Bonum Certa Men Certa

Office of Personnel Management (OPM) and Microsoft Windows

Server



Summary: A look at lesser-explored aspects of the so-called OPN hack [sic], especially the systems involved

IN AN EFFORT to understand what repeatedly happened in the undoubtedly significant Office of Personnel Management (OPM) data breach/es [2-8], leaving aside the lack of concrete evidence of Chinese role [1], we tried to understand which platform was to blame. In the case of Sony it was reportedly a Microsoft Windows machine acting as the culprit or attack vector, just like Stuxnet in Iran with similar attempts against North Korea (there are still more articles about it).



"Hundreds of millions of credit card numbers got snatched from Windows."NSA leaks were due to Microsoft SharePoint (Snowden gained access to the so-called 'crown jewels'). As we last noted in an article about words from Kaspersky (still in headlines for it [9-12]), Windows is inherently not secure. Commercial targets of data breached that we wrote about before serve to show this. We gave readers a lot of examples over the years. Hundreds of millions of credit card numbers got snatched from Windows. the cost was enormous, but the role of Windows wasn't ever emphasised in the corporate press.

Rebecca Abrahams published an article co-authored by Dr. Stephen Bryen, Founder & CTO of FortressFone Technologies. Unlike many other articles which point a finger at China (with little to actually back this accusation with), Abrahams does call out Windows and sheds light on what OPM uses:

Second, the government is very slow to improve security on its computers and networks. Many of the computers the government is using are antique. For example OPM still has 12-year old Windows XT as an operating system for its computers. Microsoft no longer supports XT and any vulnerability that develops is the problem of the user, not of the supplier. But even if the old stuff was upgraded it won't help much because the systems are really clumsy amalgams of disparate parts which as a "system," have never been properly vetted for security.


So there we go. Windows. We're hardly surprised to say the least. The author probably means NT or XP (14 years old, not 12, unlike Server 2003), but does it matter much? Any version of Windows, no matter how old, is not secure. It's not even designed to be secure. ⬆

Related/contextual items from the news:


  1. US wronging of China for cyber breaches harm mutual trust
    Out of ulterior motives, some US media and politicians have developed a habit of scapegoating China for any alleged cyber attack on the United States. Such groundless accusations would surely harm mutual trust between the two big powers of today’s world.


  2. The Massive Hack on US Personnel Agency is Worse Than Everyone Thought
    Last week, the human resources arm of the US government, the Office of Personnel Management (OPM) admitted that it had been victim of a massive data breach, where hackers stole personal data belonging to as many as 4 million government workers.


  3. Feds Who Didn't Even Discover The OPM Hack Themselves, Still Say We Should Give Them Cybersecurity Powers
    We already described how the recent hack into the US federal government's Office of Personnel Management (OPM) appears to be much more serious than was initially reported. The hack, likely by Chinese state hackers, appear to have obtained basically detailed personal info on all current and many former federal government employees.


  4. China-linked hackers get data on CIA, NSA personnel with security-clearance: report
    China-linked hackers appear to have gained access to sensitive background information submitted by US intelligence and military personnel for security clearances that could potentially expose them to blackmail, the Associated Press reported on Friday.

    In a report citing several US officials, the news agency said that data on nearly all of the millions of US security-clearance holders, including the Central Intelligence Agency (CIA), National Security Agency (NSA) and military special operations personnel, were potentially exposed in the attack on the Office of Personnel Management (OPM).


  5. Second OPM Hack Revealed: Even Worse Than The First
    And yet... this is the same federal government telling us that it wants more access to everyone else's data to "protect" us from "cybersecurity threats" -- and that encryption is bad? Yikes.


  6. Dossiers on US spies, military snatched in 'SECOND govt data leak'


    A second data breach at the US Office of Personnel Management has compromised even more sensitive information about government employees than the first breach that was revealed earlier this week, sources claim. It's possible at least 14 million Americans have chapter and verse on their lives leaked, we're told.

    The Associated Press reports that hackers with close ties to China are believed to have obtained extensive background information on intelligence-linked government staffers – from CIA agents and NSA spies to military special ops – who have applied for security clearances.

    Among the records believed to have leaked from a compromised database are copies of Standard Form 86 [PDF], a questionnaire that is given to anyone who applies for a national security position, and is typically verified via interviews and background checks.
  7. Officials: Second hack exposed military and intel data
  8. Senate Quickly Says 'No Way' To Mitch McConnell's Cynical Ploy To Add Bogus Cybersecurity Bill To NDAA
    Earlier this week, we noted that Senator Mitch McConnell, hot off of his huge flop in trying to preserve the NSA's surveillance powers, had promised to insert the dangerous "cybersecurity" bill CISA directly into the NDAA (National Defense Authorization Act). As we discussed, while many have long suspected that CISA (and CISPA before it) were surveillance bills draped in "cybersecurity" clothing, the recent Snowden revelations that the NSA is using Section 702 "upstream" collection for "cybersecurity" issues revealed how CISA would massively expand the NSA's ability to warrantlessly wiretap Americans' communications.


