5 Trends Utilities Need to Watch in 2017


NFPA 70e Training

Our customized live online or in‑person group training can be delivered to your staff at your location.

  • Live Online
  • 6 hours Instructor-led
  • Group Training Available
Regular Price:
$199
Coupon Price:
$149
Reserve Your Seat Today

Utility Energy Trends 2017 spotlights electric vehicles, distributed energy resources, solar-plus-storage, smart grid modernization, rate design, carbon markets, connected-home platforms, and natural gas dynamics reshaping utility operations and customer choice.

 

Key Points

Key shifts shaping utilities in 2017: EV adoption, DER integration, smart grid upgrades, carbon policy, customer choice.

✅ EVs shift load; smart charging, V2G, and fleets lead early.

✅ DERs, solar-plus-storage, alter rate design and grid planning.

✅ Carbon policy shifts local; RGGI, cap-and-trade influence.

 

From new EV models to emerging power choices for consumers, utilities have a lot to watch outside of their core business in the coming years, even as electricity demand stays flat across many markets.

As 2016 fades away, a new year approaches with a new set of unknowns for the evolving energy sector. A variety of different assets are coming on-line and challenging utilities that, even just a few years ago, did not have to consider the types of problems facing states such as California and Hawaii.

But with challenge comes opportunity. For utilities that have sat on the sidelines as solar has emerged, now is the time to consider what solar and other distributed energy resources (DERs) will mean for their operations in the years to come.

Here are five areas utilities need to stay focused on in 2017.

Solar today, electric vehicles tomorrow. For many utilities, the past few years have been all about understanding the impact of rapidly deploying distributed solar on the grid and debating related changes to traditional utility business models. The impact of electric-vehicle adoption is not far behind that of distributed solar, but this time utilities have a chance to be proactive.

Tesla’s Model 3 is expected to roll off the production line late next year, and Toyota has committed to mass production of EVs by 2020; as America goes electric these and other automaker announcements stand to transform how utilities manage the grid.

“There are several moving parts here and infrastructure is one of them, batteries are another; and then there’s the question of whether consumers are willing to buy them,” said Gregg Edeson, energy industry lead in smart grid, asset management and performance improvement at PA Consulting. If the latter holds to be true, then utilities will likely be a part of scaling up charging infrastructure, as is happening with massive charging plans put forward by the large California utilities.

For now, it is too early to say whether utilities will leverage EV batteries as grid resources. Currently, utilities are focused on rates that incentivize smart charging. In the future, vehicle-to-grid applications may offer promise, but real-world applications are limited given technical issues and questions around what that would do to a battery warranty. Managing fleet charging is likely the best starting point, and eventually second-life EV batteries could provide grid support.

Whether utilities are preparing for EVs or other DERs, investing in technology alone to better manage these resources will not be enough. “It’s also about understanding the impacts on the organization,” said Edeson. Even for utilities that aren’t challenged by DERs today, thinking about the evolution of operational business processes needs to start now.

The threat of tech giants. It’s not just solar and EV adoption rates that utilities need to be tracking closely. With Google and Amazon now battling with their connected-home devices, utilities need to pay attention to tech leaders more than ever.

The device, whether it’s the Amazon Echo or the Google Home, is probably being used more for playing music and checking the weather than for managing home energy, but the possibilities are endless. “Utilities need to track this space,” said Edeson.

Savvy utilities might eventually want to offer value-add services, such as appliance monitoring through smart meter data that could be integrated into a connected-home device to let homeowners know if an appliance is malfunctioning.

It need not be limited to electricity, said Edeson, adding that there is a suite of other services, such as water efficiency, that utilities could also integrate into leading consumer platforms via APIs. If utilities don’t bother to do it, they’ll lose out to someone else who will.

Carbon goes local. With the incoming Trump administration, the Clean Power Plan is most likely dead on arrival. The focus on carbon will return to the states. “It’s a little too soon to say, but I do think we’ll see renewed focus on state-level carbon politics,” said David Cherney, energy industry adviser at PA Consulting.

In this new political environment, more states could decide to join the Northeast’s Regional Greenhouse Gas Initiative or California’s carbon market. Participants aren’t limited to regional neighbors; both Ontario and Quebec have joined California’s market. However, the long-term stability of California’s cap-and-trade system is in jeopardy, and without federal support in the coming years, there will likely need to be a renewed effort to shore up support for the program.

