Skip to main content

Hackers attacking US and European energy firms could sabotage power grids

A hacking campaign is targeting the energy sector in Europe and the US to potentially sabotage national power grids, a cybersecurity firm has warned.
The group, dubbed “Dragonfly” by researchers at Symantec, has been in operation since at least 2011 but went dark in 2014 after it was first exposed, secretly placing backdoors in the industrial control systems of power plants across the US and Europe.
Now, Symantec reports, the group has resumed operations, apparently working since late 2015 to investigate and penetrate energy facilities in at least three countries: the US, Turkey and Switzerland.
“The Dragonfly group appears to be interested in both learning how energy facilities operate and also gaining access to operational systems themselves, to the extent that the group now potentially has the ability to sabotage or gain control of these systems should it decide to do so,” the cybersecurity firm warns.
Dragonfly’s methods are varied, but all its attacks seem to be focused on researching the inner workings of energy firms. It has been seen sending malicious emails with attachments that leak internal network credentials, which are then used to install backdoors on the network allowing the hackers to take control of computers and systems. They’ve also been seen seeding fake flash updates to install the backdoors and carrying out “watering hole” attacks, hacking third-party websites that were likely to be visited by people working in the energy sector.
Currently, the group appears to be solely in information-gathering mode, but Symantec warns that a quiet beginning is often a prelude to deliberate attempts at sabotage. The latest campaigns “show how the attackers may be entering into a new phase,” Symantec says, “with recent campaigns potentially providing them with access to operational systems, access that could be used for more disruptive purposes in future.”
Advertisement
The researchers are unable to determine who is behind the Dragonfly campaign: some of the code is in Russian, but some is in French, “which indicates that one of these languages may be a false flag.
“Conflicting evidence and what appear to be attempts at misattribution make it difficult to definitively state where this attack group is based or who is behind it,” the report concludes.
Attacks on the energy sector have been increasing in frequency and damage in recent years, with Ukraine in particular being at the receiving end of multiple successful strikes. A blackout in west Ukraine in 2015 was caused by a group called Sandworm, while a second attack took out power in the nation’s capital, Kiev, in late 2016.

Comments

Popular posts from this blog

Lawsuit accuses Google of bias against women in pay, promotions

Three female former employees of Alphabet Inc's Google filed a lawsuit on Thursday accusing the tech company of discriminating against women in pay and promotions. The proposed class action lawsuit, filed in California state court in San Francisco, comes as Google faces an investigation by the U.S. Department of Labor into sex bias in pay practices. The lawsuit appears to be the first to make class action sex bias claims against Google, but is only the latest instance of a major tech company being accused of discriminating against women. The Department of Labor sued Oracle America Inc in January, claiming it paid white men more than women and minorities with similar jobs. Microsoft Corp and Twitter Inc are facing sex bias lawsuits, and Qualcomm Inc last year settled claims for $19.5 million. Meanwhile, Uber Technologies Inc in June said it would make a series of changes after a former engineer in a blog post accused the ride-hailing service of condoning ra

Analysts sceptical iPhone X’s Face ID will be foolproof.

Apple is placing a bold bet that your face can securely unlock your phone, but experts are sceptical that it will be foolproof from the get-go.  The iPhone X, out in November, will rely on facial recognition technology called Face ID. Apple, which is known for discarding technologies more aggressively than rivals, dumped its well-tested Touch ID fingerprint system that has been available in iPhones since 2013.  While Face ID appears to be more sophisticated than the biometric systems used in competing devices like Samsung's Galaxy S8 phones, experts say the iPhone X will have to prove it won't be fooled by facial hair, makeup, glasses, masks, skin tones or poor lighting.  Apple's bet goes beyond just unlocking phones. On Tuesday, Apple executive Phil Schiller said Face ID could also be used for purchases on an iPhone.  There are enough unanswered questions to make Premkumar Natarajan, a biometrics industry expert and Apple stockholder, decide t