Logo
  • Kezdőlap
  • IT Szolgáltatások
    • IT Outsourcing
    • Szerver üzemeltetés és támogatás
    • IT Kommunikációs hálózatok
  • IT Megoldások
    • Informatikai beszerzések
    • HD Videókonferencia Megoldások
    • Vezetéknélküli megoldások
  • Kapcsolat
  • Blog

Colonial Pipeline attack began with compromised account credentials

The Colonial Pipeline ransomware attack, which saw one of the largest pipelines in the US shut down its servers and raised the price of oil to $3 per gallon, began with a compromised VPN account, investigators have found.

As reported by multiple media sources, including The Verge, the VPN service the company used did not have two-factor authentication set up. Once the login credentials for the VPN were obtained, criminals gained easy access to the network.

How exactly they obtained the login credentials remains unclear, but Bloomberg suggested the compromised password was discovered in a batch of credentials leaked on the dark web.

Cybersecurity firm Mandiant says the breach took place on April 29, but the ransomware attack was triggered on May 7, when an employee first discovered the ransom note.

The results of the attack are already known: the company had to force its servers offline to contain the damages, resulting in a rise in the price of oil.

The Transportation Security Administration subsequently created a new policy that requires pipeline operators to report any cyberattacks to the government within twelve hours of discovery, while the company’s CEO, Joseph Blount, will speak before the House Committee on Homeland Security this Wednesday.

Talking to NPR recently, he confirmed the company paid almost $4.5 million in ransom fees, saying it was “the right decision to make for the country”.

Source link

  • Egyéb kategória, IT hírek, Vállalati IT
  • account, attack, began, Colonial, compromised, credentials, pipeline
  • 2021.06.08.

Hasonló bejegyzések

AI must shake off its buzzword reputation

As the global economy looks to bounce back from the Cov...

Egyéb kategória

Nvidia wants to help businesses get up to speed on AI

Nvidia wants to help businesses get up to speed on Arti...

Egyéb kategória

Hybrid working honeymoon period is already over for IT teams

The transition to hybrid working, whereby employees spl...

Egyéb kategória

No organization is safe from DNS attacks

Előző bejegyzés

BT launches new program to support the smallest businesses

Következő bejegyzés

Legutóbbi bejegyzések

  • Many UK firms still aren’t making effective use of technology
  • How can service providers address security concerns in today’s world?
  • Cloud storage for backups: how to choose a provider
  • Open source ecosystem could drive massive economic growth
  • Underground forum posts reveal types of company most at risk of ransomware

Keresés

Kategóriák

  • Egyéb kategória
  • IT hírek
  • Vállalati IT

Archívum

  • 2021 szeptember
  • 2021 augusztus
  • 2021 július
  • 2021 június
  • 2021 május
  • 2021 április
  • 2021 március
  • 2021 február
  • 2021 január
  • 2020 december
  • 2020 november
  • 2020 október
  • 2020 szeptember
  • 2020 augusztus
  • 2020 július

Címkék

attacks business businesses Cloud Companies cyberattacks cybersecurity data Digital dont email employees firms future Google growth hosting huge hybrid ITProPortal key making management Microsoft online Pandemic ransomware remote review rise risk security set SMBs software teams tech technology transformation web website work workers working year
Share this: