Kaspersky Lab Discovers Russian Hacker Infrastructure


russian hacking code

Electrical Testing & Commissioning of Power Systems

Our customized live online or in‑person group training can be delivered to your staff at your location.

  • Live Online
  • 12 hours Instructor-led
  • Group Training Available
Regular Price:
$599
Coupon Price:
$499
Reserve Your Seat Today

Crouching Yeti APT targets energy infrastructure with watering-hole attacks, compromising servers to steal credentials and stage intrusions; Kaspersky Lab links the Energetic Bear group to ICS threats across Russia, US, Europe, and Turkey.

 

Key Points

Crouching Yeti APT, aka Energetic Bear, is a threat group that targets energy firms using watering-hole attacks.

✅ Targets energy infrastructure via watering-hole compromises

✅ Uses open-source tools and backdoored sshd for persistence

✅ Scans global servers to stage intrusions and steal credentials

 

A hacker collective known for attacking industrial companies around the world have had some of their infrastructure identified by Russian security specialists.

Kaspersky Lab said that it has discovered a number of servers compromised by the group, belonging to different organisations based in Russia, the US, and Turkey, as well as European countries.

The Russian-speaking hackers, known as Crouching Yeti or Energetic Bear, mostly focus on energy facilities, as seen in reports of infiltration of the U.S. power grid targeting critical infrastructure, for the main purpose of stealing valuable data from victim systems.

 

Hacked servers

Crouching Yeti is described as an advanced persistent threat (APT) group that Kaspersky Lab has been tracking since 2010.

#google#

Kaspersky Lab said that the servers it has compromised are not just limited to industrial companies. The servers were hit in 2016 and 2017 with different intentions. Some were compromised to gain access to other resources or to be used as intermediaries to conduct attacks on other resources.

Others, including those hosting Russian websites, were used as watering holes.

It is a common tactic for Crouching Yeti to utilise watering hole attacks where the attackers inject websites with a link redirecting visitors to a malicious server.

“In the process of analysing infected servers, researchers identified numerous websites and servers used by organisations in Russia, US, Europe, Asia and Latin America that the attackers had scanned with various tools, possibly to find a server that could be used to establish a foothold for hosting the attackers’ tools and to subsequently develop an attack,” said the security specialists in a blog posting.

“The range of websites and servers that captured the attention of the intruders is extensive,” the firm said. “Kaspersky Lab researchers found that the attackers had scanned numerous websites of different types, including online stores and services, public organisations, NGOs, manufacturing, etc.

Kaspersky Lab said that the hackers used publicly available malicious tools, designed for analysing servers, and for seeking out and collecting information. The researchers also found a modified sshd file with a preinstalled backdoor. This was used to replace the original file and could be authorised with a ‘master password’.

“Crouching Yeti is a notorious Russian-speaking group that has been active for many years and is still successfully targeting industrial organisations through watering hole attacks, among other techniques,” explained Vladimir Dashchenko, head of vulnerability research group at Kaspersky Lab ICS CERT.

 

Russian government?

“Our findings show that the group compromised servers not only for establishing watering holes, but also for further scanning, and they actively used open-sourced tools that made it much harder to identify them afterwards,” he said.

“The group’s activities, such as initial data collection, the theft of authentication data, and the scanning of resources, are used to launch further attacks,” said Dashchenko. “The diversity of infected servers and scanned resources suggests the group may operate in the interests of the third parties.”

This may well tie into a similar conclusion from a rival security vendor.

In 2014 CrowdStrike claimed that the ‘Energetic Bear’ group was also tracked in Symantec's Dragonfly research and had been hacking foreign companies on behalf of the Russian state.

The security vendor had said the group had been carrying out attacks on foreign companies since 2012, with reports of breaches at U.S. power plants that underscored the campaign, and there was evidence that these operations were sanctioned by the Russian government.

Last month the United States for the first time publicly accused Russia in a condemnation of Russian grid hacking of attacks against the American power grid.

Symantec meanwhile warned last year of a resurgence in cyber attacks on European and US energy companies, including reports of access to U.S. utility control rooms that could result in widespread power outages.

And last July the UK’s National Cyber Security Centre (NCSC) acknowledged it was investigating a broad wave of attacks on companies in the British energy and manufacturing sectors.

