Vermont Power Company Finds Possible Russia-Linked Malware On A Laptop



Malware that appears to have come from hackers in Russia was detected by the Burlington Electric Department in Vermont. The malware includes a signature for "Grizzly Steppe" that seemingly matches some of the code shared by the federal government. Given the signature, the implication is that the hackers could be linked to the Russian government.
At no point did the malware have the ability to disrupt Vermont's power grid. It was found on a laptop associated with the Electric Department, but that laptop wasn't attached to the grid.
Security professionals believe we'll need to wait for more information before conclusively linking the apparent hack to Grizzly Steppe.

No one should be making any attribution conclusions purely from the indicators in the USCERT report. It was all a jumbled mess https://twitter.com/pwnallthethings/status/815068993040039936 

Post a Comment

0 Comments