Choice is everywhere. Customer choices in energy are quickly evolving beyond an array of sleek thermostats and solar lease options. Solar can now come with storage, and, increasingly, people can choose community solar options. Electric vehicles are also on the menu, even as energy crisis impacts continue to shape markets.  

It’s not just customers who are looking for more flexibility. Regulators are also looking to create options through competitive market structures, such as what is happening with New York’s Reforming the Energy Vision initiative.

Utilities are also looking to maintain diversity in their fuel supply, and can increasingly justify the cost of renewables on price alone, rather than as part of meeting a renewable portfolio standard (RPS). GTM Research forecasts that non-RPS market drivers will make up most of utility-scale solar procurements between now and 2020.

Corporations are also thinking more seriously about power options than ever before. Caesars is the most recent defection in a string of casinos that have filed to leave NV Energy and get their power on the wholesale market. Although the situation in Nevada has not played out in many other places, large corporate energy users are actively seeking a cleaner power mix. Google, for instance, said it will achieve its goal of using 100 percent renewable sources for its electricity in 2017.

Coal can’t come back. While many environmentalists are concerned about what the Trump administration and its end to 'war on coal' stance might mean for action on climate change and protecting public land and water, Cherney said it’s simply too soon to tell. “There’s a lot of unpredictable aspects with the Trump administration,” he added.

Because many older coal plants have already retired amid coal and nuclear disruptions or invested in upgrades to be compliant with coming environmental regulations, even rolling some of those regulations back would not do much to change the picture.

“The uneconomic coal has largely exited the market,” he said. Although there could be an incremental boost for coal in the short term, it is mostly struggling because of cheap natural gas. “We do not believe Trump will have major impact on coal generation one way or the other.”

In fact, if Trump decides to approve more natural-gas pipelines, it’s possible that lower-priced gas could reach even more markets, further undermining the coal industry.

 

Related News

Related News

Manitoba Hydro hikes face opposition as hearings begin

Manitoba Hydro rate hikes face public hearings over electricity rates, utility bills, and debt, with impacts on low-income households, Indigenous communities, and Winnipeg services amid credit rating pressure and rising energy costs.

 

Key Points

Manitoba Hydro seeks 7.9% annual increases to stabilize finances and debt, impacting electricity costs for households.

✅ Proposed hikes: 7.9% yearly through 2023/24

✅ Driven by debt, credit rating declines, rising interest

✅ Disproportionate impact on low-income and Indigenous communities

 

Hearings began Monday into Manitoba Hydro’s request for consecutive annual rate hikes of 7.9 per cent.  The crown corporation is asking for the steep hikes to commence April 1, 2018.

The increases would continue through 2023/2024, under a multi-year rate plan before dropping to what Hydro calls “sustainable” levels.

Patti Ramage, legal counsel for Hydro, said while she understands no one welcomes the “exceptional” rate increases, the company is dealing with exceptional circumstances.

It’s the largest rate increase Hydro has ever asked for, though a scaled-back increase was discussed later, saying rising debt and declining credit ratings are affecting its financial stability.

President and CEO Kelvin Shepherd said Hydro is borrowing money to fund its interest payments, and acknowledged that isn’t an effective business model.

Hydro’s application states that it will be spending up to 63 per cent of its revenue on paying financial expenses if the current request for rate hikes is not approved.

If it does get the increase it wants, that number could shrink to 45 per cent – which Ramage says is still quite high, but preferable to the alternative.

She cited the need to take immediate action to fix Hydro’s finances instead of simply hoping for the best.

“The worst thing we can do is defer action… that’s why we need to get this right,” Ramage said.

A number of intervenors presented varying responses to Hydro’s push for increased rates, with many focusing on how the hikes would affect Manitobans with lower incomes.

Senwung Luk spoke on behalf of the Assembly of Manitoba Chiefs, and said the proposed rates would hit First Nations reserves particularly hard.

He noted that 44.2 per cent of housing on reserves in the province needs significant improvement, which means electricity use tends to be higher to compensate for the lower quality of infrastructure.

Luk says this problem is compounded by the higher rates of poverty in Indigenous populations, with 76 per cent of children on reserves in Manitoba living below the poverty line.

If the increase goes forward, he said the AMC hopes to see a reduced rate for those living on reserves, despite a recent appeal court ruling on such pricing.

