Energy (Includes Power and Utilities)

Industry

Cyber Attack Damages CO Utility

November 7, 2021

Montrose, Colorado-based Delta-Montrose Electric Association (DMEA) should be up and running within a week and completely operational by the end of the year after the utility fell victim to a “sophisticated and malicious” cyber attack in early November.
DMEA Chief Executive, Alyssa Clemsen Roberts confirmed the attack the utility discovered November 7 to the board of directors this past Tuesday (Nov. 30).
“We are a victim of a malicious cyber security attack,” Clemsen Roberts said in a report in the Montrose Daily Press. “In the middle of an investigation, that is as far as I’m willing to go. In the process about 90 percent of our internal controls and systems were corrupted or broken or disabled. And we lost the majority of our historical data for the last 20-25 years. Since then we have been slowly rebuilding our network.”

read more

Wind Turbine Maker Hit in Cyber Attack

November 19, 2021

One of the world’s biggest wind turbine makers, Aarhus, Denmark-based Vestas Wind Systems A/S, shut down computer systems across several locations Saturday to deal with a cyber security incident.
Vestas discovered a cyber security incident Friday and has since then, together with external partners, worked to contain the situation and re-establish the integrity of its IT systems.
The company’s preliminary findings indicate the incident had an impact on parts of Vestas’ internal IT infrastructure and data has suffered compromise.

read more

AL Utility Hit In Ransomware Attack

July 2, 2021

A ransomware attack hit Wiregrass Electric Cooperative (WEC) in Hartford, Alabama, this weekend, officials said. However, there was no compromise of data. In addition, this attack was not connected to the Kaseya supply-chain attack.

read more

South Korea’s Atomic Agency Suffers Hack Attack

May 14, 2021

The intrusion took place in May by what is believed to be an attack group operating out of North Korea, said a KAERI spokesperson. The incident occurred May 14 and the attackers got in through a vulnerability in a virtual private network (VPN) server. KAERI is the government organization that conducts research on nuclear power and nuclear fuel technology.

read more

Data Leak At New England Energy Supplier, Eversource

March 16, 2021

New England’s energy provider Eversource suffered a data leak in March that compromised the personal information of thousands of customers.
Eversource Energy, which provides service to 4.3 million electricity, natural gas and water users, sent across notifications to its customers to notify them about the breach.

read more

India Nuke Hit By Malware

October 29, 2019

A day after officials at Kudankulam Nuclear Power Plant (KKNPP) in Tamil Nadu, India, denied a cyberattack on its systems, the Nuclear Power Corporation of India Limited (NPCIL), the administrative governing body for nuclear power plants in the country, said “malware” was in one of their systems.
The NPCIL said Wednesday only an administrative system was infected by malware and the plant’s control systems were not affected. But others are saying there was domain controller level access achieved and mission critical targets hit.

read more

Power Industry Slammer #1

January 1, 2003

WIZARD SPIDER is a sophisticated eCrime group that has been operating the Ryuk ransomware since August 2018, targeting large organizations for a high-ransom return. This methodology, known as “big game hunting,” signals a shift in operations for WIZARD SPIDER. This actor is a Russia-based criminal group known for the operation of the TrickBot banking malware that had focused primarily on wire fraud in the past.

read more

Hackers Target Cal – ISO System

January 1, 2001

WIZARD SPIDER is a sophisticated eCrime group that has been operating the Ryuk ransomware since August 2018, targeting large organizations for a high-ransom return. This methodology, known as “big game hunting,” signals a shift in operations for WIZARD SPIDER. This actor is a Russia-based criminal group known for the operation of the TrickBot banking malware that had focused primarily on wire fraud in the past.

read more

Utility SCADA System Attacked

January 1, 2001

WIZARD SPIDER is a sophisticated eCrime group that has been operating the Ryuk ransomware since August 2018, targeting large organizations for a high-ransom return. This methodology, known as “big game hunting,” signals a shift in operations for WIZARD SPIDER. This actor is a Russia-based criminal group known for the operation of the TrickBot banking malware that had focused primarily on wire fraud in the past.

read more

Y2K Test Crashes Reactor Computer

January 1, 1999

WIZARD SPIDER is a sophisticated eCrime group that has been operating the Ryuk ransomware since August 2018, targeting large organizations for a high-ransom return. This methodology, known as “big game hunting,” signals a shift in operations for WIZARD SPIDER. This actor is a Russia-based criminal group known for the operation of the TrickBot banking malware that had focused primarily on wire fraud in the past.

read more