 

Related News

Related News

EU Smart Meters Spur Growth in the Customer Analytics Market

EU Smart Meter Analytics integrates AMI data with grid edge platforms, enabling back-office efficiency, revenue assurance, and customer insights via cloud and PaaS solutions, while system integration cuts costs and improves utility performance.

 

Key Points

EU smart meter analytics uses AMI data and cloud to improve utility performance, revenue assurance, and outcomes.

✅ AMI underpins grid edge analytics and utility IT/OT integration

✅ Cloud and PaaS reduce costs and scale data-driven applications

✅ Focus shifts from meter rollout to back-office and revenue analytics

 

Europe's investment in smart meters has begun to open up the market for analytics that benefit both utilities and customers.

Two new reports from GTM Research demonstrate the substantial investment in both advanced metering infrastructure (AMI) and specific customer analytics segments -- the first report analyzes the progress of AMI deployment in Europe, while the second is a comprehensive assessment of analytics use cases, including AI in utility operations, enabled by or interacting with AMI.

The Third Energy Package mandated EU member states to perform a cost-benefit analysis to evaluate the economic viability of deploying smart meters and broader grid modernization costs across member states. Two-thirds of the member states found there was a net positive result, while seven members found negative or inconclusive results.

“The mandate spurred AMI deployment in the EU, but all member states are deploying some AMI. Even without an overall positive cost-benefit outcome, utilities found pockets of customers where there is a positive business case for AMI,” said Paulina Tarrant, research associate at GTM Research and lead author of “Racing to 2020: European Policy, Deployment and Market Share Primer.”

Annual AMI contracting peaked in 2013 -- two years after the mandate -- with 29 million contracted that year. Today, 100 million meters have been contracted overall. As member states reach their respective targets, the AMI market will cool in Europe and spending on analytics and applications will continue to ramp up, aligning with efforts to invest in smarter infrastructure across the sector, Tarrant noted.

Between 2017 and 2021, more than $30 billion will be spent on utility back-office and revenue-assurance analytics in the EU, reflecting the shift toward the digital grid architecture, according to GTM Research’s Grid Edge Customer Utility Analytics Ecosystems: Competitive Analysis, Forecasts and Case Studies.

The report examines the broad landscape of customer analytics showing how AMI interacts with the larger IT/OT environment of a utility.

“The benefits of AMI expand beyond revenue assurance -- in fact, AMI represents the backbone of many customer utility analytics and grid edge solutions,” said Timotej Gavrilovic, author of the Grid Edge Customer Utility Ecosystems report.

Integration is key, according to the report.

“Technology providers are integrating data sets, solutions and systems and partnering with others to provide a one-stop shop serving broad utility needs, increasing efficiencies and reducing costs,” Gavrilovic said. “Cloud-based deployments and platform-as-a-service offerings are becoming commonplace, creating an opportunity for utilities to balance the cost versus performance tradeoff to optimize their analytics systems and applications.”

A diverse array of customer analytics applications is a critical foundation for demonstrating the positive cost-benefit of AMI.

“Advanced analytics and applications are key to ensuring that AMI investments provide a positive return after smart meters are initiated,” said Tarrant. “Improved billing and revenue assurance was not enough everywhere to show customer benefit -- these analytics packages will leverage the distributed network infrastructure, including advanced inverters used with distributed energy resources, and subsequent increased data access, uniting the electricity markets of the EU.”

 

Related News

View more

Coal CEO blasts federal agency's decision on power grid

FERC Rejects Trump Coal Plan, denying subsidies for coal-fired and nuclear plants as energy policy shifts toward natural gas and renewables, citing no grid reliability threat and warning about electricity prices and market impacts.

 

Key Points

FERC unanimously rejected subsidies for coal and nuclear plants, finding no grid reliability risk from retirements.

✅ Unanimous FERC vote rejects coal and nuclear compensation

✅ Cites no threat to grid reliability from plant retirements

✅ Opponents warned subsidies would distort power markets and prices

 

A decision by an independent energy agency to reject the Trump administration’s electricity pricing plan to bolster the coal industry could lead to more closures of coal-fired power plants and the loss of thousands of jobs, a top coal executive said Tuesday.

