Security

Cyber-crime

US nuke reactor lab hit by 'gay furry hackers' demanding cat-human mutants

Staff records swiped, leaked by gang who probably read one too many comics, sorry, graphic novels


The self-described "gay furry hackers" of SiegedSec are back: this time boasting they've broken into America's biggest nuclear power lab's computer systems and stolen records on thousands of employees. Some of that data has already been leaked, it appears.

SiegedSec, which also claimed to have breached NATO's IT security on two occasions this year, said it has now hit Idaho National laboratory (INL), which is run by the US Department of Energy's Office of Nuclear Energy. Employee Social Security numbers, physical addresses, and bank account data are among the information said to have been pinched.

The lab has at least acknowledged its HR systems suffered a cyberattack.

"On Monday, November 20, Idaho National Laboratory determined that it was the target of a cybersecurity data breach in a federally approved vendor system outside the lab that supports INL cloud Human Resources services," spokesperson Lori McNamara told The Register today.

"INL has taken immediate action to protect employee data."

The boffinry nerve-center has called in the cops and promised to emit more information as the situation evolves.

East Idaho News reported it was able to confirm the authenticity of the leaked information with several INL employees, which SiegedSec earlier posted to its Telegram channel. 

The self-styled furry hackers meanwhile have offered to remove the staff records if the lab performs experiments that at best could be described as highly irregular.

"We're willing to make a deal with INL. If they research creating IRL catgirls we will take down this post," the group said. The creation of real cat-human female hybrids is a frequently posted meme in certain corners of the internet, but it's not the laboratory's specialty.

According to the hacktivists, the invaders gained access to "hundreds of thousands of user, employee and citizen data," among it full names, dates of birth, email addresses, social security numbers, employment info and "lots lots more!" 

INL employs more than 6,100 people in and around Idaho Falls at its massive 890-square mile site, which houses the densest concentration of nuclear reactors in the world. The 70-year-old facility has been instrumental in the development of nuclear power, was the home of the first nuclear generator to provide a usable amount of electricity, and developed the first nuclear propulsion system for US Navy submarines. 

The lab has built and operated 52 nuclear reactors over its life, and continues to research advanced nuclear energy concepts. In addition to nuclear energy research, INL also works on alternative energy solutions, such as improving electric vehicle batteries, plus protecting the power grid, and designing small modular reactors.  

It's unclear what motivated SiegedSec's attack on INL. In its previous network penetration of NATO the group attributed its actions to the military org's "attacks on human rights," adding that it's also "fun to leak documents." ®

Send us news
99 Comments

BlackCat ransomware crims threaten to directly extort victim's customers

Accounting software firm Tipalti says it’s investigating alleged break-in of its systems

British Library begins contacting customers as Rhysida leaks data dump

CRM databases were accessed and library users are advised to change passwords

Yet another UK public sector data blab, this time info of pregnant women, cancer patients

NHS Trust admits highly sensitive data left online for nearly three years

Leader of pro-Russia DDoS crew Killnet 'unmasked' by Russian state media

Also: NXP China attack, Australia can't deliver on ransom payment ban (yet), and Justin Sun's very bad month

23andMe responds to breach with new suit-limiting user terms

Also: 'well-known Bay Area tech' firm's laptops stolen and check out some critical vulns

2.5M patients infected with data loss in Norton Healthcare ransomware outbreak

AlphV lays claims to the intrusion

UK government denies China/Russia nuke plant hack claim

Report suggests Sellafield compromised since 2015, response seems worryingly ignorant of Stuxnet

Hershey phishes! Crooks snarf chocolate lovers' creds

Stealing Kit Kat maker's data?! Give me a break

EU lawmakers finalize cyber security rules that panicked open source devs

PLUS: Montana TikTok ban ruled unconstitutional; Dollar Tree employee data stolen; critical vulnerabilities

Admin of $19M marketplace that sold social security numbers gets 8 years in jail

24 million Americans thought to have had their personal data stolen and sold for pennies

Okta data breach dilemma dwarfs earlier estimates

All customer support users told their info was accessed after analysis oversight

UK and US lead international efforts to raise AI security standards

17 countries agree to adopt vision for artificial intelligence security as fears mount over pace of development