Russia Attacked By ‘Full Scale Cyber War’

A wave of fake bomb threats across Russia has entered its second week in what a senior lawmaker called a "full-scale cyberwar" against the country that authorities are ill-equipped to fight. 

About 400,000 people have been evacuated from more than 1,000 shopping malls, airports, and government and other buildings around the country since the surge in hoaxes began around the 10th September, according to the official Tass news agency. 

RIA Novosti said more than 100,000 people were affected on Monday 18th alone. The calls are coming from outside Russia using the Internet, making them difficult to trace, officials said.
"It's a full-scale cyberwar using telephone terrorism," said Frants Klintsevich, deputy head of the Defense Committee in the upper house of parliament, said in a telephone interview. "We will respond."

Among the latest targets was a Stalin-era bomb shelter near Moscow's Garden Ring road, now a Cold War museum, along with several shopping malls and government offices, according to the state-run Tass news service. 

The headquarters of Internet company Yandex NV was targeted just hours after a visit by President Vladimir Putin, according to an unnamed security source cited by the official Tass news agency. The company later said a fire alarm had been triggered.
Altogether Thursday 21st September, more than 15,000 people in eight cities were evacuated because of hoaxes, RIA reported, citing an unnamed security official.
"No other country in the world has experienced something like this. It's an extraordinarily dangerous situation," said Nikolai Kovalyov, a member of the lower house of parliament and former head of the Federal Security Service (FSB), the main successor to the Soviet KGB. "It all started as a hacking attack via Internet-telephony and now ordinary crazies have joined the wave."

The FSB told other security agencies last week not to comment publicly on the hoaxes in order to reduce the risk of panic, the Vedomosti newspaper reported. There was no answer at the FSB press office in Moscow. But Vladimir Puchkov, minister of Emergency Situations, said Wednesday the continuing threats were "a major problem," RIA reported. He rejected speculation they were part of a drill organised by authorities.

So far, all of the hundreds of threats have turned out to be fake. Losses from the evacuations have reached at least 300 million rubles ($5.2 million) in the past week, according to the RBC newspaper.

No one has publicly claimed responsibility for the hoaxes. Officials have given conflicting accounts of who they suspect is behind them, ranging from Islamic State to security services in Ukraine, which has accused Russia of mounting cyber-attacks on its power grid and other systems. 

Ukrainian military spokesperson Andriy Lysenko denied his country played any role, saying the Kremlin was seeking to turn Russia's population against its neighbour.
"This has been an attack unprecedented by its size and unique for Russia," said Sergey Nikitin, an expert in Moscow-based cybersecurity firm Group-IB. 

Hackers may use a chain of servers located in different jurisdictions, that may have conflicts with each other and don't exchange information, to make a call, according to Nikitin. This, in addition to possible use of voice-modulation software and Google translate, make them impossible to trace, he said.

Hamilton News:

You Might Also Read:

Global Cyber Conflict Is Close:

Which Countries Are Ready For Cyberwar?:

How A Cyber Attack Transformed Estonia:
 

 

« What Is Edge Computing?
Deloitte Hit by Cyber Attack: Clients' Private Data Exposed »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

Perimeter 81 / How to Select the Right ZTNA Solution

Perimeter 81 / How to Select the Right ZTNA Solution

Gartner insights into How to Select the Right ZTNA offering. Download this FREE report for a limited time only.

National Defense Industry Association (NDIA)

National Defense Industry Association (NDIA)

The National Defense Industrial Association Cyber Division contributes to US national security by promoting interaction between the cyber defense industry, government and military.

Galois

Galois

Galois specializes in the research and development of new technologies that solve the most difficult problems in computer science.

Ridgeback Network Defense

Ridgeback Network Defense

Ridgeback is an enterprise security software platform that defeats malicious network invasion in real time. Ridgeback champions the idea that to defeat an enemy you must engage them.

DFLabs

DFLabs

DFlabs is a pioneer in Security Automation & Orchestration technology, leveraging your existing security products to dramatically reduce the response and remediation gap.

The Media Trust

The Media Trust

The Media Trust continuously scans websites, ad tags and mobile apps and alerts on anomalies affecting websites and visitors.

Trapezoid

Trapezoid

Trapezoid is a cybersecurity company developing Firmware Integrity Management solutions designed to detect unauthorized changes to firmware & BIOS across the entire data center infrastructure.

Industrial Networking Solutions (INS)

Industrial Networking Solutions (INS)

INS Services specializes in designing, deploying and providing on-going support for critical OT (Operational Technology) and IIoT (Industrial Internet of Things) networks.

MythX

MythX

MythX is the premier security analysis service for Ethereum smart contracts.

Orca Security

Orca Security

Orca Security delivers full stack visibility including prioritized alerts to vulnerabilities, compromises, misconfigurations, and more across your entire inventory on all your cloud accounts.

archTIS

archTIS

archTIS specialises in the design and development of products, solutions and services for secure information sharing and collaboration.

Soffid

Soffid

Soffid provides full Single-Sign-On experience and full Identity and Access Management features by policy-based centralised orchestration of user identities.

Viettel Cyber Security

Viettel Cyber Security

Viettel Cyber Security is an organization under the Military Telecommunication Industry Group, conducting research and developing information security solutions for domestic and foreign customers.

Alethea

Alethea

Alethea is a technology company helping companies, nonprofits, and democracies protect themselves from harms stemming from disinformation and social media manipulation.

HIFENCE

HIFENCE

HIFENCE delivers cybersecurity and networking services that make your company safer and more secure. That’s all we do, so you can concentrate on all the things that you do best.

Falconfeeds

Falconfeeds

Falconfeeds empowers businesses and security professionals with immediate access to the latest and historical threat intelligence data.

Methods

Methods

Methods is the leading digital transformation partner for the UK public sector. We care deeply about making our public services better and have been doing this for over 28 years.