Hackers Used Malware to Confuse Utility in Ukraine Outage: Report

Advertisement
By Reuters | Updated: 11 January 2016 09:34 IST
Hackers likely caused a December 23 electricity outage in Ukraine by remotely switching breakers to cut power, after installing malware to prevent technicians from detecting the attack, according to a report analysing how the incident unfolded.

The report from Washington-based SANS ICS was released late on Saturday, providing the first detailed analysis of what caused a six-hour outage for some 80,000 customers of Western Ukraine's Prykarpattyaoblenergo utility.

SANS ICS, which advises infrastructure operators on combating cyber-attacks, also said the attackers crippled the utility's customer-service center by flooding it with phone calls to prevent customers from alerting the utility that power was down.

Advertisement

"This was a multi-pronged attack against multiple facilities. It was highly coordinated with very professional logistics," said Robert Lee, a former US Air Force cyber warfare operations officer who helped compile the report for SANS ICS. "They sort of blinded them in every way possible."

Experts widely describe the incident as the first known power outage caused by a cyber-attack. Ukraine's SBU state security service blamed Russia, and US cyber firm iSight Partners identified the perpetrator as a Russian hacking group known as "Sandworm."

Advertisement

Ukraine's energy ministry has said it will hold off on discussing the matter until after Jan. 18, following completion of a formal probe into the matter.

The utility's operators were able to quickly recover by switching to manual operations, essentially disconnecting infected workstations and servers from the grid, according to the report.

Advertisement

SANS ICS said on its blog it had "high confidence" in its findings, which were based on discussions and analysis from "multiple international community members and companies". The report's authors declined to identify those sources.

US critical infrastructure security expert Joe Weiss said he believed the report's findings would be validated. "They did a phenomenal job," he said.

Advertisement

There is strong interest in the outage because of concerns that similar techniques could be used to launch more attacks on power operators around the globe.

"What is now true is that a coordinated cyber-attack consisting of multiple elements is one of the expected hazards (electric utilities) may face," SANS ICS Director Michael Assante said in a blog.

"We need to learn and prepare ourselves to detect, respond, and restore from such events in the future," said Assante, former chief security officer of the quasi-governmental North American Electric Reliability Corp.

© Thomson Reuters 2016

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Microsoft Unveils Surface Laptop Ultra as Its Most Powerful Laptop to Date
  2. Itel Aqua Launched in India With IP67 Rating, 1,200mAh Battery: See Price
  3. Samsung Galaxy Fit 4 Could Debut Alongside Galaxy S26 FE
  4. Vivo X Fold 6 Launch Timeline, Key Specifications Leaked Online
  5. Xiaomi 17T India Launch Roundup: Launch Date, Expected Specifications
  6. Apple's First Foldable iPhone May Get White Colourway, VC Cooling
  7. Acer Swift Air 14 Launched With Intel Core Series 3 CPU, Lightweight Design
  8. Asus Unveils These ROG Edition 20 Lineup Products at Computex 2026
  9. Moto G37 Power Review: Covers All the Bases and More
  10. iOS 28, macOS 28 Codenames Leak as Apple Reportedly Starts Early Development
  1. Samsung Galaxy Fit 4 Launch Timeline Reportedly Leaked; May Debut Alongside Galaxy S26 FE
  2. iPhone Ultra Tipped to Launch in White Colourway; May Feature Vapour Chamber Cooling
  3. Asus ROG Edition 20 Lineup Unveiled at Computex 2026 to Commemorate 20 Years of ROG Series Products
  4. Indian Startup Pawzeeble Is Building a Pet-Focused Social Networking Space for Indian Users
  5. Asus ROG Strix Scar 18 (2026) With 240Hz 4K Mini-LED Display Showcased at Computex 2026
  6. Huawei Nova 16 Pro, Nova 16 Ultra Launched With Kirin 9010S SoC, 7,000mAh Battery: Price, Specifications
  7. Huawei Nova 16 Launched With 7,000mAh Battery, 50-Megapixel Camera, Nova 16z Tags Along: Price, Specifications
  8. Computex 2026: AMD Unveils Ryzen 7 7700X3D, Radeon RX 9070 GRE; Extends AM5 Support to 2029
  9. Itel Aqua Launched in India With IP67 Rating, 1,200mAh Battery: Price, Features
  10. Vivo X Fold 6 Launch Timeline Leaked; Tipped to Arrive With MediaTek Dimensity 9500 Chip
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.