Are Russian Hackers Planning a Massive Cyber Attack?

Concerns Arise Over Potential Cyber Attack Targeting Ukraine

According to BleepingComputer, some major fears are arising regarding a potential cyber attack that is targeting Ukraine.  So far, over 500,000 routers, in 54 different countries, have been infected with a malicious virus deemed VPNFilter.  The infected devices include:

  • Linksys, Models: E1200, E2500, and WRVS4400N
  • Mikrotik RouterOS for Cloud Core Routers: Versions 1016, 1036, and 1072
  • Netgear, Models: DGN2200, WNR1000, WNR2000, R6400, R7000, and R8000
  • QNAP, Models: TS251 and TS439 Pro
  • Other QNAP NAS devices running QTS software
  • TP-Link R600VPN

The infections originated in 2016; however, fears are rising due to the major uptake in scanning activity and increased Ukrainian infections over the past few weeks.

But what does this mean?  If successful, the attack could cripple routers and render a large part of Ukraine’s internet infrastructure unusable.  Think about that for a minute.  That would mean businesses, government agencies, and power plants — just to name a few — would have no internet access.  Therefore, significantly impacting their daily functionality.

It is believed the malware variant has Russian ties due to VPNFilter’s code overlap with BlackEnergy, the malware variant that took down Ukraine’s power grid in late 2015 and early 2016.  After investigation, it was determined BlackEnergy originated in Russia.

Cyber experts have two theories regarding the date of potential attack.  Some believe it will be executed during the UEFA Champions League soccer final, which is scheduled to take place in Keiv, Ukraine’s capital on May 26th.  Another theory is the attack will occur on Ukraine’s Constitution Day, June 27th; which also happens to be the date of last year’s NotPetya cyber-attack.

 

3,771 total views, 1 views today

(Visited 2,593 times, 1 visits today)

7 thoughts on “Are Russian Hackers Planning a Massive Cyber Attack?

  1. I agree that the answer didn’t answer my question. There were several parts to my question and none of them were answered. I expected way better work from them on this. I love the fact that I don’t have to worry about my computer having them on my team. This was not their usual quality!

    • Hello Mary,
      I am unable to locate an account under your name or email. Could you please reach out to our helpdesk at http://www.pcmatic.com/help and include the name and email address the account is associated with? They will be able to process the cancelation request once we have that information. Thank you.

  2. Kinda scary the way that pcmatic didn’t reinsure me that my computer will be protected like at the end of other Russian hacker warnings

  3. Useless article. Tell us how to tell if a router is infected, what to do if it is, how to prevent it if it isn’t.

  4. GENTLEPERSONS:
    “Therefore, significantly impacting their daily functionality.” is not a sentence.
    Find a way to check it out. You can do better.
    th.

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.