请输入您要查询的百科知识:

 

词条 December 2015 Ukraine power grid cyberattack
释义

  1. Description

  2. See also

  3. References

  4. Further reading

  5. External links

The December 2015 Ukraine power grid cyberattack took place on 23 December 2015 and is considered to be the first known successful cyberattack on a power grid. Hackers were able to successfully compromise information systems of three energy distribution companies in Ukraine and temporarily disrupt electricity supply to the end consumers.

Most affected were consumers of «Prykarpattyaoblenergo» ({{lang-uk|Прикарпаттяобленерго}}; servicing Ivano-Frankivsk Oblast): 30 substations were switched off, and about 230 thousand people were left without electricity for a period from 1 to 6 hours.[1]

At the same time consumers of two other energy distribution companies, «Chernivtsioblenergo» ({{lang-uk|Чернівціобленерго}}; servicing Chernivtsi Oblast) and «Kyivoblenergo» ({{lang-uk|Київобленерго}}; servicing Kyiv Oblast) were also affected by a cyberattack, but at a smaller scale. According to representatives of one of the companies, attacks were conducted from computers with IP addresses allocated to the Russian Federation.[2]

Description

The cyberattack was complex and consisted of the following steps:[2]

  • prior compromise of corporate networks using spear-phishing emails with BlackEnergy malware;
  • seizing SCADA under control, remotely switching substations off;
  • disabling/destroying IT infrastructure components (uninterruptible power supplies, modems, RTUs, commutators);
  • destruction of files stored on servers and workstations with the KillDisk malware;
  • denial-of-service attack on call-center to deny consumers up-to-date information on the blackout.

In total, up to 73 MWh of electricity was not supplied (or 0.015% of daily electricity consumption in the Ukraine).[2]

Cyber attacks on the energy distribution companies took place during an ongoing Russian-Ukrainian war and is attributed to a Russian advanced persistent threat group known as "Sandworm".[3]

See also

  • 2017 cyberattacks on Ukraine
  • Industroyer
  • Cyberwarfare by Russia
  • Russian military intervention in Ukraine (2014–present)

References

1. ^{{cite web | url = https://www.wired.com/2016/03/inside-cunning-unprecedented-hack-ukraines-power-grid/ | title = Inside the Cunning, Unprecedented Hack of Ukraine’s Power Grid | author = Kim Zetter | publisher = Wired | date = 2016-03-03 }}
2. ^{{cite web | url = http://mpe.kmu.gov.ua/minugol/control/uk/publish/article?art_id=245086886&cat_id=35109 | title = Міненерговугілля має намір утворити групу за участю представників усіх енергетичних компаній, що входять до сфери управління Міністерства, для вивчення можливостей щодо запобігання несанкціонованому втручанню в роботу енергомереж | date = 2016-02-12 | publisher = Міністерство енергетики та вугільної промисловості України }}
3. ^{{cite web | url = https://www.reuters.com/article/us-ukraine-cybersecurity-sandworm-idUSKBN0UM00N20160108 | title = U.S. firm blames Russian 'Sandworm' hackers for Ukraine outage | author = Jim Finkle | date = 2016-01-07 | publisher = Reuters }}

Further reading

  • {{cite book

| url = https://ics.sans.org/media/E-ISAC_SANS_Ukraine_DUC_5.pdf
| title = Analysis of the Cyber Attack on the Ukrainian Power Grid. Defense Use Case
| publisher = E-ISAC
| date = 18 March 2016
|author1=Robert M. Lee |author2=Michael J. Assante |author3=Tim Conway }}
  • {{cite book

| url = http://www.boozallen.com/content/dam/boozallen/documents/2016/09/ukraine-report-when-the-lights-went-out.pdf
| title = When The Lights Went Out
| publisher = Booz Allen Hamilton
|author1=Nate Beach-Westmoreland |author2=Jake Styczynski |author3=Scott Stables | date = November 2016 }}

External links

  • Adi Nae Gamliel (2017-10-6) [https://www.linkedin.com/pulse/securing-smart-grid-advanced-metering-infrastructure-adi-nae-gamliel/ "Securing Smart Grid and Advanced Metering Infrastructure"].
  • {{cite web|url = https://www.wired.com/story/russian-hackers-attack-ukraine/|title = How An Entire Nation Became Russia's Test Lab for Cyberwar|author = Andy Greenberg|date = 2017-06-20|publisher = Wired}}
  • {{cite web

| url = https://www.wired.com/2016/03/inside-cunning-unprecedented-hack-ukraines-power-grid/
| title = Inside the Cunning, Unprecedented Hack of Ukraine’s Power Grid
| author = Kim Zetter
| publisher = Wired
| date = 2016-03-03 }}
  • {{cite web

| url = https://www.wired.com/2016/01/everything-we-know-about-ukraines-power-plant-hack/
| title = Everything We Know About Ukraine’s Power Plant Hack
| author = Kim Zetter
| publisher = Wired
| date = 2016-01-20 }}
  • {{cite web

| url = https://www.fireeye.com/blog/threat-research/2016/01/ukraine-and-sandworm-team.html
| title = Sandworm Team and the Ukrainian Power Authority Attacks
| author = John Hulquist
| publisher = FireEye
| date = 2016-01-07 }}
  • ICS-CERT, [https://ics-cert.us-cert.gov/alerts/IR-ALERT-H-16-056-01 Cyber-Attack Against Ukrainian Critical Infrastructure (IR-ALERT-H-16-056-01)]
{{Ukrainian crisis navbox}}{{Ukraine topics}}

6 : Cyberattacks on energy sector|2015 in Ukraine|Ukrainian crisis|Power outages|December 2015 crimes|December 2015 events in Europe

随便看

 

开放百科全书收录14589846条英语、德语、日语等多语种百科知识,基本涵盖了大多数领域的百科知识,是一部内容自由、开放的电子版国际百科全书。

 

Copyright © 2023 OENC.NET All Rights Reserved
京ICP备2021023879号 更新时间:2024/11/10 12:32:49