Menu
Browse

Cyber Incident Victim: House of Commons

Date:

Oct 2022

Location:

Canada

Summary

A cyber incident targeting the Canadian government's information technology infrastructure prompted officials to restrict certain internet-based services on Parliament Hill and advise Members of Parliament to change their email passwords. The threat was detected mid-week, leading to operational adjustments to mitigate risks, though specific details regarding the attack's origin or scope were not publicly disclosed. These measures aimed to secure parliamentary communications and systems following the breach.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 2 techniques
Threat Actors Type Location
0 actors Available to members Available to members

Description

On or around October 12, 2022, a cyber incident targeting the Canadian government's information technology infrastructure was identified, prompting immediate security measures affecting parliamentary operations. The Office of the Speaker, through communications manager Amelie Crosson, confirmed the threat detection date and initiated protective actions by October 18. Parliamentary authorities restricted access to certain internet-based services on Parliament Hill to contain potential vulnerabilities. Members of Parliament received directives to change their email passwords as a precaution against unauthorized account access, though the specific intrusion methods remained undisclosed. No details were provided regarding whether the attack originated from external or internal actors, nor was the exact scope of compromised systems revealed beyond the broader IT infrastructure reference. The incident disrupted standard parliamentary digital operations, though the full extent of functional limitations wasn't specified beyond service restrictions affecting Hill-based internet services.

Cyber Incident Image

The operational impacts centered on parliamentary communications and IT service availability, with password resets indicating concerns over credential security. The Speaker's Office publicly acknowledged the incident but did not disclose whether data exfiltration occurred or which specific government branches beyond Parliament experienced exposure. Response protocols prioritized containment through access restrictions and credential rotation rather than full system shutdowns. No attribution claims or threat actor profiles were provided by officials, nor were technical details about attack vectors such as phishing, malware, or exploitation techniques. The incident remained under investigation as of the October 18 reporting date, with no further public updates regarding resolution timelines, forensic findings, or additional countermeasures beyond the initial password reset mandate and service limitations.

Sources
Sources available to members
1 source