AIRLINK 65.75 Decreased By ▼ -0.15 (-0.23%)
BOP 5.67 Decreased By ▼ -0.02 (-0.35%)
CNERGY 4.62 Decreased By ▼ -0.03 (-0.65%)
DFML 23.10 Increased By ▲ 0.25 (1.09%)
DGKC 71.20 Increased By ▲ 0.50 (0.71%)
FCCL 20.80 Increased By ▲ 0.45 (2.21%)
FFBL 28.80 Decreased By ▼ -0.31 (-1.06%)
FFL 9.95 Increased By ▲ 0.02 (0.2%)
GGL 10.13 Increased By ▲ 0.05 (0.5%)
HBL 115.75 Increased By ▲ 0.50 (0.43%)
HUBC 129.99 Increased By ▲ 0.49 (0.38%)
HUMNL 6.62 Decreased By ▼ -0.08 (-1.19%)
KEL 4.53 Increased By ▲ 0.15 (3.42%)
KOSM 5.13 Increased By ▲ 0.11 (2.19%)
MLCF 37.43 Increased By ▲ 0.47 (1.27%)
OGDC 133.30 Increased By ▲ 2.10 (1.6%)
PAEL 22.78 Increased By ▲ 0.30 (1.33%)
PIAA 26.10 Decreased By ▼ -0.20 (-0.76%)
PIBTL 6.53 No Change ▼ 0.00 (0%)
PPL 113.19 Increased By ▲ 1.07 (0.95%)
PRL 28.45 Increased By ▲ 0.06 (0.21%)
PTC 16.21 Increased By ▲ 0.10 (0.62%)
SEARL 57.65 Decreased By ▼ -0.64 (-1.1%)
SNGP 65.94 Increased By ▲ 0.25 (0.38%)
SSGC 11.06 Increased By ▲ 0.04 (0.36%)
TELE 8.98 Increased By ▲ 0.04 (0.45%)
TPLP 11.95 Increased By ▲ 0.42 (3.64%)
TRG 69.53 Increased By ▲ 0.29 (0.42%)
UNITY 23.73 Decreased By ▼ -0.22 (-0.92%)
WTL 1.37 Increased By ▲ 0.02 (1.48%)
BR100 7,323 Increased By 19.4 (0.26%)
BR30 24,105 Increased By 154.7 (0.65%)
KSE100 70,557 Increased By 223.2 (0.32%)
KSE30 23,200 Increased By 79 (0.34%)
World

India's Kudankulam Nuclear Power Plant becomes victim of cyber attack

The attack is being tied to North Korea. The cyber attack targeted research and technical data and was focused on
Published October 30, 2019
  • The attack is being tied to North Korea.
  • The cyber attack targeted research and technical data and was focused on collection of technical information.
  • 'Dtrack' was the same malware which wiped hard drives at South Korean media companies and banks in 2013.

The most powerful station in India, the Kudankulam Nuclear Power Plant, recently came under the target of a cyber attack.

The malware, which has been identified by researchers as North Korea's Dtrack, was reported by Pukhraj Singh - a cyber security professional, to have gained 'domain controller-level access' at Kudankulam. Dtrack is the same malware which was tied to North Korea's Lazarus threat group by researchers based on code shared with DarkSeoul. The malware attack wiped hard drives at South Korean media companies and banks in 2013.

Singh said that he was alerted of the malware by a 'third party', after which he alerted the National Cyber Security Coordinator on September 3. The attack targeted research and technical data and was focused on collection of technical information, using a Windows SMB network drive share with credentials hard-coded into the malware to aggregate files to steal.

However, the plant denied that it was a victim of the cyber attack and any cyber attack 'on the Nuclear Power Plant Control System is not possible'. The statement further said that the control systems network is isolated from the plant's administrative networks.Following their statement, Singh said that maybe they were confusing control systems with a domain controller. "They're different things," Singh tweeted.

According to research, instead of attacking the nuclear infrastructures and controllers directly, the attack targeted and aimed to steal information. It is unclear how much information was actually stolen.

Comments

Comments are closed.