Ukraine Utility Cyber-Attack Wider Than Reported, Claim Experts

Advertisement
By Reuters | Updated: 5 January 2016 18:24 IST

A central European security software firm said on Monday that a cyber-attack last month in Ukraine was broader than initially reported last week when the nation's secret police blamed a power outage on Russia.

Western Ukraine power company Prykarpattyaoblenergo reported an outage on Dec. 23, saying the area affected included regional capital Ivano-Frankivsk. Ukraine's SBU state security service responded by blaming Russia and the energy ministry in Kiev set up a commission to investigate the matter.

While Prykarpattyaoblenergo was the only Ukraine electric firm that reported an outage, similar malware was found in the networks of at least two other utilities, said Robert Lipovsky, senior malware researcher at Bratislava-based security company ESET. He said they were ESET customers, but declined to name them or elaborate.

Advertisement

"The reported case was not an isolated incident," he said.

Advertisement

Prykarpattyaoblenergo publicly blamed its outage on "interference" in the working of its system. The Kremlin did not respond to a request for comment.

Researchers with computer security firms Trend Micro and iSight Partners said ESET's assessment that the attackers sought to infect other utilities appeared credible, shedding new light on evidence that this is the first power outage proven to have been caused by a cyber-attack. Experts have warned for years, with growing urgency, that electric utilities are vulnerable to cyber-attacks that could cut power.

Advertisement

"This is the first time we have proof and can tie malware to a particular outage," said Trend Micro senior researcher Kyle Wilhoit. "It is pretty scary."

Cyber firm iSight Partners said that ESET's report of multiple attacks is consistent with its own analysis.

Advertisement

"There is pretty strong consensus that there was a blackout caused by a computer network attack," said iSight's director of cyberespionage analysis, John Hultquist.

Experts with ESET, iSight and Trend Micro told Reuters the attackers used a malicious software platform known as "BlackEnergy" to access utility networks, planting a related piece of malware, "KillDisk," on targeted systems.

KillDisk can delete or overwrite data files.

Researchers say they have yet to determine whether KillDisk's job was to knock out power or simply conceal the attack.

Cybercriminals have been using versions of BlackEnergy since 2007. Over the past two years, there has been widespread reports that a Moscow-backed group, Sandworm, was using it for targeted attacks.

© Thomson Reuters 2016

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Ray-Ban Meta Gen 2 Glassses Are Now Available in India
  2. Oppo A6x 5G With 6,500mAh Battery Launched in India at This Price
  3. Vivo X300 Review: Pro Power, Pocket Size
  4. OnePlus Pad Go 2 Visits Geekbench With This Midrange Chipset
  5. Instagram Could Soon Limit the Number of Hashtags Used in a Post
  6. OnePlus 15R, OnePlus Pad Go 2 Set for Live Launch at Bengaluru Keynote
  7. Vivo X300 Launched in India With MediaTek Dimensity 9500 SoC at This Price
  8. Samsung Galaxy Z TriFold vs Huawei Mate XT Ultimate Design: A Quick Comparison
  1. Redmi 15C 5G Launching Today: Know Price in India, Features and Specifications
  2. Gemini App to Get a Major Design Upgrade, Could Soon Be Launched on macOS
  3. NASA’s Perseverance Records First-Ever Mini-Lightning on Mars
  4. Germany to Send First European Astronaut Around the Moon on Artemis Mission
  5. Indian Team Finds 53 Massive Quasars Blasting Jets Millions of Light-Years Long
  6. Mrs Deshpande OTT Release: When, Where to Watch Madhuri Dixit's Serial Killer Mystery
  7. Wake Up Dead Man: A Knives Out Mystery OTT Release: When, Where to Watch the Daniel Craig Whodunit
  8. Fire Force Season 3 Release Date: When, Where to Watch the Shonen Anime's Final Arc
  9. Thamma Is Now Available on Amazon Prime: How to Watch Ayushmann Khurrana's Horror Comedy
  10. The Great Shamsuddin Family OTT Release: When, Where to Watch the Peepli Live Director's Comedy Drama
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.