You have commented 339 times on Rantburg.

Your Name
Your e-mail (optional)
Website (optional)
My Original Nic        Pic-a-Nic        Sorry. Comments have been closed on this article.
Bold Italic Underline Strike Bullet Blockquote Small Big Link Squish Foto Photo
Britain
Major Hack Attack on UK Financial Networks
2005-06-16
Highly-organised and sophisticated hackers are being blamed for "industrial-strength" attacks on vital computer networks aimed at stealing commercially and economically sensitive information.

Nearly 300 UK government departments and businesses, considered part of the country's critical national infrastructure, have been bombarded with a sophisticated electronic attack for several months, the National Infrastructure Security Co-ordination Centre has revealed.

The infrastructure includes communications, energy, finance, health, transport and government sectors.

Similar attacks have been reported in other countries, including the US.

"We have never seen anything like this in terms of the industrial scale of this series of attacks," said Roger Cumming, director of NISCC, which protects critical infrastructure from electronic threats.

"This is not a few hackers sitting in their bedrooms trying to steal bank account details from individuals. This is aimed at organisations, targeted at gaining information and is extremely well organised and well structured."

The NISCC will on Thursday issue a warning to business to be on alert for the hackers, the first time the secretive organisation has made such a high-profile announcement, highlighting the severity of its concerns.

Many of the attacks appear to be coming through internet addresses located in Asia, Mr Cumming said, although he declined to specify which countries. The NISCC and National Hi-Tech Crime Unit are working with the authorities in those countries to track and close down these addresses.

The attacks have come via unsolicited e-mails that contain a "Trojan", or malicious computer code contained inside an apparently harmless file. When opened, the code secretly installs itself on to the user's computer, allowing a remote attacker to gain control of the system.

Mr Cumming said the attacks were unrelated to the industrial espionage network discovered last month in Israel, which was also using Trojan virus software.

The NISCC believes no significant information has been stolen from the critical national infrastructure organisations. However, there is concern the attacks may spread to the wider business community. In particular, banks, insurers and other financial institutions could be affected.

Mr Cumming is urging all businesses to monitor their IT systems and tighten security. The hackers have focused on individuals whose jobs involve dealing with sensitive information, and have tried to collect user names and passwords and upload data from the infected computers.

The NISCC warns that bogus e-mails are difficult to spot. The subject lines have been tailored to refer to news articles that would specifically interest the recipient and the e-mails have been "spoofed" to make it appear they come from trusted contacts.

Cyberwarfare and cyber industrial espionage has been growing exponentially in the last few years. Bringing down our economy was one motive for the 9/11 attacks on Manhattan. Bringing down the nets accomplishes the same thing.
Posted by:too true

#5  Love the graphic!!
Posted by: IG-88   2005-06-16 20:28  

#4  DoD has the capability to 'counter-attack', but the lawyers [you know like the ones that had to be asked 'mother may I' when the CIA had a potential Predator shot shot at him and were told 'wait' during the early stages of the Afghan campaign] say 'no'. We might harm some poor third party who's too damn lazy to monitor their servers for routing highjackers.
Posted by: Cleresing Glerert2363   2005-06-16 14:01  

#3  This explains a lot! Thanks for posting, tt.
Posted by: Bulldog   2005-06-16 13:57  

#2  This is interesting especially in light of computer failures on Wall Street recently.
Posted by: jawa   2005-06-16 10:13  

#1  I finger it as Indonesia and China.

Indonesia has prior history of web attacks: against Malaysia and against the Corby websites.

It has a well-trained computer warfare military wing - it just doesn't advertise it.

China would be my next guess.
Posted by: anon1   2005-06-16 09:17  

00:00