The Cybersecurity Implications of the Russian Attack on Ukraine
Rex Johnson
Cybersecurity Leader @ CAI | Visionary Strategist for Risk Mitigation | US Army Veteran
On February 24, 2022, Russian forces invaded Ukraine. While there has been tension between these two countries since 2014, the recent invasion is the resulting buildup of a timeline of events, beginning in November 2021.??
Even though this is happening in Eastern Europe, it impacts the rest of the world, especially as it relates to cybersecurity. According to a recent SANS webcast, all organizations are potential cyberattack targets. Russia maintains a range of offensive cyber tools that it could deploy against global networks. These include offenses from low-level denials-of-service to destructive attacks targeting critical infrastructure.??
Several advanced activity groups, attributed to different departments and sections of Russian security and intelligence services, are actively involved. These groups leverage relationships with cybercriminal and hacktivist groups to support state-sponsored activities. Working together, these groups deploy cyberattacks against the rest of the world.??
Recent activity?
Some of key events and cybercriminal groups include:?
While the focus is on Ukraine, it’s likely that other parts of the world will be targeted, and attacks will exceed further. These may come in the form of malware attacks, phishing, or misinformation. While Russian operators are busy with government targets, other groups like hacktivists might pose a threat.??CISA and the Federal Bureau of Investigation issued warnings that the wiper malware used to attack the Ukraine could affect businesses in the United States.
What is a wiper attack??
A cyberattack that wipes, overwrites, or removes data from the victim’s network or device is known as a wiper attack. Unlike most cyberattacks, that focus on monetary gain, wiper attacks are meant to permanently delete information, posing a potentially greater threat than ransomware attacks.?
Could I be targeted??
During the SANS webcast on February 25, Jake Williams, an Infosec specialist and former member of the National Security Agency’s hacking unit, provided guidance around if an organization should worry about becoming a target at this time. He advised that if retaliatory cyberattacks are performed on US and EU industries, Russia would need to consider five points when choosing a potential target.??
Russia would be most likely to choose targets that:? ?
领英推荐
?According to Williams, based on the five-point test above, the US and EU industries that are most likely to be targeted include:?
This could change if the US or other nations start ground operations against Russia.??
?However, the Conti Gang, a Russian ransomware group, said they will use “all possible resources to strike back at the critical [infrastructure] of an enemy”-- that includes a cyberattack or any war activities against Russia.??
?In response, the hacktivist group Anonymous declared cyber war on Russian President Vladimir Putin and the Russian government. They released a video with a message to Putin after the invasion began, stating their intent and warning of internal dissension from hackers in Russia.?
Things You Can Do?
Organizations can harden their exposure to cybersecurity threats by utilizing the following security best practices:?
For more information, please see the SANS Ukraine-Russia Conflict – Cyber Resource Center located at https://www.sans.org/blog/ukraine-russia-conflict-cyber-resource-center/??
CAI’s cybersecurity experts work with you directly to map out security solutions that align with your most important criteria, including impact, timing, resource availability, deployment, and financial considerations. If you have any questions, please contact me.?
President & Co-Founder at Libsys Inc - CEO & Co-Founder at American Green Solutions LLC explores #marketing, Advocates for #SolarMonitoring, #RenewableEnergy, #CleanEnergy, & more in #UtilityScale & #ResidentialSolar.
3 年Good article Rex
IT Executive | Business Development | Solutions Engineering | FEAC Enterprise Architect
3 年Very good read!
Co-Founder & Vice President, Americas at LMNTRIX
3 年Great writeup Rex.