Ukrainian power grid downed 'by cyber attack'
Attackers may have used the same malware as used on Ukrainian media companies
![Nuclear power plant behind power lines](https://cdn.mos.cms.futurecdn.net/sAYacHDkbrjfh7ZUh3Akj7-1000-80.jpg)
Symantec's Cybersecurity Response experts have released information following the recent cyber-security attack against the Ukrainian energy sector, which resulted in blackouts for hundreds of thousands of homes.
Symantec has identified the Trojan reportedly used in the attack as Trojan.Disakil, which had previously been used to target media companies in the country.
In October 2015, several computers belonging to a major Ukrainian media company were compromised when the malware package known as BlackEnergy was employed in order to retrieve admin credentials which were then used to execute the Disakil trojan on several other computers.
The same method may have been used to infect terminals in the substations of three local power authorities, according to Symantec.
The power outage occurred on 23 December, and affected roughly 700,000 homes.
Ukranian officials have laid the blame for the attack on Russia's doorstep, after 2015's Crimean conflict led to a breakdown in relations between the two states.
After a series of updates, the BlackEnergy package was expanded to give hackers additional tools, including many that are designed to aid in intelligence gathering.
Get the ITPro. daily newsletter
Receive our latest news, industry updates, featured resources and more. Sign up today to receive our FREE report on AI cyber crime & security - newly updated for 2024.
These include industrial sabotage functions, KillDisk utilities to wipe key hard-drive sections and make computers non-bootable, and an SSH backdoor that lets hackers permanently access infected systems.
Reports from ESET indicate that the Trojan was carefully programmed to delete specific data and take specific systems offline in a precisely targeted attack.
While it has not officially been confirmed that the cyber attack is what took down the power grid, ESET's researchers have noted that it is entirely possible, stating that "after having successfully infiltrated a critical system with either of these trojans, an attacker would theoretically, be perfectly capable of shutting it down".
If true, this has echoes of the Stuxnet virus that destroyed huge swathes of Iran's nuclear technology in 2009, as well as a vast attack on Estonia that has been dubbed the first cyber war' also linked to Russia.
It also highlights the troubling capability of cybercriminals to use advanced hacking techniques to sabotage vital infrastructure, potentials endangering thousands of lives.
This story was originally published on 5 January and has since been updated to reflect new information.
Adam Shepherd has been a technology journalist since 2015, covering everything from cloud storage and security, to smartphones and servers. Over the course of his career, he’s seen the spread of 5G, the growing ubiquity of wireless devices, and the start of the connected revolution. He’s also been to more trade shows and technology conferences than he cares to count.
Adam is an avid follower of the latest hardware innovations, and he is never happier than when tinkering with complex network configurations, or exploring a new Linux distro. He was also previously a co-host on the ITPro Podcast, where he was often found ranting about his love of strange gadgets, his disdain for Windows Mobile, and everything in between.
You can find Adam tweeting about enterprise technology (or more often bad jokes) @AdamShepherUK.
![Salesforce CEO Marc Benioff pictured on stage during a panel discussion at the World Economic Forum in Davos, Switzerland.](https://cdn.mos.cms.futurecdn.net/mGZBiLdH643NgE93a4SYHW-840-80.jpg)
"We are really moving into a world now of managing humans and agents together": Marc Benioff thinks today’s CEOs will be the last to have a fully human workforce – and he's not the only big tech exec predicting the rise of an AI workforce
![The Windows 10 logo on a laptop in the back of frame, with another laptop closer to the camera but out of focus showing the Windows 11 logo.](https://cdn.mos.cms.futurecdn.net/hysBSTERh9a8UAhRvwNiDC-840-80.jpg)
Windows 10 end of life: How to prepare for the October deadline
![Career change concept art showing line of jobseekers with man in suit and briefcase gliding over them.](https://cdn.mos.cms.futurecdn.net/mVrLELjWoBvVvWLSzoXq3G-840-80.jpg)
'They’re unhappy with the core elements of their career': UK workers are fed up with their current roles, so they're moving to greener pastures for bigger salaries and better job security