HT TECH wants to start sending you push notifications. Click allow to subscribe

Hackers target remote workers who keep your lights on

In July alone, hackers took over the Twitter accounts of US politicians, stole terrabytes of coronavirus research and even infiltrated the UK’s Premier League soccer clubs. 

By: BLOOMBERG
Updated on: Aug 20 2022, 22:10 IST
Cyberattacks of all kinds have intensified during the Covid-19 pandemic, with hackers targeting public figures, banks, healthcare providers and others as the rise in remote work creates new access points. (Pixabay)

In July alone, hackers took over the Twitter accounts of US politicians, stole terrabytes of coronavirus research and even infiltrated the UK’s Premier League soccer clubs. Can they cut off your electricity, too?

They’re trying. With millions of Americans now working from home –- including the people who help keep the grid running -- cyberattacks targeting the power sector have surged. In many cases, hackers use phishing emails to gain access to the computers of remote workers, looking to disable company systems for a ransom. But security experts warn that about dozen state-sponsored actors are also trying to infiltrate these networks.

You may be interested in

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
23% OFF
Samsung Galaxy S23 Ultra 5G
  • Green
  • 12 GB RAM
  • 256 GB Storage
₹115,999₹149,999
Buy now
Google Pixel 8 Pro
  • Obsidian
  • 12 GB RAM
  • 128 GB Storage
₹106,998
Check details
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹87,900
Check details
21% OFF
Acer Swift Go SFG14 41 NX KG3SI 002 Laptop
  • Pure Silver
  • 8 GB RAM
  • 512 GB SSD
₹58,990₹74,999
Buy now
39% OFF
Acer Aspire 5 A515 57G Laptop
  • Gray
  • 16 GB RAM
  • 512 GB SSD
₹54,949₹89,999
Buy now
22% OFF
Acer Aspire 3 A315 24 NX KDESI 004 Laptop
  • Silver
  • 8 GB RAM
  • 512 GB SSD
₹33,499₹42,999
Buy now
39% OFF
Asus VivoBook 15 X515JA BQ322WS Laptop
  • Transparent Silver
  • 8 GB RAM
  • 512 GB SSD
₹31,490₹51,990
Buy now
34% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹26,299₹39,999
Buy now
55% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹47,000
Buy now
32% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹19,790₹28,999
Buy now
Honor Pad X9
  • Gray
  • 4 GB RAM
  • 128 GB Storage
₹14,999
Check details

The pandemic has created “a once in a lifetime opportunity to get access during a time of heightened remote access usage,” said Rob Lee, chief executive officer at industrial security firm Dragos Inc. “The bulk electric system is absolutely too important to allow adversaries access. It’s a matter of public safety as well as national security.”

Cyberattacks of all kinds have intensified during the Covid-19 pandemic, with hackers targeting public figures, banks, healthcare providers and others as the rise in remote work creates new access points. An assault on the power grid could have wide-ranging implications across sectors. While no outages have so far been attributed to hackers, grid companies are beefing up security amid an unprecedented onslaught that, in a worst-case scenario, could trigger blackouts or damage vital equipment.

Even before the pandemic, hackers succeeded in infiltrating some energy infrastructure. In 2016, an Iran-based hacker gained remote access to an electric dam in New York for weeks. Earlier this year, ransomware shut down a natural gas facility for two days.

The largest US grid operator, PJM Interconnection LLC, recently told regulators it’s facing increasing attacks. In May, the UK’s grid data system was hacked, although electricity supplies weren’t affected. And in March, an attack against Europe’s association of grid operators, ENTSO-E, affected its internal office systems.

“If you notice an attack going on, it’s already too late,” said Andrea Carcano, co-founder of Nozomi Networks, which provides web security services for utilities and other industries.

Nozomi estimates that grid attacks have increased 35% since Americans began quarantining. That correlates with more electric-sector employees working from home. As an example, one US utility that previously allowed only 9% of its power plants to operate remotely now allows 80% to do so, Carcano said.

“With people working from home, there’s an increased attack surface to go after,” said Scott Aaronson, vice president of security and preparedness at the Edison Electric Institute.

Off-site Employees

In response to the onslaught, utilities are implementing heightened defense campaigns. That includes Avangrid Inc and National Grid PLC, which provide power in New York and New England.

“We’ve increased our vigilance and focus since the start of the pandemic to ensure our employees working outside the office continue to access our systems in a safe and controlled manner,” said Edward Crowder, an Avangrid spokesman. He declined to share specific actions the company is taking, citing security.

Before National Grid moved thousands of employees off-site, “we ensured that our systems could accommodate this change and that there would be no impact to our security controls,” said spokeswoman Molly Gilson, without elaborating on particular measures the company took.

PJM declined to comment on how it’s making its systems safer, but its Senior Vice President of Operations Mike Bryson told regulators in June that “PJM’s remote access infrastructure was already prepared both for the capacity needed for remote operations and for the security configuration needed to protect PJM while in remote operation.

Still, intrusions can happen, and even the most tightly guarded systems can be taken down.

“Yes, it could happen,” said EEI’s Aaronson. “You could get in and move laterally but it would be very, very difficult to do so without people noticing anomalies.” He said he’s been on regular calls with utilities, the Department of Homeland Security and the White House since February to share information on potential threats.

US Hacking

The recent attacks have focused on corporate computer systems rather than the ones that run the physical operations of power plants and grids. The latter are overseen by engineers, many of whom were, until recently, isolated in strictly protected control centers for weeks at a time due to the pandemic.

But it’s happened elsewhere. Hackers believed to be linked to Russia hit Ukraine’s grid in 2015, cutting power to 230,000 people. Last September, malware affected an Indian nuclear power plant. And since at least 2012, the U.S. government has worked to penetrate Russia’s electric power grid in a warning to President Vladimir Putin.

“Although North America has not experienced similar attacks,” Dragos said in a January report, bad actors “exhibit the interest and ability to target such networks.” Dragos highlighted a group of state-sponsored hackers linked to Iran that have carried out so-called “password spraying campaigns” on U.S. oil, gas and electric infrastructure.

“Electric sector community members should be more proactive than ever before,” Lee said. “But that doesn’t mean the public should be freaking out.”

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on ,Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 30 Jul, 22:28 IST
Tags:

Sale

Mobiles Tablets Laptops
4% OFF
Samsung Galaxy S24 Ultra
  • Titanium Black
  • 12 GB RAM
  • 256 GB Storage
₹129,999₹134,999
Buy now
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
13% OFF
Xiaomi 14
  • Matte Black
  • 12 GB RAM
  • 512 GB Storage
₹69,999₹79,999
Buy now
11% OFF
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹79,800₹89,900
Buy now
57% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹19,999₹47,000
Buy now
38% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹28,999
Buy now
21% OFF
Samsung Galaxy Tab S9 5G 256GB
  • Graphite
  • 8 GB RAM
  • 256 GB Storage
₹88,858₹113,098
Buy now
6% OFF
Apple iPad Pro 11 2022
  • Silver
  • 8 GB RAM
  • 128 GB Storage
₹105,999₹112,900
Buy now
23% OFF
Infinix INBook X1 Neo XL22 Laptop Intel Celeron Quad Core 8 GB 256 GB SSD Windows 11
  • Blue
  • 4 GB RAM
  • 128 GB SSD
₹22,990₹29,990
Buy now
37% OFF
Asus ROG Strix Scar 15 G532LW AZ056T Laptop
  • Black
  • 16 GB RAM
  • 1 TB SSD
₹146,200₹231,990
Buy now
24% OFF
Asus ROG Strix G15 G513RC HN063W Laptop
  • Electro Punk
  • 16 GB RAM
  • 512 GB SSD
₹66,500₹86,990
Buy now
37% OFF
Asus Zenbook 14 OLED UX3402VA KN541WS Laptop
  • Ponder Blue
  • 16 GB RAM
  • 512 GB SSD
₹85,990₹135,990
Buy now
NEXT ARTICLE BEGINS