Russians hacked into US electric utilities: 6 essential reads


russian hackers

CSA Z462 Arc Flash Training - Electrical Safety Essentials

Our customized live online or in‑person group training can be delivered to your staff at your location.

  • Live Online
  • 6 hours Instructor-led
  • Group Training Available
Regular Price:
$249
Coupon Price:
$199
Reserve Your Seat Today

U.S. power grid cyberattacks expose critical infrastructure to Russian hackers, DHS warns, targeting SCADA, smart grid sensors, and utilities; NERC CIP defenses, microgrids, and resilience planning aim to mitigate outages and supply chain disruptions.

 

Key Points

U.S. power grid cyberattacks target utility control systems, risking outages, disruption, requiring stronger defenses.

✅ Russian access to utilities and SCADA raises outage risk

✅ NERC CIP, DHS, and utilities expand cyber defenses

✅ Microgrids and renewables enhance resilience, islanding capability

 

The U.S. Department of Homeland Security has revealed that Russian government hackers accessed control rooms at hundreds of U.S. electrical utility companies, gaining far more access to the operations of many more companies than previously disclosed by federal officials.

Securing the electrical grid, upon which is built almost the entirety of modern society, is a monumental challenge. Several experts have explained aspects of the task, potential solutions and the risks of failure for The Conversation:

 

1. What’s at stake?

The scale of disruption would depend, in part, on how much damage the attackers wanted to do. But a major cyberattack on the electricity grid could send surges through the grid, much as solar storms have done.

Those events, explains Rochester Institute of Technology space weather scholar Roger Dube, cause power surges, damaging transmission equipment. One solar storm in March 1989, he writes, left “6 million people without power for nine hours … [and] destroyed a large transformer at a New Jersey nuclear plant. Even though a spare transformer was nearby, it still took six months to remove and replace the melted unit.”

More serious attacks, like larger solar storms, could knock out manufacturing plants that build replacement electrical equipment, gas pumps to fuel trucks to deliver the material and even “the machinery that extracts oil from the ground and refines it into usable fuel. … Even systems that seem non-technological, like public water supplies, would shut down: Their pumps and purification systems need electricity.”

In the most severe cases, with fuel-starved transportation stalled and other basic infrastructure not working, “[p]eople in developed countries would find themselves with no running water, no sewage systems, no refrigerated food, and no way to get any food or other necessities transported from far away. People in places with more basic economies would also be without needed supplies from afar.”

 

2. It wouldn’t be the first time

Russia has penetrated other countries’ electricity grids in the past, and used its access to do real damage. In the middle of winter 2015, for instance, a Russian cyberattack shut off the power to Ukraine’s capital in the middle of winter 2015.

Power grid scholar Michael McElfresh at Santa Clara University discusses what happened to cause hundreds of thousands of Ukrainians to lose power for several hours, and notes that U.S. utilities use software similar to their Ukrainian counterparts – and therefore share the same vulnerabilities.

 

3. Security work is ongoing

These threats aren’t new, write grid security experts Manimaran Govindarasu from Iowa State and Adam Hahn from Washington State University. There are a lot of people planning defenses, including the U.S. government, as substation attacks are growing across the country. And the “North American Electric Reliability Corporation, which oversees the grid in the U.S. and Canada, has rules … for how electric companies must protect the power grid both physically and electronically.” The group holds training exercises in which utility companies practice responding to attacks.

 

4. There are more vulnerabilities now

Grid researcher McElfresh also explains that the grid is increasingly complex, with with thousands of companies responsible for different aspects of generating, transmission, and delivery to customers. In addition, new technologies have led companies to incorporate more sensors and other “smart grid” technologies. He describes how that, as a recent power grid report card underscores, “has created many more access points for penetrating into the grid computer systems.”

 

5. It’s time to ramp up efforts

The depth of access and potential control over electrical systems means there has never been a better time than right now to step up grid security amid a renewed focus on protecting the grid among policymakers and utilities, writes public-utility researcher Theodore Kury at the University of Florida. He notes that many of those efforts may also help protect the grid from storm damage and other disasters.

