ZeroHour
CyberScooppublished ()ingested @SuzanneMSmalley

DOJ now relies on paper for its most sensitive court documents, official says

criticalPolicy & legal exploited in the wildimportance 60
Full article1,069 words · extracted from cyberscoop.com · click to collapse
Skip to main content

Get our latest cybersecurity news first on Google.

Click here!

A top DOJ official said potential vulnerabilities in the online case management system means that "going online is not always the best thing."

Adam Hickey, deputy assistant attorney general in the National Security Division at the Department of Justice arrives to testify before the Senate Judiciary Committee on Capitol Hill in Washington on July 26, 2017. (Photo: YURI GRIPAS/AFP via Getty Images)

The Justice Department has filed its most sensitive court documents on paper since January 2021 to avoid any chance of a breach or vulnerability in electronic filing systems compromising its high stakes cases.

In an interview this week, Deputy Assistant Attorney General for National Security Adam Hickey told CyberScoop the department implemented the policy last year but did not connect that change to any specific breach or cybersecurity event.

However, the Administrative Office of the U.S. Courts did reveal “an apparent compromise” of the court system’s electronic case files on Jan 6, 2021.

That breach received more attention last week when House Judiciary Committee Chairman Rep. Jerrold Nadler, D-N.Y., revealed the U.S. federal court system is contending with “an incredibly significant and sophisticated cybersecurity breach.” He added that the incident dated to early 2020 and that it “had lingering impacts” on the DOJ and other agencies.

Nadler said he only learned about the breach in March and was struck by the “startling breadth and scope of the court’s document management system’s security failure.” 

While Hickey would not confirm or deny that the incident Nadler referenced had occurred, he told CyberScoop on Tuesday that he has been working with the Administrative Office of the U.S. Courts to improve security protocols for highly sensitive documents since January 2021.

“Our sealed documents are obviously very important to us,” Hickey said. “That’s going to include everything from search warrants, subpoenas, non-disclosure orders, sealed charges [and] arrest warrants. Protecting them is an important part of what we need and I’m glad we’re working with the courts to ensure it.”

“It’s a lesson by the way, a fairly familiar adage, that going online is not always the best thing.”

Deputy Assistant Attorney General for National Security Adam Hickey

Hickey said the takeaway for the court system is that sometimes the old-fashioned way of doing things is safer. He added that the paper-only system applies only to the most sensitive sealed documents as opposed to all of them.

“It’s a lesson, a fairly familiar adage, that going online is not always the best thing,” Hickey added. “Convenience is great, but security in any internet connected system is going to be different from what it would be on paper.”

Hickey said that at the outset of his work with court system administrators new “guidance” was crafted for prosecutors nationwide, directing them to only file highly sensitive court documents on paper or in what Hickey called a more secure “standalone system” via thumb drives.

“There are courts across the country where we are filing things in hard copy only,” Hickey said. “It’s a business process change so we have to train prosecutors around the country. There may be a different way to file documents depending on how sensitive they are so that requires relearning certain behaviors.”

Hickey said he has been working with US Attorney’s Offices nationwide to send the message that they should “take advantage of this parallel filing process.”

In its statement last January, the AO said that discovery of the breach followed a December 2020 alert from the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency, which issued an emergency directive regarding “a known compromise involving SolarWinds Orion products that are currently being exploited by malicious actors.”

However, the breach that Representative Nadler is referring to does not appear to be related to the SolarWinds hack that impacted multiple government agencies.

This story was updated on 8/4/22 to clarify Adam Hickey’s quotes. It was also updated 8/5/22 to clarify that the January 2021 U.S. federal courts breach appears to be unrelated to the SolarWinds hack.

More Scoops

NSA, National Security Agency, RSA 2019
(Scoop News Group photo)

Arrested man allegedly impersonated NSA elite hacking unit, Supreme Court chief justice

Joshua Culver, aka “Maverick Young,” is accused of imitating the head of the NSA’s Tailored Access Operations unit during a time it wasn’t called that.

An election worker processes mail-in ballots at the Los Angeles County Ballot Processing Center during California’s state primary election in the City of Industry, California, on June 2, 2026. Californians go to the polls Tuesday in the first round of voting for a new governor, with a tight three-way race for two run-off spots, while people in Los Angeles will also be voting for a new mayor. The state’s so-called “jungle primary” pits all comers against each other — regardless of party — with the top two vote-getters advancing to the November general election to replace term-limited Governor Gavin Newsom. (Photo by Patrick T. Fallon / AFP via Getty Images)

SCOTUS tosses one of two injunctions against Trump USPS mail-in ballot rules

The Department of Justice building is seen in Washington, DC, on August 9, 2022. (Photo by Stefani Reynolds / AFP) (Photo by STEFANI REYNOLDS/AFP via Getty Images)

764 splinter group leader sentenced to 40 years in jail

Latest Podcasts

Text extracted automatically; images, tables and formatting may be missing. Original: https://cyberscoop.com/top-justice-official-paper-only/