U.S. sanctions Russian institute linked to dangerous malware

Treasury said last year the attackers behind the malware were reported to be scanning and probing at least 20 electric utilities in the United States for vulnerabilities.

October 26, 2020 11:07 am | Updated 11:17 am IST

U.S. sanctions Russian institute linked to dangerous malware.

U.S. sanctions Russian institute linked to dangerous malware.

(Subscribe to our Today's Cache newsletter for a quick snapshot of top 5 tech stories. Click here to subscribe for free.)

Washington imposed sanctions on Friday on a Russian research institute tied to the development of a dangerous computer program capable of causing catastrophic industrial damage, a move that Russia called illegitimate.

The U.S. Treasury Department alleged that the Russian government-backed Central Scientific Research Institute of Chemistry and Mechanics - also known by its Russian acronym, TsNIIKhM - was responsible for “building customized tools that enabled the attack” on an unidentified petrochemical facility in the Middle East in 2017.

The attack electrified the cybersecurity community when it was made public by researchers that year because - unlike typical digital intrusions aimed at stealing data or holding it for ransom - it appeared aimed at causing physical damage to the facility itself by disabling its safety system.

Nathan Brubaker, an analyst with cybersecurity company FireEye - which discovered the software involved - said the apparent intent made it uniquely dangerous because disabling safety systems at a plant like that one could lead to serious consequences, such as a fire or an explosion.

“The acute nature of the threat is what makes it scary,” Brubaker said. “Blowing things up and killing people thats terrifying.”

Treasury also said last year the attackers behind the malware were reported to be scanning and probing at least 20 electric utilities in the United States for vulnerabilities.

“We emphasize once again the illegitimacy of any one-sided restrictions. Russia, unlike the United States, does not conduct offensive operations in cyber domain,” Anatoly Antonov, Russia's ambassador to the United States, said on social media.

“We call on the United States to abandon the vicious practice of unfounded accusations.”

U.S. officials have been on a tear in the past month, filing a glut of indictments against hackers in Russia, China and Iran, levying sanctions, and issuing several warnings about state-backed digital intrusions.

Experts see the activity as the United States warning hostile powers to not interfere in its Nov. 3 elections, less than two weeks away.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.