back to top
IndiaMumbai Outage Example Of China Targeting India Power Facilities

Mumbai Outage Example Of China Targeting India Power Facilities

Date:

According to a new report, China may have attacked power supply across last year during border clashes. According to the study, a major power outage in Mumbai in October, which stopped trains and shut down hospitals and the stock exchange for hours, may have been linked to these activities by a group of Chinese hackers.

The study shows that alongside the tensions, which escalated in June with the clash at Galwan Valley in which 20 Indian soldiers died for the country, Chinese malware was flowing into systems that manage power supply across India.

China-linked threat activity group RedEcho may have planted malware in key power plants in India, said the study first reported by New York Times. The links to the Mumbai power cut “provides additional evidence suggesting the coordinated targeting of Indian Load Despatch Centres,” said the study that indicated some of the country's most sensitive infrastructure is vulnerable to systematic attacks from Chinese hackers using state of the viruses that hack into systems.

 

The flow of malware was detected by Recorded Future, a US-based company that analyses online digital threats.  It found that most of the malware was never activated. And because Recorded Future could not get inside India's power systems, it could not examine the details of the code itself, which was placed in strategic power-distribution systems across the country.

Since early 2020, Recorded Future's Insikt Group observed a large increase in suspected targeted intrusion activity against Indian organisations from Chinese state-sponsored groups, said the report.

 

“From mid-2020, Recorded Future's midpoint collection revealed a steep rise in the use of infrastructure tracked as AXIOMATICASYMPTOTE, which encompasses ShadowPad command and control servers, to target a large swathe of India's power sector. 10 distinct Indian power sector organisations, including four of the five regional load dispatch centres responsible for the operation of the power grid through balancing electricity supply and demand, have been identified as targets in a concerted campaign against India's critical infrastructure. Other targets identified include two Indian seaports,” the report said.

There was a “clear and consistent pattern of Indian organizations being targeted in this campaign through the behavioural profiling of network traffic to adversary infrastructure”, said Recorded Future.

 

A total of 21 IP addresses linked to 12 Indian organizations in the power generation and transmission sector – classified as critical — were targeted.

The report said media reports had previously linked the October power outage in Mumbai to malware at a Padgha-based State Load Despatch Centre. “At this time, the alleged link between the outage and the discovery of the unspecified malware variant remains unsubstantiated. However, this disclosure provides additional evidence suggesting the coordinated targeting of Indian Load Despatch Centres,” said the report.

Northlines
Northlines
The Northlines is an independent source on the Web for news, facts and figures relating to Jammu, Kashmir and Ladakh and its neighbourhood.

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Share post:

Popular

More like this
Related

Vaishno Devi shrine board to offer saplings as ‘Prasad’ to save planet

Jammu, May 18: The pilgrims visiting Shri Mata Vaishno...

Earthquake Of 3.5 Magnitude Hits Jammu And Kashmir

Jammu, May 18: An earthquake of 3.5 magnitude on...

Arvind Kejriwal’s personal secretary Bibhav Kumar, accused of assaulting AAP MP Swati Maliwal, arrested

New Delhi, May 18: Delhi Chief Minister Arvind Kejriwal's...

AAP releases Swati Maliwal’s new video walking out of Arvind Kejriwal’s residence

New Delhi, May 18: AAP on Saturday released a...