 

6. A possible solution could be smaller grids

One protective effort was identified by electrical engineer Joshua Pearce at Michigan Technological University, who has studied ways to protect electricity supplies to U.S. military bases both within the country and abroad. He found that the Pentagon has already begun testing systems, as the military ramps up preparation for major grid hacks, that combine solar-panel arrays with large-capacity batteries. “The equipment is connected together – and to buildings it serves – in what is called a ‘microgrid,’ which is normally connected to the regular commercial power grid but can be disconnected and become self-sustaining when disaster strikes.”

He found that microgrid systems could make military bases more resilient in the face of cyberattacks, criminals or terrorists and natural disasters – and even help the military “generate all of its electricity from distributed renewable sources by 2025 … which would provide energy reliability and decrease costs, [and] largely eliminate a major group of very real threats to national security.”

Related News

Dutch produce more green electricity but target still a long way off

Netherlands renewable energy progress highlights rising wind energy and solar power output, delivering 17 billion kWh of green electricity from sustainable sources, yet trailing EU targets, with wind providing 60% and solar 34%.

 

Key Points

It is the country's growth in green electricity, led by wind and solar, yet short of EU targets at 13.8% of generation.

✅ 17 billion kWh green output; 13.8% of total generation

✅ Wind energy up 16% to 9.6 billion kWh; 60% of green power

✅ Solar power up about 13%; 34% of renewable production

 

The Netherlands is generating more electricity from sustainable sources as US renewable record 28% in April underscores broader momentum but is still far from reaching its targets, the national statistics office CBS said on Friday.

In total, the Netherlands produced 17 billion kilowatts of green energy last year, a rise of 10% on 2016. Sustainable sources now account for 13.8 per cent of energy generation, even as solar reshapes prices in Northern Europe across the region.

The biggest growth was in wind energy – up 16 per cent to 9.6 billion kWh – or the equivalent of energy for three million households. Wind energy now accounts for 60 per cent of green Dutch power. The amount of solar power, which accounts for 34% of green energy production, rose almost 13 per cent, and Dutch solar outpaces Canada according to recent reports.

In January, European statistics agency Eurostat said the Netherlands is near the bottom of a new table on renewable energy use in Europe. The EU has a target of a fifth of all energy use from green sources by 2020 and – while some countries have reached their own targets, including Germany's 50% clean power milestones – the Dutch, French and Irish need to increase their rates by at least 6%, Eurostat said, and Ireland has set green electricity goals for the next four years to close the gap.

 

Related News

View more

Federal government spends $11.8M for smart grid technology in Sault Ste. Marie

Sault Ste. Marie Smart Grid Investment upgrades PUC Distribution infrastructure with federal funding, clean energy tech, outage reduction, customer insights, and reliability gains, creating 140 jobs and attracting industry to a resilient, efficient grid.

 

Key Points

A federally funded PUC Distribution project to modernize the citywide grid, cut outages, boost efficiency, and create jobs.

✅ $11.8M federal funding to PUC Distribution

✅ Citywide smart grid cuts outages and energy loss

✅ 140 jobs; attracts clean tech and industry

 

PUC Distribution Inc. in Sault Ste. Marie is receiving $11.8 million from the federal government to invest in infrastructure, as utilities nationwide have faced pandemic-related losses that underscore the need for resilient systems.

The MP for the riding, Terry Sheehan, made the announcement on Monday.

The money will go to the utility's smart grid project, where technologies like a centralized SCADA system can enhance situational awareness and control.

"This smart grid project offers a glimpse into our clean energy future and represents a new wave of economic activity for the region," Sheehan said.

"Along with job creation, new industries will be attracted to a modern grid, supported by stable electricity pricing that helps competitiveness, all while helping the environment."

His office says the investment will allow the utility to reduce outages, provide more information to customers to help make smarter electricity use choices, aligned with Ontario's energy-efficiency programs that encourage conservation, and offer more services.

