Russia Suspected in First-ever Cyberattack on Ukraine's Power Grid
by Doug Bernard January 07, 2016
In the last months of 2015, the conflict between Russia and Ukraine over Crimea's annexation and continuing strife in Ukraine's east appeared largely to be in stalemate. But now, with the new year, it appears the conflict is heating up again, and playing out on the region's electric grids.
On Dec. 23, a massive power outage in western Ukraine left approximately 700,000 homes in the dark. That outage was quickly followed by two smaller outages in Ukraine's Ivano-Frankivsk region. The outages were short-lived, and at the time, believed to be benign in nature.
Now, both the Ukrainian government and the private cybersecurity firm ESET say they have discovered malware inside the command and control systems at the affected power generators, raising the specter that unknown hackers intentionally targeted Ukraine's power grid.
"If confirmed this would be the first time that malware, as an external threat, targeted another nation-state's power grid ever," says Barak Perelman, CEO and co-founder of the Israel-based cybersecurity firm Indegy. "Any type of network interference that might shut down a grid should be considered a cyberattack, whether it originated inside the company or as an external threat."
More bugs possible
It's been rumored for years, but never proved, that various power failures around the world might have been the result of hackers. The malware inside Ukraine's power grid might offer proof of that. The Daily Beast reports that copies of the malware have been sent to U.S. cyber-analysts at the CIA, the NSA and the Department of Homeland Security.
Perelman notes that while malware forensics may reveal clues about how the generators' operational networks, or OTs, were infected, discovering who authored and deployed the bugs will prove difficult.
"Even if you find forensic information about the author, you can never really know whether that was planted there deliberately or not," he said. "But more interesting is specifically what the malware did to interfere with the industrial controllers. By learning how it worked, either at the generation plants or the substations that deliver power, you can protect from future incidents."
Perelman adds that it's also "very reasonable to believe" that similar bugs remain in Ukraine's grid and, in fact, may have also infected the power systems of other nations – including the U.S.
Principal suspect
Not surprisingly, Russia has figured as the principal suspect in planting the Ukrainian malware. Neither Russian or Ukrainian officials have spoken about the incident publicly, but in the past, government-linked Russian hackers have been tied to cyber-attacks in Estonia, Georgia and elsewhere.
Ukraine's power grid may also have been targeted by pro-Russian hackers for another reason. In November of last year, much of Crimea's electric power was cut after lines and a substation of the Ukrainian-based electric supplier were damaged in what many believe to be an attack by Ukrainian nationalists. The malware infection may have been prompted by that outage.
If the Ukraine outages are ultimately proven to be the work of hackers targeting another nation's electric grid, it would represent a significant escalation, and might even eventually be identified as an act of war.
"There's really no internationally agreed upon rule book of what constitutes cyber-war," Bob Twitchell, CEO of the cybersecurity firm Dispersive Technologies, told VOA.
'Technology can do many different things, but it always comes back to policy: what's the technology, what do you want to do with it, what's fair and not fair, and what's completely unacceptable," Twitchell said.
Cyberwar
Governments have generally been vague about defining what is and isn't an act of cyberwar. Last year U.S. Secretary of Defense Ashton Carter warned potential adversaries that the U.S. is ready to respond to any act of cyberwar.
But the DoD strategy document does not discuss what specifically constitutes cyberwar. And that, says former Assistant Secretary of Homeland Security Stewart Baker, is because war – cyber or otherwise – is a messy business.
'It is the things that both sides decide they are not prepared to do. And usually that's a mix of humanity, basic morality and hard-headed assessment that it won't do much good but will cause massive pain if the enemy does it to you," he said.
That said, Twitchell, Baker and other analysts VOA has spoken with agree that the intentional targeting and destruction of one nation's power grid by another would clearly represent an act of war.
http://www.globalsecurity.org/security/library/news/2016/01/sec-160107-voa03.htm?_m=3n.002a.1608.qx0ao0791x.1h6h
by Doug Bernard January 07, 2016
In the last months of 2015, the conflict between Russia and Ukraine over Crimea's annexation and continuing strife in Ukraine's east appeared largely to be in stalemate. But now, with the new year, it appears the conflict is heating up again, and playing out on the region's electric grids.
On Dec. 23, a massive power outage in western Ukraine left approximately 700,000 homes in the dark. That outage was quickly followed by two smaller outages in Ukraine's Ivano-Frankivsk region. The outages were short-lived, and at the time, believed to be benign in nature.
Now, both the Ukrainian government and the private cybersecurity firm ESET say they have discovered malware inside the command and control systems at the affected power generators, raising the specter that unknown hackers intentionally targeted Ukraine's power grid.
"If confirmed this would be the first time that malware, as an external threat, targeted another nation-state's power grid ever," says Barak Perelman, CEO and co-founder of the Israel-based cybersecurity firm Indegy. "Any type of network interference that might shut down a grid should be considered a cyberattack, whether it originated inside the company or as an external threat."
