others sold amid renewed uncertainty about the direction of Federal Reserve interest rate cuts in 2025.

Don’t miss these cryptocurrency insights from CNBC Pro:

Continue Reading

Technology

Tesla shares slide after it reports first drop in annual deliveries

Published

on

By

Tesla shares slide after it reports first drop in annual deliveries

Tesla CEO and X owner Elon Musk speaks during an unveiling event for Tesla products in Los Angeles on Oct. 10, 2024.

Tesla | Via Reuters

Tesla posted its fourth-quarter vehicle production and deliveries report on Thursday. Here are the key numbers:

Total deliveries Q4 2024: 495,570

Total production Q4 2024: 459,445

Total annual deliveries 2024: 1,789,226

Total annual production 2024: 1,773,443

Results for the quarter represented the first annual drop in delivery numbers for Tesla, which reported 1.81 million deliveries in 2023. It reported 484,507 deliveries in the fourth quarter of 2023.

Tesla shares fell by as much as 7% in trading on Thursday.

Analysts had expected Tesla to report deliveries in the quarter of 504,770, including 474,000 Model 3 and Model Y EVs, according to a consensus of estimates compiled by StreetAccount. Tesla sent some investors a company-compiled delivery consensus of 506,763 vehicles, based on a survey of 26 analysts. A widely followed independent Tesla researcher, who publishes as Troy Teslike, predicted deliveries of 501,000.

Deliveries are the closest approximation of sales reported by Tesla but are not precisely defined in the company’s shareholder communications.

The fourth-quarter report comes after a huge late-year rally in Tesla’s stock, which finished 2024 up 63%. In mid-December, the shares reached a record, eclipsing their prior all-time high from 2021.

It was a big turnaround from the first quarter, when the stock plummeted 29%, its worst period since 2022, as the company contended with declining sales despite price cuts and incentives for buyers. On the company’s first-quarter earnings call in April, CEO Elon Musk told investors that while he expected “higher sales this year than last year,” the growth rate would slow from 38% in 2023.

The biggest story at Tesla in the back half of the year was Musk’s role in President-elect Donald Trump’s election campaign. Musk, the world’s richest person, poured in around $277 million to promote Trump and other Republican candidates, and spent weeks on the road campaigning in swing states.

Elon Musk speaks with U.S. President-elect Donald Trump at a viewing of the launch of the sixth test flight of the SpaceX Starship rocket, in Brownsville, Texas, U.S., November 19, 2024.

Brandon Bell | Via Reuters

Musk, who also runs SpaceX and xAI and owns social network X, has been tapped to co-lead an advisory group to the Trump administration that will aim to slash federal spending, personnel and regulations.

Sam Fiorani, a vice president at industry research group Auto Forecast Solutions, told CNBC in an email that Musk’s foray into politics may have “pulled his focus away from his core businesses.” However, the degree to which investors or EV buyers care won’t be reflected in Tesla’s numbers until the first quarter, he said.

Until recently, Tesla had been one of the only automakers mass producing battery-electric vehicles. The company now faces an onslaught of competition from domestic automakers, including General Motors, Ford and Rivian as well as BYD in China, Hyundai in Korea, and European auto giants BMW and Volkswagen.

Patrick George, editor in chief of InsideEVs, told CNBC that he thinks Tesla still does many things better than any other EV maker, especially when it comes to its charging network. But Tesla’s biggest operational challenge in the latest quarter was “the nuts-and-bolts job of being a car company.”

‘Piling up on used car lots’

Tesla has invested in a humanoid robotics initiative and chip development, and plans to produce a dedicated robotaxi and start a driverless ride-hailing service before 2027. While Musk and shareholders may not want to view Tesla as just a car company, most of the profits are still derived from vehicle sales.

George said that Tesla made a mistake not bringing “more affordable EVs in 2024,” and added that Cybertrucks — the company’s newest vehicle — are “piling up on used car lots.” The angular steel Cybertruck starts at around $80,000.

With competitors picking up market share in Europe, Tesla experienced a steep drop in sales in the region during the fourth quarter.

From January through the end of November, Tesla sold 283,000 vehicles in Europe, an approximately 14% decline from the same period a year earlier, according to registration data from the European Automobile Manufacturers’ Association, or ACEA. Registrations in Europe slid to 18,786 in November from around 31,810 a year earlier.

The company’s business in China was also pressured in the fourth quarter.

Fiorani said that while the Model Y is the second bestselling model in China, “its growth is failing to keep up with growth of the market.” Through November, sales of the Model Y were up more than 5% but overall EV sales in the country rose 8%, he said.

Meanwhile, BYD and other brands in China, including Chery, Li Auto, Jetour, LeapMotor and Aito, grew substantially faster than Tesla. BYD is also setting up plants outside of China and exporting prodigiously.

In North America, Tesla has remained dominant. The company offered a range of incentives and price cuts, even on its most popular Model Y SUV, during the fourth quarter to drive sales. Still, Tesla experienced a buildup of inventory.

During the fourth quarter, the company sent Cybertruck assembly line workers home for a few days, indicating that it may be looking to avoid flooding the market with too many of the vehicles.

Looking ahead to 2025, Musk said on an earnings call in October that Tesla expects to be offering lower-cost and autonomous vehicles in 2025, which should lead to “20% to 30% growth” over 2024.

WATCH: Chinese auto market could reach 55-60% EVs by end of 2025

Chinese auto market could reach 55-60% EVs by end of 2025, says former Ford CEO Mark Fields

Continue Reading

Technology

Apple offers holiday discount in China as Huawei competition heats up

Published

on

By

Apple offers holiday discount in China as Huawei competition heats up

People walk past an advertisement for the iPhone 16 Pro at an Apple store during National Day holiday on October 3, 2024 in Chongqing, China.

Cheng Xin | Getty Images News | Getty Images

Apple is offering discounts on its top-end iPhones and other products in China for the upcoming Chinese New Year as the U.S. tech giant faces heightened competition in one of its most crucial markets.

The Cupertino giant is giving customers 500 Chinese yuan ($68.50) off of the iPhone 16 Pro or iPhone 16 Pro Max, and 400 yuan off the iPhone 16 or iPhone 16 Plus. Offers also include discounts for the iPhone 14 and iPhone 15.

For a long time Apple has resisted offering discounts through its own retail channels. Instead, third-party retailers would offer deals at certain times of the year. However, as competition ramps up, Apple has been more inclined in the last year to post seasonal deals.

Apple offered a similar Chinese New Year deal last year and in May, the company offered hefty discounts as part of China’s 618 shopping festival.

The firm’s latest challenge has come from a resurgent Huawei and other domestic brands. Apple smartphone shipments fell 6% year-on-year in mainland China in the third quarter of 2024, according to Canalys. The company’s market share also slipped to 14% from 16% a year earlier.

Huawei meanwhile saw shipments jump 24% year-on-year, Canalys data shows, while the company’s market share hit 16% from 13% a year earlier.

Huawei, which was once the number one smartphone player in the world before U.S. sanctions crippled its handset business, has aggressively launched new devices since the latter half of 2023. These devices contain chips that many had thought would be difficult to produce due to U.S. restrictions on Huawei.

Last year, the Chinese tech firm launched a first-of-its-kind trifold phone in a bid to show off its technological capabilities.

Continue Reading

Trending