The Washington Post on Friday reportedĀ aĀ genuinely alarming event: Russian hackers have penetrated the U.S. power system through an electrical grid in Vermont. The Post headline conveyed the seriousness of the threat:

The first sentence of the article directly linked this cyber-attackĀ to alleged Russian hacking of the email accounts of the DNC and John Podesta ā what is now routinely referred to as āRussian hacking of our electionā ā Ā by referencing the code name revealed on Wednesday by the Obama administration when it announced sanctions on Russian officials: āA code associated with the Russian hacking operation dubbed Grizzly Steppe by the Obama administration has been detected within the system of a Vermont utility, according to U.S. officials.ā
The Post article contained grave statements from Vermont officials of the type politicians love to issueĀ after a terrorist attack to show they are tough and in control. The stateās Democratic Governor, Peter Shumlin, said:
Vermonters and all Americans should be both alarmed and outraged that one of the worldās leading thugs, Vladimir Putin, has been attempting to hack our electric grid, which we rely upon to support our quality-of-life, economy, health, and safety. This episode should highlight the urgent need for our federal government to vigorously pursue and put an end to this sort of Russian meddling.
Vermont Senator Patrick Leahy issued a statementĀ warning: āThis is beyond hackers having electronic joy rides ā this is now about trying to access utilities to potentially manipulate the grid and shut it down in the middle of winter. That is a direct threat to Vermont and we do not take it lightly.ā
The article went on and on in that vein, with all the standard tactics used by the U.S. media for such stories: quoting anonymous national security officials, reviewing past acts of Russian treachery, and drawing the scariest possible conclusions (āāThe question remains: Are they in other systems and what was the intent?ā a U.S. official saidā).Ā
The media reactions, as Alex Pfeiffer documents, were exactly what one would expect: hysterical, alarmist proclamations of Putinās menacing evil:
Our Russian “friend” Putin attacked the U.S. power grid. https://t.co/iAneRgbuhF
NEW: “One of the world’s leading thugs, [Putin] has been attempting to hack our electric grid,” says VT Gov. Shumlin https://t.co/YgdtT4JrlX pic.twitter.com/AU0ZQjT3aO
ā ABC News (@ABC) December 31, 2016
Yikes. https://t.co/cXsyd1RHOK
ā Paul Farhi (@farhip) December 31, 2016
The Postās story also predictably and very rapidly infected other large media outlets. Reuters thus told its readers around the world: āA malware code associated with Russian hackers has reportedly been detected within the system of a Vermont electric utility.ā
Whatās the problem here? It did not happen.
There was no āpenetration ofĀ the U.S. electricity grid.ā The truth was undramatic and banal. Burlington Electric, after receiving a Homeland Security notice sent to all U.S. utility companies about the malware code found in the DNC system, searched all their computers and found the code in a single laptop that was not connected to the electric grid.
Apparently, the Post did not even bother to contact the company before running its wildly sensationalistic claims, so they had toĀ issue their own statement to the Burlington Free PressĀ which debunked theĀ Postās central claim (emphasis in original): āWe detected the malware in a single Burlington Electric Department laptopĀ notĀ connected to our organizationās grid systems.ā
So the key scary claim of the Post story ā that Russian hackers had penetrated the U.S. electric grid ā was false. All the alarmist tough-guy statements issued by political officials who believed the Postās claim were based on fiction.
Even worse, there is zero evidence that Russian hackers were responsible even for the implanting of thisĀ malware on this single laptop. The fact that malware is āRussian-madeā does not mean that only Russians can use it; indeed, like a lot of malware, it can purchased (as Jeffrey Carr has pointed out in the DNC hacking context, assuming that Russian-made malware must have been used by Russians is as irrational as finding a Russian-made Kalishnikov AKM rifle at a crime scene and assuming the killer must be Russian).
As the actual truth emerged once the utility company issued its statement, the Post rushed to fix its embarrassment, beginning by dramatically changing its headline:

The headline is still absurd: they have no idea that this malware was placed by a āRussian operationā (though they would likely justify that by pointing out that they are just stenographicallyĀ passing along what āofficials sayā). Moreover, nobody knows when this malware was put on this laptop, how, or by whom. But whatever else is true, the key claim ā āRussian hackers penetrated U.S. electricity gridā ā has now been replaced by the claim that this all shows ārisk to U.S. electrical grid.ā
As journalists realized what did ā and did not ā actually happen here, the reaction was swift:
1) Not an infiltration of the power grid.
2) “Russian” malware can be purchased online by anyone.
3) See 1 & 2. https://t.co/bVIG8zQBskā Dell Cameron (@dellcam) December 31, 2016
Pretty amazing how badly the Post appears to have mangled this one. You didn’t call the Vermont utility regulator before publishing?
ā Eric Geller (@ericgeller) December 31, 2016
My money’s on this all turns out to be commodity malware and not even APT28/APT29 and everyone jumping on the bandwagon will look v silly
ā Pwn All The Things (@pwnallthethings) December 31, 2016
This matters not only because one of the nationās major newspaper once again published a wildly misleading, fear-mongering story about Russia. It matters even more because it reflects the deeply irrational and ever-spiraling fever that is being cultivated in U.S. political discourse and culture about the threat posed byĀ Moscow.
The Post has many excellentĀ reporters and smart editors. They haveĀ producedĀ many great stories this year. But this kind of blatantly irresponsible and sensationalist tabloid behavior ā which tracks whatĀ they did when promoting that grotesqueĀ PropOrNot blacklist of U.S. news outlets accused of being Kremlin tools ā is a by-product of the Anything Goes mentality that now shapes mainstream discussion of Russia, Putin and the Grave Threat to All Things Decent in America that they pose.
The level of group-think, fear-mongering, coercive peer-pressure, and über-nationalism has not been seen since the halcyon days of 2002 and 2003. Indeed, the very same people who back then smeared anyone questioning official claims as Saddam sympathizers or stooges and left-wing un-American loons are back for their sequel, accusing anyone who expresses any skepticism toward claims about Russia of being Putin sympathizers and Kremlin operatives and stooges.
But itās all severely exacerbated by social media in ways that we donāt yet fully understand. A large percentage of journalists sit on Twitter all day. Itās their primary window into the world. Because of how intense and raw the emotions still are from Trumpās defeat of Clinton, the social media benefits from tweeting and publishing unhinged claims about Trump and Putin are immense and immediate: thousands upon thousands of re-tweets, a rapidly building follower count, and huge amounts of traffic.
Indeed, the more unhinged it is, the greater the benefits are (see some of the most extreme examples here). Thatās how otherwise rational people keep getting tricked into posting and re-tweeting and sharing extremely dubious stories that turn out to be false.
And thatās to say nothing of the non-utilitarian social pressures. Itās not news that coastal elites ā particularly media and political figures ā were and are virtually unified in their unbridled contempt for Trump. And we have seen over and over that any time there is a new Prime Foreign Villain consecrated ā now Putin ā U.S. media figures lead the campaign. As a result, any denunciation or accusation toward Trump or Russia, no matter how divorced from reason or devoid of facts, generates instant praise, while any questioning of it prompts instant peer-group denunciation, or worse.
Few things are more dangerous to the journalistic function than group-think, and few instruments have been invented that foster and reinforce group-think like social media, particularly Twitter, the platform most used by journalists. Thatās a phenomenon that merits far more study, but examples like this one highlight the dynamic.
In this case, the effect is a constant ratcheting up of tensions between two nuclear-armed powers whose nuclear systems are still on hair-trigger alert and capable of catastrophic responsesĀ based on misunderstanding and misperception. Democrats and their media allies are rightly alarmed about the potential dangers of Trumpās bellicose posture toward China, but remarkably and recklessly indifferent to the dangers of what they themselves are doing here.
* * * * *
Those interested in a sober and rational discussion of the Russia hacking issueĀ should read the following:
(1) Three posts by cyber-security expert Jeffery Carr: first, on the difficulty of proving attribution for any hacks; second, on the irrational claims on which the āRussia-hacked-the-DNCā case is predicated; and third, on the woefully inadequate, evidence-free report issued by the Department of Homeland Security and FBI this week to justify sanctions against Russia.
(2)Ā Yesterdayās Rolling Stone article by Matt Taibbi, who lived and worked for more than a decade in Russia, entitled: āSomething About this Russia Story Stinks.ā
(3)Ā An Atlantic article by David A. Graham on the politics and strategies of the sanctions imposed this week on Russia by Obama; I disagree with several of his claims but the article is a rarity: a calm, sober, rational assessment of this debate.
Since it is so often distorted, permit me to once again to underscore my own view on the broader Russia issue: of course it is possible that Russia is responsible for these hacks, as this is perfectly consistent with (and far more mild than) what both Russia and the U.S. have done repeatedly for decades.
But given the stakes involved, along with the incentives for error and/or deceit, no rational person should be willing to embrace these accusations as Truth unless and until convincing evidence has been publicly presented for review, which most certainly has not yet happened. As the above articlesĀ demonstrate, this weekās proffered āevidenceā ā the U.S. Governmentās evidence-free report ā should raise rather than dilute suspicions. Itās hard to understand how thisĀ desire for convincing evidence before acceptance of official claimsĀ could even be controversial, particularly among journalists.
UPDATE: Just as The Guardian had to do just two days ago regarding its claim about WikiLeaks and Putin, the Washington Post has now added an editor’s note to its story acknowledging that its key claim was false:

Is it not very clear that journalistic standards are being casually dispensed with when the subject is Russia?
ZNetwork is funded solely through the generosity of its readers.
Donate