"This is an innovative project that makes Sault Ste. Marie a leader," mayor Christian Provenzano said.

"We will be the first city in our country to implement a community-wide smart grid. Once it is complete, the smart grid will make our energy infrastructure more reliable, reduce energy loss and lead to a more innovative economy for our community."

The project will also create 140 new jobs.

"As a community-focused utility, we are always looking for innovative ways to help our customers save money amid concerns about hydro disconnections during winter, and reduce their carbon footprint," Rob Brewster, president and CEO of PUC Distribution said.

"The investment the government has made in our community will not only help modernize our city's electrical distribution system [as] once the project is complete, Sault Ste. Marie will have access to an electricity grid that can handle the growing demands of a city in the 21st century."

 

Related News

View more

French Price-Fixing Probe: Schneider, Legrand, Rexel, and Sonepar Fined

French Antitrust Fines for Electrical Cartel expose price fixing by Schneider Electric, Legrand, Rexel, and Sonepar, after a Competition Authority probe into electrical distribution, collusion, and compliance breaches impacting market competition and customers.

 

Key Points

Penalties on Schneider Electric, Legrand, Rexel, and Sonepar for electrical price fixing, upholding competition law.

✅ Competition Authority fined four major suppliers.

✅ Collusion raised prices across construction and industry.

✅ Firms bolster compliance programs and training.

 

In a significant crackdown on corporate malfeasance, French authorities have imposed hefty fines on four major electrical equipment companies—Schneider Electric, Legrand, Rexel, and Sonepar—after concluding a price-fixing investigation. The total fines amount to approximately €500 million, underscoring the seriousness with which regulators are addressing anti-competitive practices in the electrical distribution sector, even as France advances a new electricity pricing scheme to address EU concerns.

Background of the Investigation

The probe, initiated by France’s Competition Authority, sought to uncover collusion among these leading firms regarding the pricing of electrical equipment and services between 2005 and 2012. This investigation is part of a broader initiative to promote fair competition within the market, as Europe prepares to revamp its electricity market to bolster transparency, ensuring that consumers and businesses alike benefit from competitive pricing and innovative products.

The inquiry revealed that these companies had engaged in illicit agreements to fix prices and coordinate their market strategies, limiting competition in a sector critical to both the economy and infrastructure. The findings indicated that the collusion not only stifled competition but also led to inflated prices for customers, illustrating why rolling back electricity prices is often more complex than it appears for customers across various sectors, from construction to manufacturing.

The Fines Imposed

Following the conclusion of the investigation, the fines levied against the companies were substantial. Schneider Electric faced the largest penalty, receiving a fine of €220 million, while Legrand was fined €150 million. Rexel and Sonepar were each fined €70 million and €50 million, respectively. These financial penalties serve as a deterrent to other companies that might consider engaging in similar practices, reinforcing the message that anti-competitive behavior will not be tolerated.

The fines are particularly significant given the size and influence of these companies within the electrical equipment market. Their combined revenues amount to billions of euros annually, making the repercussions of their actions far-reaching. As major players in the industry, their pricing strategies have a direct impact on numerous sectors, from residential construction to large-scale industrial projects.

Industry Reactions

The response from the affected companies has varied. Schneider Electric expressed its commitment to compliance and transparency, acknowledging the importance of adhering to competition laws, amid ongoing EU electricity reform debates that influence market expectations.

Legrand also emphasized its commitment to fair competition, noting that it has taken steps to enhance its compliance framework in response to the investigation. Rexel and Sonepar similarly reaffirmed their dedication to ethical business practices and their intention to cooperate with regulators in the future.

Industry experts have pointed out that these fines, while significant, may not be enough to deter large corporations from engaging in similar behavior unless accompanied by a broader cultural shift within the industry. There is a growing call for enhanced oversight and stricter penalties to ensure that companies prioritize ethical conduct over short-term profits.

