U.S. power companies told to review defenses after Ukraine cyber attack
Reuters, January 6, 2016
A quasi-governmental U.S. electric industry group last week advised members to review network defenses following reports that 80,000 customers of a Western Ukraine utility lost power for six hours following a cyber attack.
The Electricity Information Sharing and Analysis Center, or E-ISAC, urged members to “do a better job” at implementing multiple layers of defense against potential cyber attacks, saying the incident at Ukraine’s Prykarpattyaoblenergo electricity provider appeared to be the result of a “coordinated effort by a malicious actor.”
The nine-page confidential document, reviewed by Reuters, did not identify deficiencies in the U.S. grid that could lead to similar attacks.
Security experts said businesses in many sectors were closely following the Ukraine incident because it was a watershed event: the first known cyber attack to take down an electric grid. It was also one of just a handful of known cyber attacks that have damaged any kind of physical infrastructure.
Kimberly Mielcarek, a spokeswoman for E-ISAC, said that the organization would continue to provide more data as it pursued an investigation with help of the federal government.
“There is no credible evidence that the incident could affect North American grid operations and no plans to modify existing regulations or guidance based on this incident,” she said in an emailed statement.
A quasi-governmental U.S. electric industry group last week advised members to review network defenses following reports that 80,000 customers of a Western Ukraine utility lost power for six hours following a cyber attack.
The Electricity Information Sharing and Analysis Center, or E-ISAC, urged members to “do a better job” at implementing multiple layers of defense against potential cyber attacks, saying the incident at Ukraine’s Prykarpattyaoblenergo electricity provider appeared to be the result of a “coordinated effort by a malicious actor.”
The nine-page confidential document, reviewed by Reuters, did not identify deficiencies in the U.S. grid that could lead to similar attacks.
Security experts said businesses in many sectors were closely following the Ukraine incident because it was a watershed event: the first known cyber attack to take down an electric grid. It was also one of just a handful of known cyber attacks that have damaged any kind of physical infrastructure.
Kimberly Mielcarek, a spokeswoman for E-ISAC, said that the organization would continue to provide more data as it pursued an investigation with help of the federal government.
“There is no credible evidence that the incident could affect North American grid operations and no plans to modify existing regulations or guidance based on this incident,” she said in an emailed statement.


