|
Hello. U.S. cyber officials are urging power companies to take lessons from a December cyberattack linked to Russia against Poland's energy sector.
Unlike other strikes on electricity providers that have disrupted only administrative systems, this one also hit operational technology at a handful of sites. It damaged equipment that provided visibility between facilities and wiped out critical data, Poland's top government cyber agency said. Firmware inside devices was also compromised.
The attackers got in through edge devices, namely firewalls from Fortinet.
In an alert Tuesday, the U.S. Cybersecurity and Infrastructure Security Agency reiterated warnings to get rid of internet-facing devices with known bugs or old ones that are no longer supported.
CISA noted that operational devices without modern firmware can be permanently damaged. And, a perennial problem: Organizations must stop using default credentials.
Poland's report is recommended reading.
More news below.
|