More bugs possible
It's been rumored for years, but never proved, that various power failures around the world might have been the result of hackers. The malware inside Ukraine's power grid might offer proof of that. The Daily Beast reports that copies of the malware have been sent to U.S. cyber-analysts at the CIA, the NSA and the Department of Homeland Security.
Perelman notes that while malware forensics may reveal clues about how the generators' operational networks, or OTs, were infected, discovering who authored and deployed the bugs will prove difficult.
"Even if you find forensic information about the author, you can never really know whether that was planted there deliberately or not," he said. "But more interesting is specifically what the malware did to interfere with the industrial controllers. By learning how it worked, either at the generation plants or the substations that deliver power, you can protect from future incidents."
Perelman adds that it's also "very reasonable to believe" that similar bugs remain in Ukraine's grid and, in fact, may have also infected the power systems of other nations – including the U.S.
Principal suspect
Not surprisingly, Russia has figured as the principal suspect in planting the Ukrainian malware. Neither Russian or Ukrainian officials have spoken about the incident publicly, but in the past, government-linked Russian hackers have been tied to cyber-attacks in Estonia, Georgia and elsewhere.
Ukraine's power grid may also have been targeted by pro-Russian hackers for another reason. In November of last year, much of Crimea's electric power was cut after lines and a substation of the Ukrainian-based electric supplier were damaged in what many believe to be an attack by Ukrainian nationalists. The malware infection may have been prompted by that outage.
If the Ukraine outages are ultimately proven to be the work of hackers targeting another nation's electric grid, it would represent a significant escalation, and might even eventually be identified as an act of war.
"There's really no internationally agreed upon rule book of what constitutes cyber-war," Bob Twitchell, CEO of the cybersecurity firm Dispersive Technologies, told VOA.
'Technology can do many different things, but it always comes back to policy: what's the technology, what do you want to do with it, what's fair and not fair, and what's completely unacceptable," Twitchell said.
Cyberwar
Governments have generally been vague about defining what is and isn't an act of cyberwar. Last year U.S. Secretary of Defense Ashton Carter warned potential adversaries that the U.S. is ready to respond to any act of cyberwar.
But the DoD strategy document does not discuss what specifically constitutes cyberwar. And that, says former Assistant Secretary of Homeland Security Stewart Baker, is because war – cyber or otherwise – is a messy business.
'It is the things that both sides decide they are not prepared to do. And usually that's a mix of humanity, basic morality and hard-headed assessment that it won't do much good but will cause massive pain if the enemy does it to you," he said.
That said, Twitchell, Baker and other analysts VOA has spoken with agree that the intentional targeting and destruction of one nation's power grid by another would clearly represent an act of war.
http://www.globalsecurity.org/security/library/news/2016/01/sec-160107-voa03.htm?_m=3n.002a.1608.qx0ao0791x.1h6h
Today at 5:35 am by Bama Diva
» utube 10/9/24 MM&C Iraq Dinar News-Optimization-Automation-Digital-Schedule Date-Secured Salaries
Today at 5:15 am by Rocky
» IV Fluid Shortage: Hospital Group Asks Federal Government to Declare National Emergency
Today at 5:15 am by Bama Diva
» utube 10/7/24 MM&C Iraq Dinar News-Iraqi Dinar-Liquidity-Sudani Report-Digital Phase-Supreme Court
Today at 5:12 am by Rocky
» Rafidain announces contracting with a specialized company and experts in combating money laundering
Today at 5:10 am by Rocky
» Al-Sudani stresses the importance of setting standards for partnership between the Iraq Development
Today at 5:07 am by Rocky
» Parliamentary Oil Committee warns: The region is causing a reduction in Iraqi oil revenues
Today at 5:06 am by Rocky
» MP: Court's comment on the phrase "sovereign" obligates the government and region to end foreign pre
Today at 5:04 am by Rocky
» Iraq continues negotiations with British BP to start developing Kirkuk oil fields
Today at 5:02 am by Rocky
» Iraq is the second largest oil supplier to India in nine months
Today at 5:02 am by Rocky
» The Council of Ministers decides to increase the financial costs of a number of stalled projects
Today at 5:00 am by Rocky
» Association of Banks: More than 600 government institutions adopt electronic payment
