Recently, a Russian hacktivist group known as the Cyber Army of Russia Reborn was tied to the Russian GRU unit Sandworm. Since the beginning of the year, the group has taken credit for multiple water utilities in the US, a wastewater plant in Poland, and a hydroelectric dam in France. What is frightening is that state-sponsored units have not been directly tied to the disruption of public utilities, only the planting of malware. The Cyber Army of Russia Reborn does not have that restraint and has released videos of their attacks.
The group has created a playbook for targeting water utilities, following other CISA warnings about bad actors targeting water systems. If you drink water daily, this should concern you (and I am pretty sure we all do unless you survive only on Red Bull, which I suspect some IT and OT personnel do!). It's crucial that we all take action to protect our water systems.
It might feel repetitive, but I wanted to take a minute to go through some of the things in the advisory, as with this new revelation, it felt timely. Here are the issues that are highlighted by the CISA advisory:
We are already helping many water systems protect themselves from cyberattacks. Check out our Water and Wastewater industry solution and the video below, and if you want a demo, let us know:
Experience the simplicity of BlastShield to secure your OT network and legacy infrastructure.