  9. “Don’t Hack Me! That’s a Bad Idea,” Says Eugene Kaspersky to APT Groups


  10. Russian Software Security Lab Hacked, Indirectly Links Attack To NSA
  11. Israel, NSA May Have Hacked Antivirus Firm Kaspersky Lab
    Moscow-based antivirus firm Kaspersky Lab, famous for uncovering state-sponsored cyberattacks, today dropped its biggest bombshell yet: Its own computer networks were hit by state-sponsored hackers, probably working for Israeli intelligence or the U.S. National Security Agency. The same malware also attacked hotels that hosted ongoing top-level negotiations to curb Iran's nuclear program.


  12. Protocols of the Hackers of Zion?
    When Israeli Prime Minister Benjamin Netanyahu met with Google chairman Eric Schmidt on Tuesday afternoon, he boasted about Israel’s “robust hi-tech and cyber industries.” According to The Jerusalem Post, “Netanyahu also noted that ‘Israel was making great efforts to diversify the markets with which it is trading in the technological field.'”

    Just how diversified and developed Israeli hi-tech innovation has become was revealed the very next morning, when the Russian cyber-security firm Kaspersky Labs, which claims more than 400 million users internationally, announced that sophisticated spyware with the hallmarks of Israeli origin (although no country was explicitly identified) had targeted three European hotels that had been venues for negotiations over Iran’s nuclear program.

    Wednesday’s Wall Street Journal, one of the first news sources to break the story, reported that Kaspersky itself had been hacked by malware whose code was remarkably similar to that of a virus attributed to Israel. Code-named “Duqu” because it used the letters DQ in the names of the files it created, the malware had first been detected in 2011. On Thursday, Symantec, another cyber-security firm, announced it too had discovered Duqu 2 on its global network, striking undisclosed telecommunication sites in Europe, North Africa, Hong Kong, and Southeast Asia. It said that Duqu 2 is much more difficult to detect that its predecessor because it lives exclusively in the memory of the computers it infects, rather than writing files to a drive or disk.


Recent Techrights' Posts

Creditors beware: VMS Enterprises Ltd vs Brexit Party (Reform UK Party Ltd)
Reprinted with permission from Daniel Pocock
 