Implications for the Market

The fines imposed on Schneider, Legrand, Rexel, and Sonepar could have broader implications for the electrical equipment market and beyond. They signal to other companies within the sector that regulatory bodies are vigilant, even as nine EU countries oppose electricity market reforms proposed as fixes for price spikes, and willing to take decisive action against anti-competitive practices. This could foster a more competitive environment, ultimately benefiting consumers through better prices and enhanced product offerings.

Moreover, the case highlights the importance of regulatory bodies in maintaining fair market conditions. As industries evolve, ongoing vigilance from competition authorities will be necessary to prevent similar instances of collusion and ensure that markets remain competitive and innovative, as seen when New York opened a formal review of retail energy markets.

The recent fines imposed on Schneider Electric, Legrand, Rexel, and Sonepar mark a significant moment in France's ongoing battle against corporate price-fixing and anti-competitive practices, occurring as the government and EDF reached a deal on electricity prices to balance market pressures. With total penalties exceeding €500 million, the investigation underscores the commitment of French authorities to uphold market integrity and protect consumer interests.

As the industry reflects on these developments, it remains crucial for companies to prioritize compliance and ethical business practices. The ultimate goal is to create an environment where competition thrives, innovation flourishes, and consumers benefit from fair pricing. This case serves as a reminder that transparency and accountability are vital in maintaining the health of any market, particularly one as essential as the electrical equipment sector.

 

Related News

View more

Why Is Georgia Importing So Much Electricity?

Georgia Electricity Imports October 2017 surged as hydropower output fell and thermal power plants underperformed; ESCO balanced demand via low-cost imports, mainly from Azerbaijan, amid rising tariffs, kWh consumption growth, and a widening generation-consumption gap.

 

Key Points

They mark a record import surge due to costly local generation, lower hydropower, ESCO balancing costs, and rising demand.

✅ Imports rose 832% YoY to 157 mln kWh, mainly from Azerbaijan

✅ TPP output fell despite capacity; only low-tariff plants ran

✅ Balancing price 13.8 tetri/kWh signaled costly domestic PPAs

 

In October 2017, Georgian power plants generated 828 mln. KWh of electricity, marginally up (+0.79%) compared to September. Following the traditional seasonal pattern and amid European concerns over dispatchable power shortages affecting markets, the share of electricity produced by renewable sources declined to 71% of total generation (87% in September), while thermal power generation’s share increased, accounting for 29% of total generation (compared to 13% in September). When we compare last October’s total generation with the total generation of October 2016, however, we observe an 8.7% decrease in total generation (in October 2016, total generation was 907 mln. kWh). The overall decline in generation with respect to the previous year is due to a simultaneous decline in both thermal power and hydro power generation. 

Consumption of electricity on the local market in the same period was 949 mln. kWh (+7% compared to October 2016, and +3% with respect to September 2017), and reflected global trends such as India's electricity growth in recent years. The gap between consumption and generation increased to 121 mln. kWh (15% of the amount generated in October), up from 100 mln. kWh in September. Even more importantly, the situation was radically different with respect to the prior year, when generation exceeded consumption.

The import figure for October was by far the highest from the last 12 years (since ESCO was established), occurring as Ukraine electricity exports resumed regionally, highlighting wider cross-border dynamics. In October 2017, Georgia imported 157 mln. kWh of electricity (for 5.2 ¢/kWh – 13 tetri/kWh). This constituted an 832% increase compared to October 2016, and is about 50% larger than the second largest import figure (104.2 mln. kWh in October 2014). Most of the October 2017 imports (99.6%) came from Azerbaijan, with the remaining 0.04% coming from Russia.

The main question that comes to mind when observing these statistics is: why did Georgia import so much? One might argue that this is just the result of a bad year for hydropower generation and increased demand. This argument, however, is not fully convincing. While it is true that hydropower generation declined and demand increased, the country’s excess demand could have been easily satisfied by its existing thermal power plants, even as imported coal volumes rose in regional markets. Instead of increasing, however, the electricity coming from thermal power plants declined as well. Therefore, that cannot be the reason, and another must be found. The first that comes to mind is that importing electricity may have been cheaper than buying it from local TPPs, or from other generators selling electricity to ESCO under power purchase agreements (PPAs). We can test the first part of this hypothesis by comparing the average price of imported electricity to the price ceiling on the tariff that TPPs can charge for the electricity they sell. Looking at the trade statistics from Geostat, the average price for imported electricity in October 2017 remained stable with respect to the same month of the previous year, at 5.2 ¢ (13 tetri) per kWh. Only two thermal power plants (Gardabani and Mtkvari) had a price ceiling below 13 tetri per kWh. Observing the electricity balance of Georgia, we see that indeed more than 98% of the electricity generated by TPPs in October 2017 was generated by those two power plants.

What about other potential sources of electricity amid Central Asia's power shortages at the time? To answer this question, we can use the information derived from the weighted average price of balancing electricity. Why balancing electricity? Because it allows us to reconstruct the costs the market operator (ESCO) faced during the month of October to make sure demand and supply were balanced, and it allows us to gain an insight about the price of electricity sold through PPAs.

ESCO reports that the weighted average price of balancing electricity in October 2017 was 13.8 tetri/kWh, (25% higher than in October 2016, when it was below the average weighted cost of imports – 11 vs. 13 – and when the quantity of imported electricity was substantially smaller). Knowing that in October 2017, 61% of balancing electricity came from imports, while 39% came from hydropower and wind power plants selling electricity to ESCO under their PPAs, we can deduce that in this case, internal generation was (on average) also substantially more expensive than imports. Therefore, the high cost of internally generated electricity, rather than the technical impossibility of generating enough electricity to satisfy electricity demand, indeed appears to be one the main reasons why electricity imports spiked in October 2017.

 

Related News

View more

The Rise of Data Centers in Alberta

Alberta Data Centers fuel the digital economy with cloud computing, AI, and streaming, leveraging renewable energy and low-cost power; yet grid capacity, sustainability, efficient cooling, and regulatory frameworks remain critical considerations for reliable growth.

 

Key Points

Alberta facilities for cloud, AI, and digital services, balancing energy demand, renewable power, and grid reliability.

✅ Low electricity costs and renewables attract hyperscale builds

✅ Grid upgrades needed to meet rising, 24/7 workloads and cooling

✅ Workforce training aligns with IT, HVAC, and electrical roles

 

As Alberta continues to evolve its energy landscape, the recent surge in data center projects is making headlines. With companies investing heavily in this sector, Alberta is positioning itself as a key player in the digital economy. This trend, however, brings both opportunities and challenges that need careful consideration.

The Digital Economy Boom

Data centers are essential for supporting the growing demands of the digital economy, which includes everything from cloud computing to streaming services and artificial intelligence. As businesses increasingly rely on digital infrastructure, the need for reliable and efficient data centers has skyrocketed. Alberta has become an attractive destination for these facilities due to its relatively low electricity costs, abundant renewable energy resources, and favorable regulatory environment, according to a 2023 clean grids outlook that highlighted the province.

The influx of major tech companies establishing data centers in Alberta not only promises job creation but also contributes to the provincial economy. With investments pouring in, local businesses may see increased opportunities for partnerships, supplies, and services, ultimately benefiting the broader economic landscape, though proposed market changes could influence procurement and siting decisions.

Energy Demand and Infrastructure

While the growth of data centers can drive economic benefits, it also raises important questions about energy demand and infrastructure capacity, questions that have intensified since Kenney-era electricity changes in the sector. Data centers are energy-intensive, often requiring significant amounts of electricity to operate and cool their servers. As these facilities multiply, they will place additional pressure on Alberta's power grid.

The province has made strides in transitioning to renewable energy sources, with a defined path to clean electricity that aligns well with the goals of many data center operators seeking to reduce their carbon footprint. However, the challenge lies in ensuring that the electricity grid can meet the increasing demand without compromising reliability. The integration of more renewable energy into the grid requires careful planning and investment in infrastructure to handle variable supply and maintain a stable energy flow.

Environmental Concerns

The environmental implications of expanding data centers are also a point of concern. While many tech companies prioritize sustainability and aim for carbon neutrality, the reality is that increased energy consumption can contribute to greenhouse gas emissions if not managed properly, especially when regional export restrictions constrain low-carbon power flows. Alberta’s reliance on fossil fuels for a significant portion of its energy supply raises questions about how these data centers will impact the province's climate goals.

To address these concerns, there is a need for policies that encourage the use of renewable energy sources specifically for data center operations. Incentives for companies to invest in green technologies, such as energy-efficient cooling systems or on-site renewable energy generation, could help mitigate the environmental impact.

Workforce Development

Another critical aspect of this data center boom is the potential for job creation. Data centers require a range of skilled workers, from IT professionals to engineers and maintenance staff. However, there is a pressing need for workforce development initiatives to ensure that Albertans are equipped with the necessary skills to fill these roles.

Educational institutions and training programs must adapt to the changing demands of the job market. Collaborations between tech companies and local colleges can foster specialized training programs that prepare workers for careers in this evolving sector. By investing in workforce development, Alberta can maximize the benefits of data center growth while ensuring that its residents are prepared for the jobs of the future.

The Future of Alberta's Data Center Landscape

Looking ahead, Alberta’s data center landscape is poised for continued growth. The province's commitment to diversifying its economy, coupled with its abundant energy resources, makes it an appealing choice for tech companies. However, as the industry expands, careful consideration must be given to energy management, environmental impact, and workforce readiness, especially as Alberta changes how it produces and pays for electricity.

Regulatory frameworks will play a crucial role in shaping the future of data centers in Alberta, as the province pursues a market overhaul that could affect costs and reliability. Policymakers will need to balance the interests of businesses, environmental concerns, and the need for a reliable energy supply. By creating a supportive environment for innovation while addressing these challenges, Alberta can emerge as a leader in the digital economy.

The rise of data centers in Alberta marks an exciting chapter in the province's economic evolution. With the potential for job creation, technological advancement, and economic diversification, the opportunities are significant. However, it is essential to navigate the associated challenges thoughtfully. By prioritizing sustainability, infrastructure investment, and workforce development, Alberta can harness the full potential of this burgeoning sector, positioning itself as a key player in the global digital landscape.

 

Related News

View more

Symantec Proves Russian

Dragonfly energy sector cyberattacks target ICS and SCADA across critical infrastructure, including the power grid and nuclear facilities, using spearphishing, watering-hole sites, supply-chain compromises, malware, and VPN exploits to gain operational access.

 

Key Points

Dragonfly APT campaigns target energy firms and ICS to gain grid access, risking manipulation and service disruption.

✅ Breaches leveraged spearphishing, watering-hole sites, and supply chains.

✅ Targeted ICS, SCADA, VPNs to pivot into operational networks.

✅ Aimed to enable power grid manipulation and potential outages.

 

An October, 2017 report by researchers at Symantec Corp., cited by the U.S. government, has linked recent US power grid cyber attacks to a group of hackers it had code-named "Dragonfly", and said it found evidence critical infrastructure facilities in Turkey and Switzerland also had been breached.

The Symantec researchers said an earlier wave of attacks by the same group starting in 2011 was used to gather intelligence on companies and their operational systems. The hackers then used that information for a more advanced wave of attacks targeting industrial control systems that, if disabled, leave millions without power or water.

U.S. intelligence officials have long been concerned about the security of the country’s electrical grid. The recent attacks, condemned by the U.S. government, striking almost simultaneously at multiple locations, are testing the government’s ability to coordinate an effective response among several private utilities, state and local officials, and industry regulators.

#google#

While the core of a nuclear generator is heavily protected, a sudden shutdown of the turbine can trigger safety systems. These safety devices are designed to disperse excess heat while the nuclear reaction is halted, but the safety systems themselves may be vulnerable to attack.

The operating systems at nuclear plants also tend to be legacy controls built decades ago and don’t have digital control systems that can be exploited by hackers.