Robert Murray, CEO of Ohio-based Murray Energy Corp., called the action by the Federal Energy Regulatory Commission “a bureaucratic cop-out” that will raise the cost of electricity and jeopardize the reliability and security of the nation’s electric grid.

“While FERC commissioners sit on their hands and refuse to take the action directed by Energy Secretary Rick Perry and President Donald Trump, the decommissioning of more coal-fired and nuclear plants could result, further jeopardizing the reliability, resiliency and security of America’s electric power grids,” Murray said. “It will also raise the cost of electricity for all Americans.”

The five-member energy commission voted unanimously Monday to reject Trump’s plan to reward nuclear and coal-fired power plants for adding reliability to the nation’s power grid. The plan would have made the plants eligible for billions of dollars in government subsidies and help reverse a tide of bankruptcies and loss of market share suffered by the once-dominant coal industry as utilities' shift to natural gas and renewable energy continues.

The Republican-controlled commission said there’s no evidence that any past or planned retirements of coal-fired power plants pose a threat to reliability of the nation’s electric grid.

Murray disputed that and said the recent cold snap that hit the East Coast showed coal’s value, as power users in the Southeast were asked to cut back on electricity usage because of a shortage of natural gas. “If it were not for the electricity generated by our nation’s coal-fired and nuclear power plants, we would be experiencing massive brownouts risk and blackouts in this country,” he said.

Murray Energy is the largest privately owned coal company in the United States, with mining operations in Ohio, Illinois, Kentucky, Utah and West Virginia. Robert Murray, a Trump friend and political supporter, has been pushing hard for federal assistance for his industry. The Associated Press reported last year that Murray asked the Trump administration to issue an emergency order protecting coal-fired power plants from closing. Murray warned that failure to act could cause thousands of coal miners to be laid off and force his largest customer, Ohio-based FirstEnergy Solutions, into bankruptcy.

Perry ultimately rejected Murray’s request, but later asked energy regulators to boost coal and nuclear plants as the administration moved to replace the Clean Power Plan with a more limited approach.

The plan drew widespread opposition from business and environmental groups that frequently disagree with each other, even as some coal and business interests backed the EPA's Affordable Clean Energy rule in court.

Jack Gerard, president and CEO of the American Petroleum Institute, said Tuesday that the Trump plan was “far too narrow” in its focus on power sources that maintain a 90-day fuel supply.

API, the largest lobbying group for oil and gas industry, supports coal and other energy sources, Gerard said, “but we should not put our eggs in an individual basket defined as a 90-day fuel supply (while) unnecessarily intervening in private markets.”

 

Related News

View more

Despite delays, BC Hydro says crews responded well to 'atypical' storm

BC Hydro Ice Storm Response to Fraser Valley power outages highlights freezing rain impacts, round the clock crews, infrastructure challenges, and climate change risks across the Lower Mainland during winter weather and restoration efforts.

 

Key Points

A plan for freezing rain events that prioritizes safety, rapid repairs, and clear communication to restore power.

✅ Prioritizes hazards, critical loads, and public safety first

✅ Deploys crews, contractors, and equipment across affected areas

✅ Addresses climate risks without costly undergrounding expansion

 

Call it the straw that broke the llama's back.

The loss of power during recent Fraser Valley ice storms meant Jennifer Quick, who lives on a Mission farm, had no running water, couldn't cook with appliances and still had to tend to a daughter sick with stomach flu.

As if that wasn't enough, she had to endure the sight of her shivering llamas.

"I brought them outside at one point and when I brought them back in, they had icicles on their fur," she said, adding the animals stayed in the warmth of their barn from then on.

For three and a half days, Quick and her family were among more than 160,000 BC Hydro customers in the Fraser Valley left in the dark after ice storms whipped through the region.

BC Hydro expects to get all customers back online Tuesday, five days after the storm hit.

And with another storm possibly on the horizon, the utility is defending its response to the treacherous weather, noting that windstorm power outages can be widespread.

BC Hydro spokesperson Mora Scott said the utility has a "best in class" storm response system, similar to PG&E winter storm prep in the U.S.

"In a typical storm situation we normally have 95 per cent of our customers back up within 24 hours. Ice storms are different and obviously this was an atypical storm for us," she said.

