The Biden Administration Just Delivered a Stark Warning About Ransomware

“Paying a ransomware only exacerbates and accelerates this problem.”

Ben Margot/AP

Fight disinformation: Sign up for the free Mother Jones Daily newsletter and follow the news that matters.

Key oil and gas pipelines and one of the world’s largest meat suppliers have ground to a halt in recent weeks by cyberattackers who have demanded exorbitant ransoms. Today, Energy Secretary Jennifer Granholm offered a stark warning during her appearances on Sunday morning talk shows: The US power grid is vulnerable to those sorts of debilitating attacks, and the nation’s laws do not adequately address the growing issue.

“There are thousands of attacks on all aspects of the energy sector and the private sector generally,” Granholm told CNN’s Jake Tapper, adding that hackers “do” have the capacity to shut down the US power grid through their attacks.

The energy secretary’s warning arrives after last month’s cyberattack on Colonial Pipeline, which operates one of the country’s largest pipelines carrying refined gasoline and jet fuel. The attack forced the company to shut down 5,500 miles of pipeline and oil supply was choked on the East Coast for weeks—even after Colonial Pipeline ended up paying the $4 million the hackers had demanded. JBS, which supplies one-fifth of the world’s meat, identified a similar attack on its systems last week and shut down all beef production at its facilities in the aftermath. They did not respond to the hackers’ demands and restored operations days later, but the brief shutdown sparked panic over meat shortages and risks to other food providers. Ransomware attacks have become a pervasive threat beyond these recent high-profile events, shutting down everything from ferry rides to virtual classes, according to a recent analysis from the Washington Post.

Both of the recent prominent attacks are reportedly the work of Russian hackers and will be a subject of discussion between Biden and Russian President Vladimir Putin when they meet in Geneva, Switzerland, this week during Biden’s first international trip as president. 

Granholm noted that the Transportation Security Administration now requires pipelines to notify the Energy Department of ransomware attacks in real-time, a change intended to loop in the right experts before matters escalate. But the energy secretary acknowledged that cyber standards that are sufficiently robust to keep energy resources safe do not exist, and she encouraged companies to work with the Biden administration to establish guidelines. “There are basic standards, cyber standards, that they adhere to, cyber standards that are developed by the Department of Commerce,” Granholm explained, “and we need that same sort of regime with pipelines. And that does not exist at the moment.

She also advocated for a law banning companies from paying the ransom hackers demand. “We need to send this strong message that paying a ransomware only exacerbates and accelerates this problem,” Granholm said on NBC’s Meet the Press. “You are encouraging the bad actors when that happens.”

Granholm took the opportunity to connect these vulnerabilities with potential solutions offered in Biden’s American Jobs Plan, which would provide investments in the country’s power grids that could increase their resilience against such attacks.

WE'LL BE BLUNT

It is astonishingly hard keeping a newsroom afloat these days, and we need to raise $253,000 in online donations quickly, by October 7.

The short of it: Last year, we had to cut $1 million from our budget so we could have any chance of breaking even by the time our fiscal year ended in June. And despite a huge rally from so many of you leading up to the deadline, we still came up a bit short on the whole. We can’t let that happen again. We have no wiggle room to begin with, and now we have a hole to dig out of.

Readers also told us to just give it to you straight when we need to ask for your support, and seeing how matter-of-factly explaining our inner workings, our challenges and finances, can bring more of you in has been a real silver lining. So our online membership lead, Brian, lays it all out for you in his personal, insider account (that literally puts his skin in the game!) of how urgent things are right now.

The upshot: Being able to rally $253,000 in donations over these next few weeks is vitally important simply because it is the number that keeps us right on track, helping make sure we don't end up with a bigger gap than can be filled again, helping us avoid any significant (and knowable) cash-flow crunches for now. We used to be more nonchalant about coming up short this time of year, thinking we can make it by the time June rolls around. Not anymore.

Because the in-depth journalism on underreported beats and unique perspectives on the daily news you turn to Mother Jones for is only possible because readers fund us. Corporations and powerful people with deep pockets will never sustain the type of journalism we exist to do. The only investors who won’t let independent, investigative journalism down are the people who actually care about its future—you.

And we need readers to show up for us big time—again.

Getting just 10 percent of the people who care enough about our work to be reading this blurb to part with a few bucks would be utterly transformative for us, and that's very much what we need to keep charging hard in this financially uncertain, high-stakes year.

If you can right now, please support the journalism you get from Mother Jones with a donation at whatever amount works for you. And please do it now, before you move on to whatever you're about to do next and think maybe you'll get to it later, because every gift matters and we really need to see a strong response if we're going to raise the $253,000 we need in less than three weeks.

payment methods

WE'LL BE BLUNT

It is astonishingly hard keeping a newsroom afloat these days, and we need to raise $253,000 in online donations quickly, by October 7.

The short of it: Last year, we had to cut $1 million from our budget so we could have any chance of breaking even by the time our fiscal year ended in June. And despite a huge rally from so many of you leading up to the deadline, we still came up a bit short on the whole. We can’t let that happen again. We have no wiggle room to begin with, and now we have a hole to dig out of.

Readers also told us to just give it to you straight when we need to ask for your support, and seeing how matter-of-factly explaining our inner workings, our challenges and finances, can bring more of you in has been a real silver lining. So our online membership lead, Brian, lays it all out for you in his personal, insider account (that literally puts his skin in the game!) of how urgent things are right now.

The upshot: Being able to rally $253,000 in donations over these next few weeks is vitally important simply because it is the number that keeps us right on track, helping make sure we don't end up with a bigger gap than can be filled again, helping us avoid any significant (and knowable) cash-flow crunches for now. We used to be more nonchalant about coming up short this time of year, thinking we can make it by the time June rolls around. Not anymore.

Because the in-depth journalism on underreported beats and unique perspectives on the daily news you turn to Mother Jones for is only possible because readers fund us. Corporations and powerful people with deep pockets will never sustain the type of journalism we exist to do. The only investors who won’t let independent, investigative journalism down are the people who actually care about its future—you.

And we need readers to show up for us big time—again.

Getting just 10 percent of the people who care enough about our work to be reading this blurb to part with a few bucks would be utterly transformative for us, and that's very much what we need to keep charging hard in this financially uncertain, high-stakes year.

If you can right now, please support the journalism you get from Mother Jones with a donation at whatever amount works for you. And please do it now, before you move on to whatever you're about to do next and think maybe you'll get to it later, because every gift matters and we really need to see a strong response if we're going to raise the $253,000 we need in less than three weeks.

payment methods

We Recommend

Latest

Sign up for our free newsletter

Subscribe to the Mother Jones Daily to have our top stories delivered directly to your inbox.

Get our award-winning magazine

Save big on a full year of investigations, ideas, and insights.

Subscribe

Support our journalism

Help Mother Jones' reporters dig deep with a tax-deductible donation.

Donate