Skip to content
NGTEdu Logo

NGTEdu

A PRODUCT OF NGTECH.CO.IN

NGTEdu Logo

NGTEdu

  • Home
  • Cyber Attacks
  • Malware
  • Vulnerabilities
  • Data Breach
  • Home
  • Cyber Attacks
  • Critical National Infrastructure (CNI) Attacks on the Rise: Are We Ready?
  • Critical Vulnerability
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

Critical National Infrastructure (CNI) Attacks on the Rise: Are We Ready?

4 years ago Tripwire Guest Authors
Critical National Infrastructure (CNI) Attacks on the Rise: Are We Ready?

When we think about cyberattacks and malicious hackers, we often think in terms of our own personal lives and our own organizations. In my experience in cybersecurity, I often hear people say “Why would hackers target me? We are too small” or “I’ve never been affected by a cyberattack, so it’s not really something I’m interested in.”

The reality is that cybercriminals may be targeting you not because of your size but because of who your customers and clients are. Although you may not have noticed it, we are all affected by the increasing number of cyberattacks, the threat of which is only increasing.

Attacks on SCADA and CNI

We have long known that the possibility of attacks on Supervisory Control and Data Acquisition (SCADA) systems was a very real threat to our modern way of living. These systems routinely control how power, water, nuclear, manufacturing, and oil and gas are managed and distributed, forming part of our Critical National Infrastructure (CNI). Attacks on CNI are nothing new, and there are examples where these digital attacks have the potential of affecting our lives in very real ways.

Stuxnet

The Stuxnet worm raised the attention of every cybersecurity practitioner in the land. Almost like the plot line of a spy thriller movie, this computer worm, once installed on the network, sought out specific software on computers controlling programmable logic controllers (PLC). It was programmed to hide its presence as it caused the fast-spinning centrifuges to tear themselves apart, making it one of the first forms of malware which impacted the physical world. Stuxnet was highly effective in its targeting of control systems. It is thought to have infected over 200,000 computers and physically damaged 1,000 of them.

What is important to note is that, in order to get their weapon into the plant, the attackers launched an offensive against computers owned by four companies. These were most likely selected because of their involvement in the manufacturing of products and systems used in the control systems.

It is understood that the attacks against the Iranian facility were carried out in order to disrupt the creation of nuclear materials and was most certainly a state-sponsored attack. However, not all attacks on CNI are state sponsored, as we discovered this year.

Colonial Pipeline Ransomware Attack

On May 7th 2021, the pipeline which transports gasoline and jet fuel across southern USA was the target of a ransomware attack that ultimately resulted in its owner, Colonial Pipeline, paying over $4 million to the cybercriminals. When the attack occurred, Colonial Pipeline shut down services, which led to fuel shortages up and down the East Coast. Following the attack, President Biden signed an executive order to strengthen the cybersecurity defenses of the United States’ critical infrastructure industries.

This attack followed the high-profile SolarWinds incident that affected thousands of organizations including government agencies around the world. It is believed that the motivation behind this attack was state sponsored and not by a desire to make money.

Our Digital Lives

We need to recognize that attacks on CNI are undoubtedly going to continue if not increase over the coming years as we continue to rely upon technology in all aspects of our lives from banking through to national health, power, and other utilities. Worryingly, according to a survey of over 250 organizations in this sector published by security consulting firm Bridewell Consulting, “86% of organisations have detected cyberattacks on their OT/ICS environments in the last 12 months” and “Nearly a quarter (24%) have experienced more than 5 successful attacks.”

What Can We Do to Protect CNI?

As with most things in cybersecurity, the answer is investment, but not just money. Both time and money are required if we are to understand the vulnerabilities in our technical infrastructures and also our people. The report from Bridewell states that new methods of security testing, investment in cybersecurity technology, and regular patching and updates will be a focus moving forward. But what about our people? And what about third-party suppliers?

New ways of monitoring, detecting, and preventing cyberattacks are needed. We are living in a world that is now accustomed to using various managed services, so merely investing in regular penetration testing is no longer adequate. 

Training staff to understand their part in the protection of an organization is essential. So too is understanding the impact of a breach if we are to decrease the likelihood of an attack.

We also need to have a far more robust approach to third-party management and understand who we are letting through our physical and digital front doors. When organizations tell me that they are too small to be a target, I always ask them about their customers and clients. Who do they serve? What access do they have into those organizations?

If the company works with any CNI sector, then it must be assumed that they are a potential target for cybercriminals, state-sponsored or otherwise.

Conclusion

Everything in the digital world is a virtual entity that impacts our physical world. Whether it is the monetary systems or other systems that we use to control our comforts, as we strive towards faster and more automated ways to enhance our lives, we must take the time to consider what our world would be like in the unfortunate event of a crippling compromise to any of those systems. This requires considerable investments, not only in money but also in dedication towards better security. If we don’t invest in it and focus on those that support CNI, then there is a very real risk we are all going to be impacted in a tangible way. 


About the Author: Gary Hibberd is the ‘The Professor of Communicating Cyber’ at Cyberfort and is a Cybersecurity and Data Protection specialist with 35 years in IT. He is a published author, regular blogger, and international speaker on everything from the Dark Web to Cybercrime and Cyber Psychology.

You can follow Gary on Twitter here: @AgenciGary

Editor’s Note: The opinions expressed in this guest author article are solely those of the contributor, and do not necessarily reflect those of Tripwire, Inc.

The post ” Critical National Infrastructure (CNI) Attacks on the Rise: Are We Ready?” appeared first on TripWire

Source:TripWire – Tripwire Guest Authors

Tags: Critical Severity, Encryption, Finance, Goverment, High Severity, Malware, Medium Severity, Ransomware, TripWire, Vulnerability

Continue Reading

Previous Google Crushes YouTube Cookie-Stealing Channel Hijackers
Next CIS Control 09: Email and Web Browser Protections

More Stories

  • Cyber Attacks
  • Data Breach
  • Vulnerabilities

TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD Compromise

6 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

Tax Search Ads Deliver ScreenConnect Malware Using Huawei Driver to Disable EDR

8 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

Hackers Use Fake Resumes to Steal Enterprise Credentials and Deploy Crypto Miner

8 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials

13 hours ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Cyber Attacks
  • Data Breach
  • Vulnerabilities

5 Learnings from the First-Ever Gartner Market Guide for Guardian Agents

13 hours ago [email protected] (The Hacker News)
  • Data Breach
  • Vulnerabilities

The Hidden Cost of Cybersecurity Specialization: Losing Foundational Skills

15 hours ago [email protected] (The Hacker News)

Recent Posts

  • TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD Compromise
  • Tax Search Ads Deliver ScreenConnect Malware Using Huawei Driver to Disable EDR
  • Hackers Use Fake Resumes to Steal Enterprise Credentials and Deploy Crypto Miner
  • Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials
  • 5 Learnings from the First-Ever Gartner Market Guide for Guardian Agents

Tags

Android APT Bug CERT Cloud Compliance Coronavirus COVID-19 Critical Severity Encryption Exploit Facebook Finance Google Google Chrome Goverment Hacker Hacker News High Severity Instagram iPhone Java Linux Low Severity Malware Medium Severity Microsoft Moderate Severity Mozzila Firefox Oracle Patch Tuesday Phishing Privacy QuickHeal Ransomware RAT Sim The Hacker News Threatpost TikTok TripWire VMWARE Vulnerability Whatsapp Zoom
Copyright © 2020 All rights reserved | NGTEdu.com
This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Read More here.Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT