A warning reportedly sent by the NCSC warns of attacks on British energy firms, following last months hack of a US nuclear plant
The National Cyber Security Centre (NCSC), GCHQs computer security organisation, has acknowledged it is investigating a broad wave of attacks on organisations that have reportedly targeted companies in the British energy and manufacturing sectors.
Those attacks are likely to have compromised some industrial control systems in the UK, according to a warning reportedly sent out by NCSC, which hasnt been made public.
We are aware of reports of malicious cyber activity targeting the energy sector around the globe, the NCSC said in a statement. We are liaising with our counterparts to better understand the threat and continue to manage any risks to the UK.
The attacks are part of a broader campaign targeting energy companies in countries including the US, Ireland and Turkey, according to computer security firm FireEye.
While authorities in the US and the UK have stopped short of identifying who they suspect to be behind the hacking activity, a report over the weekend by The Times cited unnamed sources as attributing the attacks to a group backed by Russias GRU intelligence agency.
In its alert, the NCSC reportedly makes reference to a similar warning sent by the US government in Juneindicating attacks on more than a dozen energy companies, including at least one nuclear plant.
The US Department of Energy (DOE) acknowledged those attacks earlier this month but said only administrative systems, and not industrial control systems, had been targeted.
The NCSC alert says the attack infrastructure used indicates an unspecified state government.
The NCSC is aware of connections from multiple UK IP addresses to infrastructure associated with advanced state-sponsored hostile threat actors, who are known to target the energy and manufacturing sectors, reads a section of the message, according to a report by Motherboard.
Unlike the DOE, the NCSC reportedly warned that industrial control systems were involved in the British attacks.
Some of those control systems, including ones that may have remote access to critical infrastructure, are likely to have been successfully compromised, the NCSC reportedly warned.
NCSC believes that due to the use of wide-spread targeting by the attacker, a number of Industrial Control System engineering and services organisations are likely to have been compromised, the document states.
The wave of hacking activity began around 8 June and focuses on the engineering, industrial control and water sectors, in addition to energy companies, according to the NCSC document.
The attack infrastructure uses the SMB and HTTP protocols and the attacks appear to be aimed at trying to capture users passwords.
Like the US government warning, it suggests mitigations including the use of multi-factor authentication.
Motherboard didnt indicate who provided it with the message, but said it had verified the alerts authenticity with two other sources.
The US report, issued by the FBI and the Department of Homeland Security (DHS) to US businesses, said the hackers were using targeted malicious emails to deliver Word documents infected with malware.
The hackers reportedly obtained users credentials and attempted to map out their network drives.
FireEye analyst John Hultquist said earlier this month that the attacks on energy companies in the US, Ireland, Turkey and possibly other countries are believed to have been carried out by the same group.
The groups activities stretch back as far as 2015, with the latest campaign including watering hole attacks aimed at infecting computers used by electrical engineers and control systems operators, Hultquist said.
Security experts monitoring the wave of attacks said that although there was no indication they had created a serious risk, they were a warning of the increasing vulnerability of critical infrastructure due to the broad use of Internet-connected computer systems in the energy sector and elsewhere.
Security firm Sophos said recent incidents such as the Petya or NotPetya and WannaCry malware campaigns, both of which spread using an exploit called EternalBlue allegedly developed by the NSA, show how damaging infrastructure attacks could become.
As with Petya and WannaCry, the private worry about Nuclear 17 is that the unfolding EternalBlue leak of alleged NSA spying tools and vulnerabilities might be feeding attacks that are starting to manifest in all sorts of sectors, Sophos said in an advisory.
Nuclear 17 is the code name given to last months attempted intrusion at the Wolf Creek nuclear plant in Kansas.
One of the most serious infrastructure attacks to date occurred in December 2015 when an incident at a Ukraine power company left parts of western Ukraine, including regional capital Ivano-Frankivsk, without power.
Security experts later said that a sophisticated Trojan horse called Black Energy was used in the hack, with the Ukraine blaming the incident on Russia. Security firms have as yet made no direct link between that attack and the more recent hacking campaign.
Do you know all about security in 2017? Try our quiz!
Continue reading here:
Report: Hackers 'Likely' Compromised UK Energy Control Systems - Silicon UK
- Businesses Deny Helping NSA Plant Bugs in Americans' Gadgets [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- NSA Spying: Rand Paul Plans Obama Lawsuit [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- NBC's 'Nightly News' Avoids Obama in 'Serious Legal Blow' to NSA Spying - Video [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- Through a PRISM, Darkly - Everything we know about NSA spying [30c3] - Video [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- NSA spying HOW TO - Video [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- NSA spying on all iPhones n computers - Video [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- KeiserReport: NSA spying costing US economy dearly, losing sales (31Dec13) - Video [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- 12.23.2014 - NSA Spying Could Do Good for the US | ETA News - Video [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- Orwellian or a Blunt Tool?: Conflicting Rulings on NSA Spying Set Up Likely Supreme Court Showdown - Video [Last Updated On: January 5th, 2014] [Originally Added On: January 5th, 2014]
- Senate to push for legislation to limit NSA spying, while lawmaker suggests Obama didn't go far enough- House panel ... [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- Yahoo CEO Challenges Obama on NSA Spying [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- 'CHILLING EFFECT': Watchdog said to push for end to NSA phone spying [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- NSA Spying | Electronic Frontier Foundation [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- Feinstein Admits 'America Is the Great Satan': Sen. Feinstein Defends NSA Spying - Video [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- Obama Fears Arrest and is Running Scared From NSA Scandal - HD - Video [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- Sen Leahy: Because of NSA spying programs gov't is controlling us instead of us controlling gov't - Video [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- Save LI Forum - 11: Krisanne Hall - the 4th Amendment - Video [Last Updated On: January 23rd, 2014] [Originally Added On: January 23rd, 2014]
- NSA spying is illegal – US privacy watchdog [Last Updated On: January 24th, 2014] [Originally Added On: January 24th, 2014]
- Civil Liberties Board Says NSA Spying Is Illegal [Last Updated On: January 24th, 2014] [Originally Added On: January 24th, 2014]
- NSA Surveillance Sparks Talk of National Internets [Last Updated On: January 24th, 2014] [Originally Added On: January 24th, 2014]
- -Biden in 2006 schools Obama in 2013 over NSA spying program - Video [Last Updated On: January 24th, 2014] [Originally Added On: January 24th, 2014]
- 10MIN NEWS Bravo To The UK's Stand They Don't Buy Obama's NSA Spying Promises - Video [Last Updated On: January 24th, 2014] [Originally Added On: January 24th, 2014]
- Republican Party Condemns NSA Spying on Americans, After Supporting It for Years [Last Updated On: January 26th, 2014] [Originally Added On: January 26th, 2014]
- United States Privacy Watchdog: NSA Spying Is Illegal - Video [Last Updated On: January 26th, 2014] [Originally Added On: January 26th, 2014]
- US privacy watchdog advises NSA spying is 'illegal' - Video [Last Updated On: January 26th, 2014] [Originally Added On: January 26th, 2014]
- Ben Swann: Tired of NSA Spying? Turn Off Their Water - Video [Last Updated On: January 26th, 2014] [Originally Added On: January 26th, 2014]
- Feinstein Admits 'America Is the Great Satan' as She Defends NSA Spying - Video [Last Updated On: January 26th, 2014] [Originally Added On: January 26th, 2014]
- NSA Spying Is Illegal According To US Privacy Watchdog - Video [Last Updated On: January 27th, 2014] [Originally Added On: January 27th, 2014]
- Tyrel Ventura on DEA Drug Running, NSA Spying, and Jesse 2016 - Video [Last Updated On: January 27th, 2014] [Originally Added On: January 27th, 2014]
- Justin Bieber Beats NSA Spying on MSNBC? - Video [Last Updated On: January 27th, 2014] [Originally Added On: January 27th, 2014]
- Justin Beiber is more important then NSA Spying! - Video [Last Updated On: January 27th, 2014] [Originally Added On: January 27th, 2014]
- Preventing spying on NSA spying [Last Updated On: January 28th, 2014] [Originally Added On: January 28th, 2014]
- US looks at ways to prevent spying on NSA spying [Last Updated On: January 28th, 2014] [Originally Added On: January 28th, 2014]
- Is NSA Spying on Your Angry Birds Game? [Last Updated On: January 28th, 2014] [Originally Added On: January 28th, 2014]
- US looking to stop spying on NSA spying [Last Updated On: January 28th, 2014] [Originally Added On: January 28th, 2014]
- NSA Spying On Apps Like 'Angry Birds,' Does Surveillance Violate Civil Liberties? [Last Updated On: January 28th, 2014] [Originally Added On: January 28th, 2014]
- NSA spying through Angry Birds, Google Maps, leaked documents reportedly reveal [Last Updated On: January 28th, 2014] [Originally Added On: January 28th, 2014]
- Terror suspect challenges NSA spying's constitutionality [Last Updated On: January 30th, 2014] [Originally Added On: January 30th, 2014]
- NSA Spying on Apps Shows Perils of Google+, ‘Candy Crush’ [Last Updated On: January 30th, 2014] [Originally Added On: January 30th, 2014]
- German government faces legal action over NSA spying [Last Updated On: January 30th, 2014] [Originally Added On: January 30th, 2014]
- Not 'Appy' - new leaks show NSA spying on our apps - video - Video [Last Updated On: January 30th, 2014] [Originally Added On: January 30th, 2014]
- Tech Giants, Telcos Get OK to Release Stats on NSA Spying [Last Updated On: January 31st, 2014] [Originally Added On: January 31st, 2014]
- Obama Police State 2014 - Giuliani on NSA spying program proposals - Video [Last Updated On: January 31st, 2014] [Originally Added On: January 31st, 2014]
- Empty Promise's - Giuliani on NSA Spying Program Proposals - Video [Last Updated On: January 31st, 2014] [Originally Added On: January 31st, 2014]
- NSA surveillance revelations sour German perception of Obama [Last Updated On: January 31st, 2014] [Originally Added On: January 31st, 2014]
- President Obama On NSA Spying And PRISM - Video [Last Updated On: February 1st, 2014] [Originally Added On: February 1st, 2014]
- Glenn Greenwald Growing Backlash Against NSA Spying Shows Why U S Wants to Silence Edward Snowden - Video [Last Updated On: February 1st, 2014] [Originally Added On: February 1st, 2014]
- Mike Malloy speaks on Snowdens revelations of NSA spying at the 2009 Copenhagen climate talks - Video [Last Updated On: February 1st, 2014] [Originally Added On: February 1st, 2014]
- NSA Spying on YouTube, Facebook | The Rubin Report - Video [Last Updated On: February 1st, 2014] [Originally Added On: February 1st, 2014]
- 2014 State of the Union Response - NSA Spying - Video [Last Updated On: February 1st, 2014] [Originally Added On: February 1st, 2014]
- NSA Spying: The Three Pillars of Government Trust Have ... [Last Updated On: February 3rd, 2014] [Originally Added On: February 3rd, 2014]
- Bernie Sanders Town Hall on NSA spying - Video [Last Updated On: February 3rd, 2014] [Originally Added On: February 3rd, 2014]
- Rand Paul Files Class Action Lawsuit over NSA Spying - Video [Last Updated On: February 3rd, 2014] [Originally Added On: February 3rd, 2014]
- ▶ Giuliani on NSA spying program proposals YouTube 360p - Video [Last Updated On: February 3rd, 2014] [Originally Added On: February 3rd, 2014]
- Hackers Sue German Government Over NSA Spying [Last Updated On: February 4th, 2014] [Originally Added On: February 4th, 2014]
- David Cole on NSA spying - Video [Last Updated On: February 4th, 2014] [Originally Added On: February 4th, 2014]
- NSA SPYING on US - Taps INTERNET Transmissions and It Will Only Get Worse - Video [Last Updated On: February 4th, 2014] [Originally Added On: February 4th, 2014]
- NSA spying, TPPA and you [Last Updated On: February 5th, 2014] [Originally Added On: February 5th, 2014]
- Environmental Groups "Shocked" by Reports of NSA Spying of U.N. Climate Talks - Video [Last Updated On: February 5th, 2014] [Originally Added On: February 5th, 2014]
- NSA scandal boosts German tech industry [Last Updated On: February 5th, 2014] [Originally Added On: February 5th, 2014]
- Hackers sue Merkel and entire German government over NSA spying - Video [Last Updated On: February 5th, 2014] [Originally Added On: February 5th, 2014]
- NSA spying scandals continue | Dear Kitty. Some blog [Last Updated On: February 6th, 2014] [Originally Added On: February 6th, 2014]
- Hackers Sue German Government Over NSA Spying - ABC News [Last Updated On: February 6th, 2014] [Originally Added On: February 6th, 2014]
- NSA spying revelations 'a shock' to Patriot Act author [Last Updated On: February 6th, 2014] [Originally Added On: February 6th, 2014]
- Swatch chief executive ticked off about NSA spying scandal ... [Last Updated On: February 8th, 2014] [Originally Added On: February 8th, 2014]
- NSASpying.com -- Resources to STOP NSA spying [Last Updated On: February 8th, 2014] [Originally Added On: February 8th, 2014]
- Hackers sue Merkel entire German govt over NSA spying - Video [Last Updated On: February 8th, 2014] [Originally Added On: February 8th, 2014]
- Daily Kos: House threatens to end NSA spying [Last Updated On: February 9th, 2014] [Originally Added On: February 9th, 2014]
- Impact of NSA Spying Fallout on Tech Companies - Video [Last Updated On: February 9th, 2014] [Originally Added On: February 9th, 2014]
- Glenn Greenwald Snowden Encouraged by Global Outrage over NSA Spying, Support for His Plight - Video [Last Updated On: February 9th, 2014] [Originally Added On: February 9th, 2014]
- Everything We Know About NSA Spying: "Through a PRISM, Darkly" - Kurt Opsahl at CCC - Video [Last Updated On: February 9th, 2014] [Originally Added On: February 9th, 2014]
- NSA spying undermines separation of powers: Column [Last Updated On: February 10th, 2014] [Originally Added On: February 10th, 2014]
- NSA spying on your calls - Video [Last Updated On: February 10th, 2014] [Originally Added On: February 10th, 2014]
- Hundreds march in Washington against NSA spying - Video [Last Updated On: February 10th, 2014] [Originally Added On: February 10th, 2014]
- Law professor: NSA spying threatens separation of powers [Last Updated On: February 12th, 2014] [Originally Added On: February 12th, 2014]
- Top U.S. Spy Claims 'Terrorists Are Going to School' on ... [Last Updated On: February 12th, 2014] [Originally Added On: February 12th, 2014]
- 'The Day We Fight Back' calls for protests against NSA spying [Last Updated On: February 12th, 2014] [Originally Added On: February 12th, 2014]
- Obama and French President Hollande discuss NSA spying at ... [Last Updated On: February 12th, 2014] [Originally Added On: February 12th, 2014]
- NSA spying poses “direct threat to journalism ... [Last Updated On: February 14th, 2014] [Originally Added On: February 14th, 2014]
- Exclusive: Rand Paul says NSA spying has gone 'overboard ... [Last Updated On: February 14th, 2014] [Originally Added On: February 14th, 2014]