ConflictsRussian hackers target European energy sector amid winter fears

Russian hackers target European energy sector amid winter fears

Jamie Collier, the Chief Threat Intelligence Advisor at Google, reported that Sandworm, a group linked to Russian intelligence, is targeting the energy sector across Europe. In the past, these hackers have infiltrated Ukrainian systems to cause infrastructure damage.

Since 2022, European electricity-related companies have experienced 48 publicly known attacks.
Since 2022, European electricity-related companies have experienced 48 publicly known attacks.
Images source: © Wikimedia Commons

11:33 AM EST, November 22, 2024

The upcoming winter may spur hackers acting on behalf of the Russian Federation. The Sandworm group, collaborating with Kremlin intelligence, has frequently been active in this area.

Jamie Collier, the Chief Threat Intelligence Advisor at Google, warns about this team in an interview with Politico, describing them as "most skilled, stealthy" experts. "With the onset of winter, this becomes an obvious cause for concern," Collier added.

The Sandworm group is one of the most notorious cyber threats from the Kremlin, often operating covertly. Western intelligence previously linked the group to the 2015 attack that disrupted the Ukrainian electricity grid. They are also credited with disrupting Ukraine's energy grid in 2023.

According to the British government, Sandworm is part of the Russian military intelligence GRU. The warnings come as the intelligence agencies of European countries investigate the severing of two key undersea telecommunication cables connecting EU countries.

Russian hackers talented and discreet. Google warns about them

Instances of "hybrid" sabotage, disruptions, and digital attacks have been recorded since the Russian aggression against Ukraine in 2022. These occur most frequently in countries bordering Europe and Russia.

In April of this year, Google reported that Sandworm, also known as APT44 or Seashell Blizzard, "remains a formidable threat to Ukraine." "To date, no other Russian government-backed cyber group has played a more central role in shaping and supporting Russia’s military campaign," Google stated.

The group is associated with destructive attacks. It is known to be dangerous, efficiently gathering information, representing top qualifications, and employing capable experts. Russia habitually combines network intrusions with informational operations. For example, it deploys "wiper" malware to destroy systems or data, and there are also instances of data theft to hand over to hacking groups.

According to Politico, the lobby group Eurelectric published a report on Tuesday indicating that since 2022, European electricity-related companies have experienced 48 publicly known attacks. Nearly two-thirds of the global recorded cyberattacks in 2023 have originated from Russia.

European countries do not want to remain powerless in the face of these harmful activities. Cyber Europe, one of the largest cybersecurity initiatives in Europe, conducts endurance tests of the EU energy sector. In June, during a two-day exercise, 30 national cyber incident response teams repelled simulated attacks on energy infrastructure.

Related content
© conflictwatcher.com
·

Downloading, reproduction, storage, or any other use of content available on this website—regardless of its nature and form of expression (in particular, but not limited to verbal, verbal-musical, musical, audiovisual, audio, textual, graphic, and the data and information contained therein, databases and the data contained therein) and its form (e.g., literary, journalistic, scientific, cartographic, computer programs, visual arts, photographic)—requires prior and explicit consent from Wirtualna Polska Media Spółka Akcyjna, headquartered in Warsaw, the owner of this website, regardless of the method of exploration and the technique used (manual or automated, including the use of machine learning or artificial intelligence programs). The above restriction does not apply solely to facilitate their search by internet search engines and uses within contractual relations or permitted use as specified by applicable law.Detailed information regarding this notice can be found  here.