Ukraine cyber-attack: Russia to blame for hack, says Kyiv

The Ukrainian government has accused Russia of being behind Friday’s cyber-attack on dozens of official websites.

About 70 government websites were temporarily down, in the largest such attack on Ukraine in four years.

Before the sites went offline, a message appeared warning Ukrainians to “prepare for the worst”. Access to most of the sites was restored within hours.

The US and Nato condemned the attack and have offered support to Ukraine. Russia has not commented on the hack.

Experts at Ukraine’s information ministry published a timeline of how news of the attack spread, pointing out that Russian media reported it before Ukrainian outlets.

They alleged that the attacks were in response to what they called Russia’s failure in its recent talks with Nato over Ukraine.

Ukraine has come under intense pressure from its neighbour, with a build-up of some 100,000 Russian troops near its borders.

Ukraine’s SBU security service says in just nine months last year it “neutralised” 1,200 cyber-attacks or incidents.

Nato said it would soon be signing an agreement with Ukraine on enhanced cyber cooperation, which would give it access to the alliance’s malware information sharing platform.

The White House says it it will provide Ukraine with whatever support it needs to recover from the attack.

At the start of Friday’s attack, a message on the hacked websites was posted in three languages, Ukrainian, Russian and Polish.

“Ukrainian! All your personal data has been uploaded onto the public internet,” the message read. It continued: “This is for your past, your present and your future.”

The Polish language message contained serious errors and did not appear to have been written by a native speaker, according to a statement issued by Poland’s government. It also blamed Russia for the hack.

The SBU in Kyiv said later that no personal data had been leaked, according to initial assessments, and no content had been changed.

Among the sites targeted was the Diia website, a key system containing government services that stores personal vaccination data and certificates.

The European Union’s foreign policy chief, Josep Borrell, said all its resources were being mobilised to help Ukraine deal with “this type of cyber-attack”.

Was Russia behind it?

Analysis box by Joe Tidy, Cyber reporter

While the world has nervously watched Russia’s troop build-up, the cyber-security community has been watching and waiting for some sort of cyber incursion.

Hybrid or asymmetric warfare is an established part of modern conflict and Russia has proved itself adept at attacking the cyber realm as well as the physical.

During its 2008 invasion of Georgia, government websites were forced offline by attacks from Russia. And when it seized and annexed Crimea from Ukraine in 2014, Russia was accused of launching an assortment of cyber-attacks to destabilise communications and spread confusion whilst troops overran the region.

This latest attack on Ukrainian websites is consistent with previous events, but it’s also odd.

Threats of deleting personal data are likely hollow, as no data would have been compromised by attacks on public-facing websites.

Instead of a Kremlin-ordered cyber offensive this strikes me as more of a co-ordinated attack by patriotic Russian hackers which is what happened in the Georgia attacks. The Kremlin may not have ordered it but it certainly won’t turn down any efforts to further wobble Ukraine at this extremely tense time.

(c) BBC

4 comments

  1. “Experts at Ukraine’s information ministry published a timeline of how news of the attack spread, pointing out that Russian media reported it before Ukrainian outlets.”

    Which means Russia was 100% behind it, not some random hackers, but the Kremlin ghouls. This is a declaration of war, and should be treated as such, but despite Russia hacking globally, they have only received a little slap on the wrist.

    Liked by 4 people

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s

This site uses Akismet to reduce spam. Learn how your comment data is processed.