“Since at least March 2016, Russian government cyber actors… targeted government entities and multiple U.S. critical infrastructure sectors, including the energy, nuclear, commercial facilities, water, aviation, and critical manufacturing sectors,” according to Thursday’s FBI and Department of Homeland Security report. The report did not say how successful the attacks were or specify the targets, but said that the Russian hackers “targeted small commercial facilities’ networks where they staged malware, conducted spearphishing, and gained remote access into energy sector networks.” At least one target of a string of infrastructure attacks last year was a nuclear power facility in Kansas.

Symantec doesn’t typically point fingers at particular nations in its research on cyberattacks, said Eric Chien, technical director of Symantec’s Security Technology and Response division, though he said his team doesn’t see anything it would disagree with in the new federal report. The government report appears to corroborate Symantec’s research, showing that the hackers had penetrated computers and accessed utility control rooms that would let them directly manipulate power systems, he says.

“There were really no more technical hurdles for them to do something like flip off the power,” he said.

And as for the group behind the attacks, Chien said it appears to be relatively dormant for now, but it has gone quiet in the past only to return with new hacks.

“We expect they’re sort of retooling now, and they likely will be back,”

 


 

In some cases, Dragonfly successfully broke into the core systems that control US and European energy companies, Symantec revealed.

“The energy sector has become an area of increased interest to cyber-attackers over the past two years,” Symantec said in its report.

“Most notably, disruptions to Ukraine’s power system in 2015 and 2016 were attributed to a cyberattack and led to power outages affecting hundreds of thousands of people. In recent months, there have also been media reports of attempted attacks on the electricity grids in some European countries, as well as reports of companies that manage nuclear facilities in the US being compromised by hackers.

“The Dragonfly group appears to be interested in both learning how energy facilities operate and also gaining access to operational systems themselves, to the extent that the group now potentially has the ability to sabotage or gain control of these systems should it decide to do so. Symantec customers are protected against the activities of the Dragonfly group.”

In recent weeks, senior US intelligence officials said that the Kremlin believes it can launch hacking operations against the West with impunity, including a cyber weapon that can disrupt power grids, according to assessments.

The DHS and FBI report further elaborated: “This campaign comprises two distinct categories of victims: staging and intended targets. The initial victims are peripheral organisations such as trusted third-party suppliers with less-secure networks, referred to as ‘staging targets’ throughout this alert.

“The threat actors used the staging targets’ networks as pivot points and malware repositories when targeting their final intended victims. National Cybersecurity and Communications Integration Center and FBI judge the ultimate objective of the actors is to compromise organisational networks, also referred to as the ‘intended target’.”

According to the US alert, hackers used a variety of attack methods, including spear-phishing emails, watering-hole domains, credential gathering, open source and network reconnaissance, host-based exploitation, and deliberate targeting of ICS infrastructure.

The attackers also targeted VPN software and used password cracking tools.

Once inside, the attackers downloaded tools from a remote server and then carried out a number of actions, including modifying key systems to store plaintext credentials in memory, and built web shells to gain command and control of targeted systems.

“This actors’ campaign has affected multiple organisations in the energy, nuclear, water, aviation, construction and critical manufacturing sectors, with hundreds of victims across the U.S. power grid confirmed,” the DHS said, before outlining a number of steps that IT managers in infrastructure organisations can take to cleanse their systems and defend against Russian hackers. he said.
 

 

Related News

View more

Sign Up for Electricity Forum’s Newsletter

Stay informed with our FREE Newsletter — get the latest news, breakthrough technologies, and expert insights, delivered straight to your inbox.

Electricity Today T&D Magazine Subscribe for FREE

Stay informed with the latest T&D policies and technologies.
  • Timely insights from industry experts
  • Practical solutions T&D engineers
  • Free access to every issue

Live Online & In-person Group Training

Advantages To Instructor-Led Training – Instructor-Led Course, Customized Training, Multiple Locations, Economical, CEU Credits, Course Discounts.

Request For Quotation

Whether you would prefer Live Online or In-Person instruction, our electrical training courses can be tailored to meet your company's specific requirements and delivered to your employees in one location or at various locations.