Brigading Against Women - Part XIV - Mastery of Distraction
The finger-pointing actions themselves prove the saying that even an accusation is likely a confession
Links 02/10/2026: "McDonald's Caught Cheating Consumers for Profit" and "It's Not Illegal If You Buy New Laws"
Links for the day
EPO "Cocaine Communication Manager" - Part XVII - A Vote for Campinos This Month (Reappointment) Would be an Endorsement of Cocaine
The harder they try to silence critics, the worse it'll get
The Cyber Show on "Career Scientists" (Resellers of Establishment Brands Like GAFAM)
"The "career scientist" - with PhD and research office by their mid-twenties - follows well oiled tracks and institutional signposts, steering away from controversial or "difficult" subjects."
Reporting Court Matters While Preserving Dignity of Staff
There's a high and growing probability we'll take our appeal to the Court of Appeal next year
Broligarchs Speech-Policing, Faux 'Community' or 'Hub' in 'User-Driven' Clothing
Until a broligarch decides to "flag" inconvenient stories
Gemini Links 02/10/2026: Haiku, Microsoft EEE ('Linux' as a Container in Windows), and ROOPHLOCH 2026 Roundup
Links for the day
Microsoft Promised Them Bonuses, Instead They May Get Laid Off
Laid off or paid off?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, October 01, 2026
IRC logs for Thursday, October 01, 2026
Lots of People Left Red Hat This Week, No Announcement Made of Layoffs
Companies just find ways and excuses not to announce their layoffs
Gemini Links 01/10/2026: Gemini-to-Web Proxies Considered Harmful, ROOPHLOCH 2026 at Griffith Park Observatory
Links for the day
"SPONSORED FEATURE" of HPE and NVIDIA at The Register MS Has Just Mentioned "AI" 68 Times in One Page!
Meanwhile, grown-ups ignore the hype and get work done without slop
Microsoft's XBox Layoffs Not Finished, Won't be Finished, It's Called "Forever Layoffs"
Microsoft will shut down (XBox) after shrinking it, there's no need to sell anything (a straw man)
IBM's Red Hat Lost Lots of People Today, Chief People Officer (CPO) Dethroned
Headcount falls shortly in secret.
Microsoft is "Pushing Up Daisies" Amid Mass Layoffs (Secret Ones)
"Longtime Microsoft research leader Peter Lee and former LinkedIn CEO Ryan Roslansky to depart"
Links 01/10/2026: "Lawyer Cites ChatGPT-Invented Fake Witnesses in Murder Appeal" and The 'Linux' Foundation Technical Advisory Board (TAB) Has Vacuum
Links for the day
Brigading Against Women - Part XIII - The Offer We Didn't Ask For (and Under Threats to a Lady at the Webhost, a Form of Extortion From America)
Two and a half months ago Garrett made an offer to my wife
Techrights Turning 20 Next Month
Our image is under attack, our finances are constantly under attack and so on
Links 01/10/2026: "Meat Proxies" and "Japan’s Far Right Is Courting Young Voters"
Links for the day
Red Hat Being Phased Out of Existence (Like Many Other Companies That IBM Bought)
The "Red Hat" brand (and badge) is being dissolved some more today [...] IBM is imploding 'creatively'.
IBM Layoffs Cover-up
thelayoff.com is censoring threads
"Restricted Boot" Garrett's State is Now Implementing Kill Switches (Just What We've Warned About All Along)
The underlying concept is hardly new
Brett Wilson LLP Has Had No Annual Report in 16 Months
A cynic might hint that they try to hide something
Reform UK last minute accounts filing
Reprinted with permission from Daniel Pocock
Gemini Links 01/10/2026: "Babel With Better Hardware", Software Input That's Slop, and DWeb Cascadia 2026
Links for the day
Today is D-Day at Red Hat and People Leave in Droves
They said there would be "bluewashing", we're mostly seeing people announcing they're leaving
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, September 30, 2026
IRC logs for Wednesday, September 30, 2026
Gemini Links 30/09/2026: Fish Leather, Slop Formation, and ROOPHLOCH
Links for the day
In a Lot of Europe (or EU) Android (With Linux) is Bigger Than Windows
For example in Greece
Slop-Posting is a New Form of S---posting
We recently caught several more "linux" sites (with "linux" in their domain name) turning to slop
EPO Cocainegate: Lots of Money (Over a Million Euros) for Cocaine Addicts, Not for Children With Special Needs
Next month we'll bring out some more Campinos scandals
High Court victory: Nigel Farage is 'the Company's own candidate'
Reprinted with permission from Daniel Pocock
It Took GNOME's Code of Conduct Committee (CoCC) Over 8 Months to Realise CoC Reports Went Into /dev/null/
It would be ironic if the blunder's culprits were punished for it, would it not?
Links 30/09/2026: Microsoft "OpenAI Ignored Employees’ Warnings About Safely" and "Pentagon Personnel Agency Data Breach Impacts 3 Million People"
Links for the day
The Register MS "Events" As Paid Spam That Promotes and Keeps Afloat Hype About Slop
This dreary sort of media reads like a soup of words, i.e. like the thing it is advertising
Digital Independence in the UK and in Western Europe
We have the technical capacity and skilled personnel to achieve this
IBM's Anderon as a Mass Layoffs Ritual With a Bailout (From US Taxpayers to IBM) and Other Perks
Like those empty promises in the first term of the Cheeto dictator
Gemini Links 30/09/2026: David Bowie, Web Rendering Proxy, Ink and Letters, Gemlog Nostalgia
Links for the day
EPO Annual General Meeting (AGM) Will Speak of Financial State of the EPO's Union
Their work is needed because the EPO breaks the law
Rust Causes Upgrade Issues in Ubuntu
They could just keep GNU coreutils in place (nothing was broken about it) and avoid Microsoft's back doors and TPMs
Losses From Slop Are "Investment", Hundreds of Billions in Debt Are "Growth Opportunity", Layoffs Are "Great to See", and Loss of Business Means "We Need a Slowdown" (for "Safety")
Microsoft is removing staff, as investment is apparently the act of shrtinking
Brigading Against Women - Part XII - Toxic Masculinity, Hunting Women, Will Code for Sex
Who says things like these?
The Microsoft Lunduke Slop Problem
Microsoft Lunduke does not support Software Freedom; he serves to discredit many ideas championed by Free software or ideals articulated which are apolitical for the most part
Links 30/09/2026: "Understanding the LLM Bubble" and "Florida Senate Threatened Legal Action Against Newspapers"
Links for the day
It Looks Like Mass Layoffs at "Nordcloud, an IBM Company" Today (a Day Ahead of Red Hat)
Expect the same from Red Hat next
British Prime Minister Recognises Social Control Media as National Cohesion Problem
one has to wonder if addiction to social control media is not compatible with peace
The Future Isn't Social Control Media (Nothing Will be Left of It, Not Even Archives)
"Error code: 502 Bad Gateway"
GNU/Linux Usage in China is Increasing
China is leaving Microsoft and Windows behind
43 Years of GNU and GAFAM's (Especially Microsoft's) Attacks On It
GNU is very widely used (when people say "Linux commands" they typically mean "GNU programs"), hence it's being attacked a lot
CDMAG Covers Free Software, New Magazine From Decent People
If enough people accessed their site, they would not rely on social control media (third parties, censorship platforms)
Brigading Against Women - Part XI - An Abject Lack of Social Skills (and Not Knowing How to Handle Women)
GGG enjoy - if that's the right term - very bizarre or esoteric sex life
Gemini Links 30/09/2026: Accelerationism, "The Billionaire is Wrong", Rant About LLM-generated Support E-mails
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, September 29, 2026
IRC logs for Tuesday, September 29, 2026