Michigan Power and Water Utility Hit by Ransomware Attack

M

Mihir :-)

Thread author
Lansing Board of Water & Light Hit By Ransomware Attack

The Board of Water and Light (BWL) in Lansing, Michigan,was struck by ransomware on Monday, April 25. Only the corporate network was affected, with no disruption to water or energy supplies. The BWL has kept its customers updated through its Twitter feed, but few details (apparently on advice from the FBI) are yet known. Nevertheless, this would seem to be the first disclosed example of a utility being successfully compromised by ransomware.

The incident was announced via a series of tweets when it first occurred. "Today we were the victim of ransomware that came in through a phishing virus and infected our corporate networks. We immediately instated a self-imposed lockdown to all of our corporate networks to protect the system while developing a solution. We are working with local, state and federal law enforcement authorities. No utility functionality has been lost during the attack. No personal customer info has been compromised. Customers are still able to make payments online, in our cust serv center & at kiosks."

From this we can assume that the ransomware may have encrypted parts of BWL's corporate network but did not succeed in accessing the operational network and the industrial control systems (ICS).

Yesterday, BWL posted a FAQ on Twitter. It reiterated that it shut down the network itself. On discovering the incident, "as a precaution, we immediately initiated a self-imposed lockdown of all corporate systems." We don't know whether the loss of corporate systems was due to the lockdown or ransomware encryption. Nevertheless, we can assume that law enforcement will be taking a very keen interest in the malware involved and the actors who control it: it has got unnervingly close to what is essentially a part of the critical national infrastructure.

Just one month ago, Patrick Coyle, the owner and author of Chemical Facility Security Newstold SecurityWeek that his personal nightmare for utilities is that "someone will put a critical infrastructure on lockdown with ransomware. That does not take any great process knowledge; just access to the system."

Read More:Michigan Power and Water Utility Hit by Ransomware Attack | SecurityWeek.Com
 

_CyberGhosT_

Level 53
Verified
Honorary Member
Top Poster
Content Creator
Well-known
Aug 2, 2015
4,286
Wow, scary stuff there Mihir.
And that could have been a test run for something bigger down the road.
I hope the FBI is all over this incident like stink on poo.
PeAcE
 
M

Mihir :-)

Thread author
It is really scary@ _CyberGhosT_.Look how quickly Ransomware evolved and no one able to stop it after long time when it came first in the cyber world.
 
  • Like
Reactions: Der.Reisende

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top