Byron Williams, speaking on behalf of the Consumers Coalition, said the 7.9 per cent increase unreasonably favours the interests of Hydro, and is unjustly biased against virtually everyone else.

In Saskatchewan, the NDP criticized an SaskPower 8 per cent rate hike as unfair to customers, highlighting regional concerns.

Williams said customers using electric space heating would be more heavily targeted by the rate increase, facing an extra $13.14 a month as opposed to the $6.88 that would be tacked onto the bills of those not using electric space heating.

Williams also called Hydro’s financial forecasts unreliable, bringing the 7.9 per cent figure into question.

Lawyer George Orle, speaking for the Manitoba Keewatinowi Okimakanak, said the proposed rate hikes would “make a mockery” of the sacrifices made by First Nations across the province, given that so much of Hydro’s infrastructure is on Indigenous land.

The city of Winnipeg also spoke out against the jump, saying property taxes could rise or services could be cut if the hikes go ahead to compensate for increased, unsustainable electricity costs.

In British Columbia, a BC Hydro 3 per cent increase also moved forward, drawing attention to affordability.

A common theme at the hearing was that Hydro’s request was not backed by facts, and that it was heading towards fear-mongering.

Manitoba Hydro’s CEO begged to differ as he plead his case during the first hearing of a process that is expected to take 10 weeks.

 

Related News

View more

Symantec Proves Russian

Dragonfly energy sector cyberattacks target ICS and SCADA across critical infrastructure, including the power grid and nuclear facilities, using spearphishing, watering-hole sites, supply-chain compromises, malware, and VPN exploits to gain operational access.

 

Key Points

Dragonfly APT campaigns target energy firms and ICS to gain grid access, risking manipulation and service disruption.

✅ Breaches leveraged spearphishing, watering-hole sites, and supply chains.

✅ Targeted ICS, SCADA, VPNs to pivot into operational networks.

✅ Aimed to enable power grid manipulation and potential outages.

 

An October, 2017 report by researchers at Symantec Corp., cited by the U.S. government, has linked recent US power grid cyber attacks to a group of hackers it had code-named "Dragonfly", and said it found evidence critical infrastructure facilities in Turkey and Switzerland also had been breached.

The Symantec researchers said an earlier wave of attacks by the same group starting in 2011 was used to gather intelligence on companies and their operational systems. The hackers then used that information for a more advanced wave of attacks targeting industrial control systems that, if disabled, leave millions without power or water.

U.S. intelligence officials have long been concerned about the security of the country’s electrical grid. The recent attacks, condemned by the U.S. government, striking almost simultaneously at multiple locations, are testing the government’s ability to coordinate an effective response among several private utilities, state and local officials, and industry regulators.

#google#

While the core of a nuclear generator is heavily protected, a sudden shutdown of the turbine can trigger safety systems. These safety devices are designed to disperse excess heat while the nuclear reaction is halted, but the safety systems themselves may be vulnerable to attack.

The operating systems at nuclear plants also tend to be legacy controls built decades ago and don’t have digital control systems that can be exploited by hackers.

“Since at least March 2016, Russian government cyber actors… targeted government entities and multiple U.S. critical infrastructure sectors, including the energy, nuclear, commercial facilities, water, aviation, and critical manufacturing sectors,” according to Thursday’s FBI and Department of Homeland Security report. The report did not say how successful the attacks were or specify the targets, but said that the Russian hackers “targeted small commercial facilities’ networks where they staged malware, conducted spearphishing, and gained remote access into energy sector networks.” At least one target of a string of infrastructure attacks last year was a nuclear power facility in Kansas.

Symantec doesn’t typically point fingers at particular nations in its research on cyberattacks, said Eric Chien, technical director of Symantec’s Security Technology and Response division, though he said his team doesn’t see anything it would disagree with in the new federal report. The government report appears to corroborate Symantec’s research, showing that the hackers had penetrated computers and accessed utility control rooms that would let them directly manipulate power systems, he says.

“There were really no more technical hurdles for them to do something like flip off the power,” he said.

And as for the group behind the attacks, Chien said it appears to be relatively dormant for now, but it has gone quiet in the past only to return with new hacks.

“We expect they’re sort of retooling now, and they likely will be back,”

 


 

In some cases, Dragonfly successfully broke into the core systems that control US and European energy companies, Symantec revealed.

“The energy sector has become an area of increased interest to cyber-attackers over the past two years,” Symantec said in its report.

“Most notably, disruptions to Ukraine’s power system in 2015 and 2016 were attributed to a cyberattack and led to power outages affecting hundreds of thousands of people. In recent months, there have also been media reports of attempted attacks on the electricity grids in some European countries, as well as reports of companies that manage nuclear facilities in the US being compromised by hackers.

“The Dragonfly group appears to be interested in both learning how energy facilities operate and also gaining access to operational systems themselves, to the extent that the group now potentially has the ability to sabotage or gain control of these systems should it decide to do so. Symantec customers are protected against the activities of the Dragonfly group.”

In recent weeks, senior US intelligence officials said that the Kremlin believes it can launch hacking operations against the West with impunity, including a cyber weapon that can disrupt power grids, according to assessments.

The DHS and FBI report further elaborated: “This campaign comprises two distinct categories of victims: staging and intended targets. The initial victims are peripheral organisations such as trusted third-party suppliers with less-secure networks, referred to as ‘staging targets’ throughout this alert.

“The threat actors used the staging targets’ networks as pivot points and malware repositories when targeting their final intended victims. National Cybersecurity and Communications Integration Center and FBI judge the ultimate objective of the actors is to compromise organisational networks, also referred to as the ‘intended target’.”

According to the US alert, hackers used a variety of attack methods, including spear-phishing emails, watering-hole domains, credential gathering, open source and network reconnaissance, host-based exploitation, and deliberate targeting of ICS infrastructure.

The attackers also targeted VPN software and used password cracking tools.

Once inside, the attackers downloaded tools from a remote server and then carried out a number of actions, including modifying key systems to store plaintext credentials in memory, and built web shells to gain command and control of targeted systems.

“This actors’ campaign has affected multiple organisations in the energy, nuclear, water, aviation, construction and critical manufacturing sectors, with hundreds of victims across the U.S. power grid confirmed,” the DHS said, before outlining a number of steps that IT managers in infrastructure organisations can take to cleanse their systems and defend against Russian hackers. he said.
 

 

Related News

View more

PG&E Supports Local Communities as It Pays More Than $230 Million in Property Taxes to 50 California Counties

PG&E property tax payments bolster counties, education, public safety, and infrastructure across Northern and Central California, reflecting semi-annual levies tied to utility assets, capital investments, and economic development that serve 16 million customers.

 

Key Points

PG&E property tax payments are semi-annual county taxes funding public services and linked to utility infrastructure.

✅ $230M paid for Jul-Dec 2017 across 50 California counties

✅ Estimated $461M for FY 2017-2018, up 12% year over year

✅ Investments: $5.9B in grid, Gas Safety Academy, control center

 

Pacific Gas and Electric Company (PG&E) paid property taxes of more than $230 million this fall to the 50 counties where the energy company owns property and operates gas and electric infrastructure that serves 16 million Californians. The tax payments help support essential public services like education and public health and safety actions across the region.

The semi-annual property tax payments made today cover the period from July 1 to December 31, 2017.

Total payments for the full tax year of July 1, 2017 to June 30, 2018 are estimated to total more than $461 million—an increase of $50 million, or 12 percent, compared with the prior fiscal year, even as customer rates are expected to stabilize in the years ahead.

“Property tax payments provide crucial resources to the many communities where we live and work, supporting everything from education to public safety. By continuing to make local investments in gas and electric infrastructure, we are not only creating one of the safest and most reliable energy systems in the country, including wildfire risk reduction programs and related efforts, we’re investing in the local economy and helping our communities thrive,” said Jason Wells, senior vice president and chief financial officer for PG&E.

PG&E invested more than $5.7 billion last year and expects to invest $5.9 billion this year to enhance and upgrade its gas and electrical infrastructure amid power line fire risks across Northern and Central California.

Some recent investments include the construction of PG&E’s $75 millionGas Safety Academy in Winters in Yolo County, which opened in September. Last year, PG&E opened a $36 million, state-of-the-art electric distribution control center in Rocklin.

PG&E supports the communities it serves in a variety of ways. In 2016, PG&E provided more than $28 million in charitable contributions to enrich local educational opportunities, preserve the environment, and support economic vitality and emergency preparedness and safety, including its Wildfire Assistance Program for impacted residents. PG&E employees provide thousands of hours of volunteer service in their local communities. The company also offers a broad spectrum of economic development services to help local businesses grow.

 

Related News

View more

Canada’s Opportunity in the Global Electricity Market

Canada Clean Electricity Exports leverage hydroelectric power, energy storage, and transmission interconnections to meet rising IEA-forecast demand, support electrification, decarbonize grids, and attract green finance with stable policy and advanced technology.

 

Key Points

Canada's cross-border power sales from hydro and renewables, enabled by storage, transmission, and supportive policy.

✅ Hydro leads generation; expand transmission interties to the US

✅ Deploy storage to balance wind and solar variability

✅ Streamline regulation and green finance to scale exports

 

As global electricity demand continues to surge, Canada finds itself uniquely positioned to capitalize on this expanding market by choosing an electric, connected and clean pathway that scales with demand. With its vast natural resources, advanced technology, and stable political environment, Canada can play a crucial role in meeting the world’s energy needs while also advancing its own economic interests.

The International Energy Agency (IEA) has projected that global electricity demand will grow significantly over the next decade, driven by factors such as population growth, urbanization, and the increasing electrification of various sectors, including transportation and industry. This presents a golden opportunity for Canada to bolster its energy security as it boasts an abundance of renewable energy sources, particularly hydroelectric power. Currently, hydroelectricity accounts for about 60% of Canada’s total electricity generation, making it one of the largest producers of this clean energy source in the world.

The growing emphasis on renewable energy aligns perfectly with Canada’s strengths, with the Prairie Provinces emerging as leaders in new wind and solar capacity across the country. As countries worldwide strive to reduce their carbon footprints and transition to greener energy solutions, Canada’s clean energy resources can be harnessed not only to meet domestic needs but also to export electricity to neighboring countries and beyond. The U.S., for instance, is already a significant market for Canadian electricity, with interconnections facilitating the flow of power across borders. Expanding these connections and investing in infrastructure could further increase Canada’s electricity exports.

Moreover, advancements in energy storage technology present another avenue for Canada to enhance its role in the global electricity market. With the rise of intermittent energy sources like wind and solar, the ability to store excess electricity generated during peak production times becomes essential. Canada’s expertise in technology and innovation positions it well to develop and deploy energy storage solutions that can stabilize the grid through grid modernization projects and ensure a reliable supply of electricity.

Additionally, Canada’s commitment to reducing greenhouse gas emissions and combating climate change aligns with the global shift towards sustainable energy. By investing in renewable energy projects and supporting research and development, Canada can not only meet its climate targets, including zero-emissions electricity by 2035, but also attract international investment. Green financing initiatives are becoming increasingly popular, and Canada can leverage its reputation as a leader in environmental stewardship to tap into this growing market.

However, to fully realize these opportunities, Canada must address some key challenges. Regulatory hurdles, infrastructure limitations, and the need for a coordinated national energy strategy are critical issues that must be navigated. Streamlining regulations and fostering collaboration between federal and provincial governments will be essential in creating a conducive environment for investment in renewable energy projects.

Furthermore, public acceptance and community engagement are vital components of developing new energy projects, especially where solar power adoption lags and outreach is needed. Ensuring that local communities benefit from these initiatives—whether through job creation, economic investment, or shared revenues—will help garner support and facilitate smoother project implementation.

In addition to domestic efforts, Canada should also position itself as a global leader in energy diplomacy. By collaborating with other nations to share best practices, technologies, and resources, Canada can strengthen its influence in international energy discussions. Engaging in multilateral initiatives aimed at addressing energy poverty and promoting sustainable development will not only enhance Canada’s standing on the world stage but also open doors for Canadian companies to expand their reach.

In conclusion, as the global demand for electricity rises, Canada stands at a crossroads, with a tremendous opportunity to lead in the clean energy sector. By leveraging its natural resources, investing in technology, and fostering international partnerships, Canada can not only meet its energy needs but also pursue zero-emission electricity by 2035 while positioning itself as a key player in the global electricity market. The path forward will require strategic planning, investment, and collaboration, but the potential rewards are significant—both for Canada and the planet.

 

Related News

View more

Electricity distributors warn excess solar power in network could cause blackouts, damage infrastructure

Australian Rooftop Solar Grid Constraints are driving debates over voltage rise, export limits, inverter curtailment, DER integration, and network reliability, amid concerns about localized blackouts, infrastructure protection, tariff reform, and battery storage adoption.

 

Key Points

Limits on solar exports to curb voltage rise, protect equipment, and keep the distribution grid reliable.

✅ Voltage rise triggers transformer protection and local outages.

✅ Export limits and smart inverter curtailment manage midday backfeed.

✅ Tariff reform and DER orchestration defer costly network upgrades.

 

With almost 1.8 million Australian homes and businesses relying on power from rooftop solar panels, there is a fight brewing over the impact of solar energy on the national electricity grid.

Electricity distributors are warning that as solar uptake continues to increase, there is a risk excess solar power could flow into the network, elevating power outage risks, causing blackouts and damaging infrastructure.

But is it the network businesses that are actually at risk, as customers turn away from centrally produced electricity?

This is what three different parties have to say:

Andrew Dillon of the network industry peak body, Energy Networks Australia (ENA), told 7.30 the way customers are charged for electricity has to change, or expensive grid upgrades to poles and wires will be needed to keep solar customers on the grid.

"The engineering reality is once we get too much solar in a certain space it does start to cause technical issues," he said.

"If there is too much energy coming back up the system in the middle of the day, it can cause frequency voltage disturbances in the system, which can lead to transformers tripping off to protect themselves from being damaged and that will cause localised blackouts.

"There are pockets of the grid already where we have significant penetration and we are starting to see technical issues."

However, he acknowledges that excess solar power has yet to cause any blackouts, or damage electricity infrastructure.

"I don't buy that at all," he said.

"It can be that in some suburbs or parts of suburbs a high penetration of solar on the point of use can raise voltage, these issues generally can be dealt with quickly.

"The critical issue is think where you are getting that perspective from. It is from an industry whose underlying market is threatened by customers doing it for themselves through peer-to-peer energy models. So, think with some critical insight to these claims."

He said when too many people rely on solar it threatens the very business model of the companies that own Australia's poles and wires.

"When the customers use the network less to buy centrally produced electricity, they ship less product," he said.

"When they ship less product, their underlying business is undermined, they need to charge more to the customers left and that leads to what has been called a death spiral.

"We are seeing rapid reductions in consumption at the point of use per household."

But Mr Dillon denies the distributors are acting out of self-interest.

"I absolutely reject that claim," he said.

"[What] we, as networks, have an interest in is running a safe network, running a reliable network, enabling the transition to a low carbon future and doing all that while keeping costs down as much as possible."

Solar installers say the networks are holding back business

Around Australia the poles and wires companies can decide which solar systems can connect to the grid.

Small systems can connect automatically, but in some areas, those wanting a larger system can find themselves caught up in red tape.

The vice-president of the Australian Solar Council, Glen Morris, said these limitations were holding back solar installation businesses and preventing the take-up of new battery storage technology.

"If you've already got a five kilowatt system, your house is full as far as the network is concerned," Mr Morris said.

"You go to add a battery, that's another five kilowatts and so they say no you're already full … so you can't add storage to your solar system."

The powers that be are stumbling in the dark to prevent a looming energy crisis, as the grid seeks to balance renewables' hidden challenges and competing demands.

Mr Morris also said the networks had the capacity to solve the problem of any excess solar flows into the grid, and infrastructure upgrades were not necessary.

"They already have the capability to turn off your solar invertor whenever they feel like it," he said.

"If they choose to connect that functionality, it's there in the inverter. The customer already has it."

ENA has acknowledged there is frustration with rooftop system size limits in the solar industry.

"What we are seeing is solar installers and others slightly frustrated at different requirements for different networks and sometimes they are unclear on the reasons for that," Mr Dillon said.

"Limitations are in place across the country to keep the lights on and make sure the network stays safe and we don't have sudden rushes of people connecting to the grid that causes outage issues."

But Mr Mountain is unconvinced, calling the limitations "somewhat spurious".

"The published, documented, critically reviewed analyses are few and far between, so it is very easy for engineers to make these arguments and those in policy circles only have so much tolerance for the detail," he said.

 

Related News

View more

Kaspersky Lab Discovers Russian Hacker Infrastructure

Crouching Yeti APT targets energy infrastructure with watering-hole attacks, compromising servers to steal credentials and stage intrusions; Kaspersky Lab links the Energetic Bear group to ICS threats across Russia, US, Europe, and Turkey.

 

Key Points

Crouching Yeti APT, aka Energetic Bear, is a threat group that targets energy firms using watering-hole attacks.