Scott said that in this case, the utility got power back on for 75 per cent of customers within 24 hours. It took the work of 450 employees called in from around B.C., working around the clock, a mobilization echoed by Sudbury Hydro crews after a storm, she said.

The work was complicated by trees falling near crews, icy roads, low visibility and even substations so frozen over the ice had to be melted off with blowtorches.

She said that in the long term, BC Hydro has no plans to make changes to how it responds to extreme ice storms or how infrastructure is built.

"Seeing ice build up in the Lower Mainland like this is a rare event," she said. "So to build for extremes like that probably doesn't make a lot of sense."

 

Climate change will bring storms

But CBC meteorologist Johanna Wagstaffe said that might not always be the case as climate change continues to impact our planet.

"The less severe winter events, like light snowfall, will happen less often," she said. "But the disruptive events — like last week's storm — will actually happen more often and we are already seeing this shift happen."

Marc Eliesen, a former CEO of BC Hydro in the early 1990s, said the utility needs to keep that in mind when planning for worst-case scenarios.

"This [storm] is a condition characteristic of the weather in the east, particularly in Ontario and Quebec, where freezing rain outages in Quebec are more common, which is organized to deal with freezing rain and heavy snow on the lines," he said. "This is a new phenomenon for British Columbia."

Eliesen questions whether BC Hydro has adequate equipment and crew training to deal with ice storms if they become more frequent, pointing to Hydro One storm restoration in Ontario as a comparison.

 

'Always something we can learn'

Scott disagrees with some of Eliesen's points.

She said some of the crews called in to deal with the recent storm come from northern B.C. and the Interior and have plenty of experience with snow.

"There's always something we can learn in every major storm situation," she said.

The idea of putting power lines underground was raised by some CBC readers and listeners, but Scott said running underground lines is five to 10 times the cost of running lines on pole, so it is done sparingly. Besides, equipment like substations and transmission lines need to be kept aboveground.

Meanwhile, Wagstaffe said that beginning Thursday, wintry weather could return to the Lower Mainland.

 

Related News

View more

Electric Utilities Plot Bullish Course for EV Charging Infrastructure

EV Charging Infrastructure Incentives are expanding as utilities fund public chargers, Level 2 networks, DC fast charging, grid-managed off-peak programs, and equitable access across Ohio, New Jersey, and Florida to accelerate clean transportation.

 

Key Points

Utility-backed programs funding Level 2 and DC fast chargers, managing grid demand, and expanding EV equity.

✅ Incentives for Level 2 and DC fast public charging stations.

✅ Grid-friendly off-peak charging to balance demand.

✅ Equity targets place chargers in low-income communities.

 

Electric providers in Florida, Ohio and New Jersey recently announced plans to expand electric vehicle charging networks and infrastructure through various incentive programs that could add thousands of new public chargers in the next several years.

Elsewhere, utilities are advancing similar efforts, with Michigan EV programs proposing more than $20 million for charging infrastructure to accelerate adoption.

American Electric Power in Ohio will offer nearly $10 million in incentives toward the build out of 375 EV charging stations throughout the company's service territory, which largely includes Columbus.

Meanwhile, the Public Service Electric and Gas Company (PSE&G), an electric utility provider in New Jersey, has proposed a six-year plan to support the development of nearly 40,000 electric vehicle chargers across a wide range of customers and sectors, said Francis Sullivan, a spokesperson for PSE&G.

And Duke Energy in Florida is installing up to 530 EV charging stations across its service area, as part of its Park and Plug pilot program, which will be making the charging ports available in multifamily housing complexes, workplaces and other high traffic areas.

"We are bringing cleaner energy to Florida through 700 megawatts of new universal solar, and we are helping our customers to bring clean transportation to the state as well," Catherine Stempien, Duke Energy Florida president, said in a statement. "We are committed to providing smarter, cleaner energy alternatives for all our customers."

The project in Ohio is making incentive funding available to government organizations, multifamily housing developments and workplaces, covering from 50 percent to all of the costs. The plan, to be rolled out in the next four years, aims to incentivize the development of 300 level-two chargers and 75 "fast chargers" capable of charging a car's battery in minutes rather than hours.

