Skip to main content

The context you need, when you need it

When news breaks, you need to understand what actually matters — and what to do about it. At Vox, our mission to help you make sense of the world has never been more vital. But we can’t do it on our own.

We rely on readers like you to fund our journalism. Will you support our work and become a Vox Member today?

Join now

FireEye’s Kevin Mandia: Identifying Hackers Is Getting More Difficult

Who did this?!

Sumit Kohli

Hackers aren’t just getting more aggressive — take a look at what happened last winter to Sony — they’re also getting harder to track down.

Kevin Mandia, president of security firm FireEye and a cyber security expert, says that tech used to track hackers is getting better, and his company is making it harder for hackers to get after the information they want. But actually identifying the hackers? That’s getting tougher, too.

“In 2010, when responding to breaches, almost every time we’d look at the evidence and we kinda knew who [the hackers] were,” Mandia said at Code/Enterprise in San Francisco on Tuesday. “Right now we’re starting to get more groups that we’re labeling unknown. We have like 400 of them.”

Hacker groups are holding onto their anonymity through tactics like changing their malware or switching up the location of where they’re hacking from. It’s the kind of thing that can keep experts like Mandia from gathering too much about who any one hacking group is.

Mandia is a former U.S. Air Force officer who investigated cyber crimes and in 2004 started his own firm called Mandiant, which specializes in “incident response,” a computer security industry term that refers to answering the call to help clean up the mess when a big company has been hacked. He sold Mandiant to FireEye for $1 billion last year and stayed on as the combined companies’ president.

Within FireEye, Mandiant is still a prominent brand, and some companies have taken to invoking its name as a way of reassuring markets that the situation after a hacking attack is well in hand, Sony Pictures Entertainment included.

In that case, identifying the hacker wasn’t as much of a challenge. The U.S. Government pointed the finger at North Korea, and Mandia implied the same on Tuesday. “I liken it to my aunt being attacked by an Ultimate Fighting Champion,” he said of the Sony hack. “It was an unfair fight.”

Mandia still can’t talk much about what happened with Sony — there’s still ongoing litigation — but he has some advice for big companies and their execs for the future: Keep email responses short, and move important exec conversations to their own email servers on the iPad.

“The target surface on the iPad is pretty darn small,” he said. “We’re not seeing people try to exploit that right now.”

This article originally appeared on Recode.net.

See More:

More in Technology

Future Perfect
The 5 most unhinged revelations from Elon Musk’s lawsuit against OpenAIThe 5 most unhinged revelations from Elon Musk’s lawsuit against OpenAI
Future Perfect

The Musk v. OpenAI trial is over. Here are the receipts.

By Sara Herschander
Podcasts
Are humanoid robots all hype?Are humanoid robots all hype?
Podcast
Podcasts

AI is making them better — but they’re not going to be doing your chores anytime soon.

By Avishay Artsy and Sean Rameswaram
Future Perfect
The old tech that could help stop the next airborne pandemicThe old tech that could help stop the next airborne pandemic
Future Perfect

Glycol vapors, explained.

By Shayna Korol
Future Perfect
Elon Musk could lose his case against OpenAI — and still get what he wantsElon Musk could lose his case against OpenAI — and still get what he wants
Future Perfect

It’s not about who wins. It’s about the dirty laundry you air along the way.

By Sara Herschander
Life
Why banning kids from AI isn’t the answerWhy banning kids from AI isn’t the answer
Life

What kids really need in the age of artificial intelligence.

By Anna North
Culture
Anthropic owes authors $1.5B for pirating work — but the claims process is a Kafkaesque messAnthropic owes authors $1.5B for pirating work — but the claims process is a Kafkaesque mess
Culture

“Your AI monster ate all our work. Now you’re trying to pay us off with this piece of garbage that doesn’t work.”

By Constance Grady