✅ Targets energy infrastructure via watering-hole compromises

✅ Uses open-source tools and backdoored sshd for persistence

✅ Scans global servers to stage intrusions and steal credentials

 

A hacker collective known for attacking industrial companies around the world have had some of their infrastructure identified by Russian security specialists.

Kaspersky Lab said that it has discovered a number of servers compromised by the group, belonging to different organisations based in Russia, the US, and Turkey, as well as European countries.

The Russian-speaking hackers, known as Crouching Yeti or Energetic Bear, mostly focus on energy facilities, as seen in reports of infiltration of the U.S. power grid targeting critical infrastructure, for the main purpose of stealing valuable data from victim systems.

 

Hacked servers

Crouching Yeti is described as an advanced persistent threat (APT) group that Kaspersky Lab has been tracking since 2010.

#google#

Kaspersky Lab said that the servers it has compromised are not just limited to industrial companies. The servers were hit in 2016 and 2017 with different intentions. Some were compromised to gain access to other resources or to be used as intermediaries to conduct attacks on other resources.

Others, including those hosting Russian websites, were used as watering holes.

It is a common tactic for Crouching Yeti to utilise watering hole attacks where the attackers inject websites with a link redirecting visitors to a malicious server.

“In the process of analysing infected servers, researchers identified numerous websites and servers used by organisations in Russia, US, Europe, Asia and Latin America that the attackers had scanned with various tools, possibly to find a server that could be used to establish a foothold for hosting the attackers’ tools and to subsequently develop an attack,” said the security specialists in a blog posting.

“The range of websites and servers that captured the attention of the intruders is extensive,” the firm said. “Kaspersky Lab researchers found that the attackers had scanned numerous websites of different types, including online stores and services, public organisations, NGOs, manufacturing, etc.

Kaspersky Lab said that the hackers used publicly available malicious tools, designed for analysing servers, and for seeking out and collecting information. The researchers also found a modified sshd file with a preinstalled backdoor. This was used to replace the original file and could be authorised with a ‘master password’.

“Crouching Yeti is a notorious Russian-speaking group that has been active for many years and is still successfully targeting industrial organisations through watering hole attacks, among other techniques,” explained Vladimir Dashchenko, head of vulnerability research group at Kaspersky Lab ICS CERT.

 

Russian government?

“Our findings show that the group compromised servers not only for establishing watering holes, but also for further scanning, and they actively used open-sourced tools that made it much harder to identify them afterwards,” he said.

“The group’s activities, such as initial data collection, the theft of authentication data, and the scanning of resources, are used to launch further attacks,” said Dashchenko. “The diversity of infected servers and scanned resources suggests the group may operate in the interests of the third parties.”

This may well tie into a similar conclusion from a rival security vendor.

In 2014 CrowdStrike claimed that the ‘Energetic Bear’ group was also tracked in Symantec's Dragonfly research and had been hacking foreign companies on behalf of the Russian state.

The security vendor had said the group had been carrying out attacks on foreign companies since 2012, with reports of breaches at U.S. power plants that underscored the campaign, and there was evidence that these operations were sanctioned by the Russian government.

Last month the United States for the first time publicly accused Russia in a condemnation of Russian grid hacking of attacks against the American power grid.

Symantec meanwhile warned last year of a resurgence in cyber attacks on European and US energy companies, including reports of access to U.S. utility control rooms that could result in widespread power outages.

And last July the UK’s National Cyber Security Centre (NCSC) acknowledged it was investigating a broad wave of attacks on companies in the British energy and manufacturing sectors.

 

Related News

View more

Sign Up for Electricity Forum’s Newsletter

Stay informed with our FREE Newsletter — get the latest news, breakthrough technologies, and expert insights, delivered straight to your inbox.

Electricity Today T&D Magazine Subscribe for FREE

Stay informed with the latest T&D policies and technologies.
  • Timely insights from industry experts
  • Practical solutions T&D engineers
  • Free access to every issue

Live Online & In-person Group Training

Advantages To Instructor-Led Training – Instructor-Led Course, Customized Training, Multiple Locations, Economical, CEU Credits, Course Discounts.

Request For Quotation

Whether you would prefer Live Online or In-Person instruction, our electrical training courses can be tailored to meet your company's specific requirements and delivered to your employees in one location or at various locations.