"I think what's interesting about what we're seeing now in the industry is that electric vehicles and electric vehicle charging are expanding beyond California, and like other Pacific Coast states," said Scott Fisher, vice president of marketing at Greenlots, maker of car chargers and software. Greenlots has been selected as one of the companies to provide the chargers for the AEP project.

California has occupied the lion's share of the electric vehicle market, making up about 5 percent of the cars on the state's highways. The U.S. market sits at about 1.5 percent. However, indications show the EV boom may be set to take off as more models are being rolled out, and prices are making the electric cars more competitive with their gas-powered counterparts. The group Securing America's Future Energy (SAFE) announced the one-millionth electric vehicle is on course to be sold in the United States this month.

In a statement, Ben Prochazka, vice president of the Electrification Coalition, an EV advocacy group, called this "a major milestone and brings us one step closer to reducing our transportation system's dependence on oil. This is a direct result of the tireless efforts by communities and advocates throughout the 'EV ecosystem.'"

In New Jersey, PSE&G's efforts -- which are part of the company's proposed Clean Energy Future program -- will not only focus on building out the charging infrastructure, but structure car recharging to control charging and encourage residents to charge their cars during off-peak times.

"For now, with a modest number of charging stations in the market, it's not a huge problem. But over time, as you're putting in many thousands of these stations, what you want to make sure is that those stations are operating in sync with state power grids, where you don't have people all charging at the same time at like 5 p.m. on a hot summer day," said Fisher.

PSE&G also plans to offer incentives to encourage the development of level-two chargers and DC fast-chargers, as well as "provide grants and incentives for 100 electric school buses and EV charging infrastructure at school districts in PSE&G's service territory," said Sullivan.

"PSE&G will also help fund electrification projects at customer locations such as ports, airports and transit facilities," Sullivan added, via email.

Utilities and transportation planners are also keeping the concept of equity in mind -- to ensure EVs are adopted by more than just the Tesla owner -- and will also focus on placing infrastructure in low-income areas.

"Ten percent of the stations will be in low income areas, defined by census blocks," said Scott Blake, a communications consultant at AEP in Columbus.

Duke Energy also announced 10 percent of the chargers it is installing in Florida will be in "income-qualified communities," according to a company press release.

 

Related News

View more

Americans Keep Using Less and Less Electricity

U.S. Electricity Demand Decoupling signals GDP growth without higher load, driven by energy efficiency, LED adoption, services-led output, and rising renewables integration with the grid, plus EV charging and battery storage supporting decarbonization.

 

Key Points

GDP grows as electricity use stays flat, driven by efficiency, renewables, and a shift toward services and output.

✅ LEDs and codes cut residential and commercial load intensity.

✅ Wind, solar, and gas gain share as coal and nuclear struggle.

✅ EVs and storage can grow load and enable grid decarbonization.

 

By Justin Fox

Economic growth picked up a little in the U.S. in 2017. But electricity use fell, with electricity sales projections continuing to decline, according to data released recently by the Energy Information Administration. It's now been basically flat for more than a decade:


 

Measured on a per-capita basis, electricity use is in clear decline, and is already back to the levels of the mid-1990s.

 


 

Sources: U.S. Energy Information Administration, U.S. Bureau of Economic Analysis

*Includes small-scale solar generation from 2014 onward

 

I constructed these charts to go all the way back to 1949 in part because I can (that's how far back the EIA data series goes) but also because it makes clear what a momentous change this is. Electricity use rose and rose and rose and then ... it didn't anymore.

Slower economic growth since 2007 has been part of the reason, but the 2017 numbers make clear that higher gross domestic product no longer necessarily requires more electricity, although the Iron Law of Climate is often cited to suggest rising energy use with economic growth. I wrote a column last year about this big shift, and there's not a whole lot new to say about what's causing it: mainly increased energy efficiency (driven to a remarkable extent by the rise of LED light bulbs), and the continuing migration of economic activity away from making tangible things and toward providing services and virtual products such as games and binge-watchable TV series (that are themselves consumed on ever-more-energy-efficient electronic devices).

