Earlier quoted context omitted.
He suspects China or Russia as the likely culprit. What exactly rules out an American agent? Is it because American economic and social activity rely disproportionately on internet backbones more so than other state actors? If so, that would be especially interesting.
I don't think we should rule out the US, as they conduct defense drills all of the time. In this case, they don't overtly control the assets under attack, but would still want to know how resilient our networks are "in the real world" -- not always as a "friendly" drill, a la Red Cell. https://en.wikipedia.org/wiki/Red_Cell
https://www.youtube.com/watch?v=hWCX6IeBH7U
They'll learn a lot more from them. ;)