According to an internal investigation report, hackers have successfully penetrated the computers of the Nuclear Regulatory Commission (NRC) twice in the past three years
News of the breaches was leaked via Nextgov, which claims to have learned of the breaches after the release of open registrations for the NRC.
The report showed that the NRC was successfully compromised by two foreign attackers during one incident, and a single “unidentified individual” during the same time period. In one of the incidents, the attacker launched a sophisticated phishing email campaign targeting approximately 215 NRC employees, with the aim of stealing account login credentials. More than 12 NRC employees are listed as “bait.”