What's worth going over, though, is what this means for those in the business of generating electricity. The Donald Trump administration has made saving coal-fired electric plants a big priority; the struggles of nuclear power plants have sparked concern from multiple quarters. Meanwhile, U.S. natural gas production has grown by more than 40 percent since 2007, thanks to hydraulic fracturing and other new drilling techniques, while wind and solar generation keep making big gains in cost and market share. And this is all happening within the context of a no-growth electricity market.

In China, a mystery in China's electricity data has complicated global comparisons.

 

Here are the five main sources of electric power in the U.S.:


 

The big story over the past decade has been coal and natural gas trading places as the top fuel for electricity generation. Over the past year and a half coal regained some of that lost ground as natural gas prices rose from the lows of early 2016. But with overall electricity use flat and production from wind and solar on the rise, that hasn't translated into big increases in coal generation overall.

Oh, and about solar. It's only a major factor in a few states (California especially), so it doesn't make the top five. But it's definitely on the rise.

 

 

What happens next? For power generators, the best bet for breaking out of the current no-growth pattern is to electrify more of the U.S. economy, especially transportation. A big part of the attraction of electric cars and trucks for policy-makers and others is their potential to be emissions-free. But they're only really emissions-free if the electricity used to charge them is generated in an emissions-free manner -- creating a pretty strong business case for continuing "decarbonization" of the electric industry. It's conceivable that electric car batteries could even assist in that decarbonization by storing the intermittent power generated by wind and solar and delivering it back onto the grid when needed.

I don't know exactly how all this will play out. Nobody does. But the business of generating electricity isn't going back to its pre-2008 normal. 

 

Related News

View more

Federal government spends $11.8M for smart grid technology in Sault Ste. Marie

Sault Ste. Marie Smart Grid Investment upgrades PUC Distribution infrastructure with federal funding, clean energy tech, outage reduction, customer insights, and reliability gains, creating 140 jobs and attracting industry to a resilient, efficient grid.

 

Key Points

A federally funded PUC Distribution project to modernize the citywide grid, cut outages, boost efficiency, and create jobs.

✅ $11.8M federal funding to PUC Distribution

✅ Citywide smart grid cuts outages and energy loss

✅ 140 jobs; attracts clean tech and industry

 

PUC Distribution Inc. in Sault Ste. Marie is receiving $11.8 million from the federal government to invest in infrastructure, as utilities nationwide have faced pandemic-related losses that underscore the need for resilient systems.

The MP for the riding, Terry Sheehan, made the announcement on Monday.

The money will go to the utility's smart grid project, where technologies like a centralized SCADA system can enhance situational awareness and control.

"This smart grid project offers a glimpse into our clean energy future and represents a new wave of economic activity for the region," Sheehan said.

"Along with job creation, new industries will be attracted to a modern grid, supported by stable electricity pricing that helps competitiveness, all while helping the environment."

His office says the investment will allow the utility to reduce outages, provide more information to customers to help make smarter electricity use choices, aligned with Ontario's energy-efficiency programs that encourage conservation, and offer more services.

"This is an innovative project that makes Sault Ste. Marie a leader," mayor Christian Provenzano said.

"We will be the first city in our country to implement a community-wide smart grid. Once it is complete, the smart grid will make our energy infrastructure more reliable, reduce energy loss and lead to a more innovative economy for our community."

The project will also create 140 new jobs.

"As a community-focused utility, we are always looking for innovative ways to help our customers save money amid concerns about hydro disconnections during winter, and reduce their carbon footprint," Rob Brewster, president and CEO of PUC Distribution said.

"The investment the government has made in our community will not only help modernize our city's electrical distribution system [as] once the project is complete, Sault Ste. Marie will have access to an electricity grid that can handle the growing demands of a city in the 21st century."

 

Related News

View more

Sign Up for Electricity Forum’s Newsletter

Stay informed with our FREE Newsletter — get the latest news, breakthrough technologies, and expert insights, delivered straight to your inbox.

Electricity Today T&D Magazine Subscribe for FREE

Stay informed with the latest T&D policies and technologies.
  • Timely insights from industry experts
  • Practical solutions T&D engineers
  • Free access to every issue

Download the 2025 Electrical Training Catalog

Explore 50+ live, expert-led electrical training courses –

  • Interactive
  • Flexible
  • CEU-cerified