RSA to Reissue SecurID Tokens

It took nearly three months and a major security incident at one of the nation’s most critical defense contractors to spur it on, but on Monday RSA, The Security Division of EMC, finally let the cat out of the bag about the severity of a March security breach against its SecurID authentication token infrastructure.  The […]

Jun 7, 2011
Channel Insider content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

It took nearly three months and a major security incident at
one of the nation’s most critical defense contractors to spur it on, but on
Monday RSA, The Security Division of EMC, finally let the cat out of the bag
about the severity of a March security breach against its SecurID
authentication token infrastructure.  The
prognosis is bad, with RSA reporting that it will replace the tokens of nearly
all 40 million users scattered across its customer base.

"We remain highly confident in the RSA SecurID product
as the leading multi-factor authentication solution and we also feel strongly
that the specific remediations we have provided to customers will help to
deliver the highest levels of customer protection," wrote RSA CEO Art
Coviello. "However, we recognize that the increasing frequency and
sophistication of cyber attacks generally, and the recent announcements by
Lockheed Martin, may reduce some customers’ overall risk tolerance. As a
result, we are expanding our security remediation program to reinforce
customers’ trust in RSA SecurID tokens and in their overall security
posture."

The letter from Coviello comes directly on the heels of
Lockheed Martin confirming to the media on Friday that the RSA tokens were at
play in a late-May attack against it. The defense firm also released a
statement today on the matter.

"Based on our early actions to replace all RSA SecurID
tokens and add new layers of security to our remote access processes, we remain
confident in the integrity of our robust, multi-layered information systems
security," the company said.

In addition to RSA, several other high profile defense
contractors have reportedly also been targeted in recent attacks. One anonymous
source told FoxNews.com that Northrup Grumman was hit by an RSA token-related
attack and an internal emailed memo from contractor L3 Communications that was
disclosed by Wired magazine showed that it too was affected.

Though neither company has confirmed details about their
ordeals, it seems to fit the mold of attacks in the wake of the RSA Breach.

"Certain characteristics of the attack on RSA indicated
that the perpetrator’s most likely motive was to obtain an element of security
information that could be used to target defense secrets and related IP, rather
than financial gain, PII, or public embarrassment," Coviello wrote in his
letter. "For this reason, we worked with government agencies and companies
in the defense sector to replace their tokens on an accelerated timetable as an
additional precautionary measure. We will continue these efforts."

Even with all of the signs pointing to it, RSA still didn’t
go so far as to describe what exactly was stolen in the March breach. But the
attacks against Lockheed and other DoD partners along with the recall program
going forward seem to justify many security experts’ speculation that the token
seeds were compromised. Token seeds are the algorithmic keys that enable
SecurID tokens to spit out an authentication code at certain intervals. Every
token comes from a different seed, which cannot be changed and essentially is
the lynchpin of the token’s security.

It is still unclear how exactly RSA will plan on executing
its remediation efforts for customers, but Coviello says that the plan stands
on two offers from the company. One is an offer to replace tokens for customers
"focused on protecting intellectual property and corporate networks"
and the other is an offer to implement risk-based authentication strategies
"for consumer-focused customers with a large, dispersed user base,
typically focused on protecting web-based financial transactions."

It remains unclear the role that channel partners will play
in making this happen, though given the scope of SecurID rehab efforts and the
role of the channel in helping carry out so many of these authentication
deployments, partners will indeed be integral to the effort.

 

 

Recommended for you...

Frank Vitagliano on GTDC Research & Future of Platforms

GTDC CEO Frank Vitagliano shares insights on vendor onboarding, distribution’s evolving role, and platforms shaping the IT channel’s future.

Cloudbrink Adds Native ID Management, Crowdstrike Integration

Cloudbrink expands Personal SASE with identity services and Crowdstrike integration, unifying user and device security for zero-trust access control.

Jordan Smith
Aug 5, 2025
Cleo Intros New Capability to EDI Managed Services Solution

Cleo adds AI-driven error categorization to its TM&M managed services, boosting supply chain efficiency with automated resolution and faster insights.

Jordan Smith
Aug 4, 2025
Guardrails for AI Agents: Noma Secures $100M Boost

Noma Security raises $100M Series B to help enterprises govern and secure autonomous AI agents as demand for agent oversight rapidly accelerates.

Channel Insider Logo

Channel Insider combines news and technology recommendations to keep channel partners, value-added resellers, IT solution providers, MSPs, and SaaS providers informed on the changing IT landscape. These resources provide product comparisons, in-depth analysis of vendors, and interviews with subject matter experts to provide vendors with critical information for their operations.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.