Today at 4:58 am by Rocky
» Iraqi oil approaches $80 per barrel
Today at 4:57 am by Rocky
» Electricity: Supply hours are declining for this reason
Today at 4:56 am by Rocky
» Parliamentary Committee stresses the need to continue the school feeding project
Today at 4:55 am by Rocky
» The Central Bank continues the actual implementation of banking reform plans
Today at 4:53 am by Rocky
» World Trade Organization
Today at 4:52 am by Rocky
» Parliamentary report: The government has achieved accomplishments in several files
Today at 4:51 am by Rocky
» Government spokesman: We are continuing our efforts to stop the aggression and we reject the logic o
Today at 4:48 am by Rocky
» The government completes the file to join the "WTO"
Today at 4:45 am by Rocky
» Opening of two residential complexes in Babylon
Today at 4:44 am by Rocky
» Facilitating the procedures for issuing a retirement card in Wasit
Today at 4:43 am by Rocky
» Conducting labor market surveys
Today at 4:42 am by Rocky
» Soon.. Opening of (38) new public transport lines
Today at 4:41 am by Rocky
» Education: Announcement of the imminent elimination of illiterate employees from state institutions
Today at 4:40 am by Rocky
» The Ministry of Interior receives more than (1200) requests within the {Your Plate for Your Home} se
Today at 4:39 am by Rocky
» Baghdad Governorate to {Sabah}: Efforts to resolve the file of violations in the capital
Today at 4:37 am by Rocky
» The Iraqi government rejects the accusations of treason directed at Arab brothers and insulting them
Today at 4:33 am by Rocky
» Analysis of the Iraqi government statement on “Arab brothers”: I felt embarrassed after the threats
Today at 4:31 am by Rocky
» Due to lack of jurisdiction.. Federal Court rejects Parliament’s lawsuit regarding withdrawal of coa
Today at 4:30 am by Rocky
» The regional finance department talks about a deficit of about 305 billion dinars in September salar
Today at 4:29 am by Rocky
» Iraq in the grip of its neighbors.. The absence of defensive means puts it at risk
Today at 4:27 am by Rocky
» Iraqi analyst reveals the secret of Biden's document regarding Iran: 4 points that protect Tehran fr
Today at 4:25 am by Rocky
» Al-Sudani stresses the importance of setting standards for partnership between the Iraq Development
Today at 4:24 am by Rocky
» US Embassy Sends Five Warning Letters to Baghdad Within 72 Hours - Urgent
Today at 4:22 am by Rocky
» Iraq's budget breathes a sigh of relief with rising oil prices..may witness other "jumps"
Today at 4:20 am by Rocky
» Iraq adopts prepayment for Turkmen gas supply via Iran
Today at 4:18 am by Rocky
» Rafidain clarifies the Cabinet’s decision to approve the contract with K2 Integrity
Today at 4:17 am by Rocky
» Iraqi Trade Announces Strategic Stockpile and Launches “Hypermarket” Markets in Baghdad
Today at 4:14 am by Rocky
» The countdown begins for the US withdrawal from Iraq.. Will it affect the country's security?
Today at 4:12 am by Rocky
» The spread of drug farms in Iraq... a new threat that exacerbates security concerns!
Today at 4:11 am by Rocky
» Launching a package of medical and social guidelines to raise awareness of the dangers of breast can
Today at 4:08 am by Rocky
» The government approves the issuance of the second amendment to the investment system
Today at 4:07 am by Rocky
» Integrity Commission reveals readiness of the law to recover corruption proceeds
Today at 4:05 am by Rocky
» How did the Federal Court interpret the phrase “fully sovereign” in the Constitution?
Today at 4:04 am by Rocky
» Al-Sudani directs the Tax Reform Committee to write a draft law for the sales tax
Today at 4:03 am by Rocky
» Mawazine News publishes the text of the Cabinet decisions in its second session today
Today at 4:01 am by Rocky
» Al-Sudani chairs the regular meeting of the Board of Directors of the Iraq Development Fund
Today at 4:00 am by Rocky
» Dollar prices fall in Baghdad stock exchanges
Today at 3:59 am by Rocky
» Al-Sudani Advisor: The Ministry of Finance is preparing the 2025 budget tables
Today at 3:57 am by Rocky
» New Cabinet decisions, including those related to “Iraqis deported” from abroad
Today at 3:54 am by Rocky
» List of dollar exchange rates against the dinar in Iraq today
Today at 3:52 am by Rocky
» Ranked 29th out of 100 countries, Iraq raises its gold holdings to more than 152 tons
Yesterday at 12:30 pm by Rocky
» The Bank of Iraq extends working hours to complete money transfer transactions
Yesterday at 12:28 pm by Rocky
» Central Bank Governor: National Bank Lending Strategy Aims to Stimulate and Activate Economy
Yesterday at 12:26 pm by Rocky
» utube 10/5/24 MM&C Iraqi Dinar Update - Iraq Dinar News -World Bank - Report - Central Bank Govern
Yesterday at 5:18 am by Rocky
» MM&C 10/6/24 Digital Banks in Iraq
Yesterday at 5:17 am by Rocky
» Kurdistan employees' salaries due to arrive within three days from Baghdad
Yesterday at 5:14 am by Rocky
» Revealing the features of the 2025 budget tables
Yesterday at 5:13 am by Rocky
» Campaign to stop exporting Iraqi oil to Jordan
Yesterday at 5:09 am by Rocky
» Makkah: Climate investment map may be launched within two months
Yesterday at 5:06 am by Rocky
» Trade: Iraq transformed from a wheat importer to an exporter
Yesterday at 5:04 am by Rocky
» "Our Baghdad" is an electronic platform that provides 25 services to citizens
Yesterday at 5:02 am by Rocky
» 40 - 100 million dinars fine for violating vertical construction
Yesterday at 5:01 am by Rocky
» Closure of 400 “unlicensed” tourism companies
Yesterday at 5:00 am by Rocky
» Speculators
Yesterday at 4:59 am by Rocky
» Minister of Trade to Al-Sabah: We are working to achieve food sustainability in Iraq
Yesterday at 4:58 am by Rocky
» Parliamentary Security: Our forces are ready to defend the country
Yesterday at 4:56 am by Rocky
» Iraq mobilizes the world to stop aggression
Yesterday at 4:55 am by Rocky
» Fines for owners of vertical buildings in violation
Yesterday at 4:54 am by Rocky
» Tourism Authority to {Al Sabah}: Concluding agreements with Arab and regional countries
Yesterday at 4:52 am by Rocky
» Prime Minister directs to pursue speculators in the currency market
Yesterday at 4:50 am by Rocky
» Launching the e-shopping service for social protection beneficiaries
Yesterday at 4:49 am by Rocky
» Civil Aviation and Sustainable Resources
Yesterday at 4:48 am by Rocky
» The Ministerial Council recommends adopting a schedule of values and rates of customs duties for m
Yesterday at 4:45 am by Rocky
» The Iraqi government rejects the accusations of treason directed at Arab brothers and insulting them
Yesterday at 4:41 am by Rocky
» The Council of Ministers holds its first regular session, headed by Al-Sudani
Yesterday at 4:39 am by Rocky
» Trade Bank of Iraq addresses Iraqis: Here is the mechanism for donating to Gaza and Lebanon
Yesterday at 4:37 am by Rocky
» BP in talks to invest in 3 oil projects in Iraq
Yesterday at 4:35 am by Rocky
» In the presence of a number of European Union ambassadors.. Minister of Migration chairs an importan
Yesterday at 4:33 am by Rocky
» After Al-Sudani’s message... “Roadmap” for Iraq to avoid the repercussions of Gaza and southern Leba
Yesterday at 4:32 am by Rocky
» American newspaper: The United States will not withdraw from Iraq
Yesterday at 4:31 am by Rocky
» What is the relationship between regional tension and the rise of the dollar in Iraq?
Yesterday at 4:30 am by Rocky
» "Cancellation of Iraqi privileges granted to Jordan" on the table of Parliament next session
Yesterday at 4:28 am by Rocky
» Oil expert to Al-Zawraa: OPEC counts smuggled oil from Iraq as part of its daily production
Yesterday at 4:27 am by Rocky
» Palestinian Ambassador Thanks Iraq for Political, Financial and Humanitarian Support to His Country
Yesterday at 4:26 am by Rocky
» With a $3 million grant… Iraq and the United Nations sign the “Peace and Stability” document in Sinj
Yesterday at 4:24 am by Rocky
» Baghdad Governor reveals population increase and confirms: Explosive budgets will not cover service
Yesterday at 4:23 am by Rocky
» Al-Sudani directs the prosecution of speculators who exploit crises in the region to manipulate the
Yesterday at 4:22 am by Rocky
» The fate of the three-year budget is unclear: most of the allocations have not been spent and Parlia
Yesterday at 4:21 am by Rocky
» Economist calls on government, confirms: Flaring associated gas costs state billions of dollars
Yesterday at 4:20 am by Rocky
» Al-Karkh Investigation Court issues arrest warrant against acting head of the Integrity Commission,
Yesterday at 4:18 am by Rocky
» Emirates resumes flights to Iraq tomorrow
Yesterday at 4:16 am by Rocky
» Water Resources: Basra Pipeline Water Project continues to be implemented at 55%
Yesterday at 4:15 am by Rocky
» Al-Sudani directs the formation of a working group to prepare packages to deal with the economic and
Yesterday at 4:14 am by Rocky
» Government Advisor: Release of 99 billion dinars as a new payment of compensation to Sinjar
Yesterday at 4:12 am by Rocky
» Foreign Minister Fuad Hussein invites his British counterpart to visit Iraq
Yesterday at 4:10 am by Rocky
» What are the reasons for the rise in the dollar price in Iraq? A specialist answers
Yesterday at 4:08 am by Rocky
» How did social media users react to the decision to include household items in the population census
Yesterday at 4:04 am by Rocky