Connect with us

Texas

Tiny Texas City Repels Russia-Tied Hackers Eyeing Water System

Published

on

Tiny Texas City Repels Russia-Tied Hackers Eyeing Water System


When Mike Cypert got the call that utilities in remote Texas communities were being hacked, he raced across his office to unplug the computer that ran his city’s water system.

Hale Center is a dusty, cotton-growing burg of 2,000 about five hours drive northwest of Dallas. After the alert from a software vendor in January, Cypert, the city manager, said he found thousands of attempts to breach Hale Center’s firewall, some coming from an internet address that traced back to St. Petersburg, Russia.

Within minutes of the discovery, Cypert said he reported the episode to agents from the FBI and US Department of Homeland Security, who were already looking into related incidents in nearby Texas towns. One of the hacks caused a water tank in another city to overflow.

The attacks in Texas are the latest example of hackers — some of them tied to US adversaries — targeting America’s sprawling network of water utilities. In November, an Iranian-backed group attacked Israeli-made digital controls commonly used in the water and wastewater industries in the US, affecting organizations across several states. That same month, the North Texas Municipal Water District, which supplies water to more than 2 million customers, was the victim of a ransomware attacks.

Advertisement

Chinese state-sponsored hackers also attacked a water utility in Hawaii, the Washington Post reported in December.

“The water sector is poorly resourced and is under siege from three fronts. This is now Iran, China and Russia,” said John Hultquist, chief analyst at Mandiant Intelligence.

A spokesperson for the FBI declined to comment. The Department of Homeland Security didn’t immediately respond to a request for comment.

Read More: Iranian-Linked Hacks Expose Failure to Safeguard US Water System

Researchers at Mandiant, a unit of Google Cloud, found potential connections between the attacks on water utilities in Texas and one of Russia’s most notorious hacking groups, known as Sandworm. The group has been accused of repeatedly turning out the lights in Ukraine and hacking the 2018 Olympics Opening Games in South Korea. The US government says it is part of Russia’s military spy agency, but the ties between Sandworm and the Texas attacks are less than certain. “We’ve never seen them cross the line in the US like this before,” Hultquist said.

Advertisement

Among the other victims of the recent hacks was the city of Muleshoe, a 5,000-person community in northwest Texas. A resident called the city on January 18 to report a water tank overflowing. City staff found that they’d largely lost control of the system, took it offline and called the company that provides Muleshoe’s industrial control software, City Manager Ramon Sanchez said at a public meeting the next month that was covered by the Plainview Herald. The vendor told city officials that other area communities were seeing similar problems, Sanchez said at the meeting.

Sanchez didn’t respond to messages seeking comment.

That same day, a social media account called “CyberArmyofRussia_Reborn” posted a video that appears to show hackers manipulating Muleshoe’s industrial control system. Mandiant and other cybersecurity researchers believe Sandworm created and control CyberArmyofRussia_Reborn, which Hultquist described as a hacktivist persona. It’s possible that other cyber attackers are using its platforms, he said.

Andy Bennett, the chief technology officer of cybersecurity firm Apollo Information Systems, said there are various reasons why hackers might target small-town water systems. They could provide a “testing ground” for hacking tools intended for bigger targets, he said, or give foreign countries a way to scare Americans.

“Small-town America feels safe,” said Bennett, a former cybersecurity official for the state of Texas,”and if the water supply is in jeopardy, it undoes that.”

Advertisement

US intelligence officials are still debating whether Sandworm was involved in the Texas water utility breaches, according to people familiar with the situation who didn’t want to be named due to the sensitivities.

The Russian Embassy in Washington declined to comment.

US officials are especially worried about attacks by nation-state hackers on critical sectors of the US economy, like defense, dams, energy, financial services and water systems. Last year, the Environmental Protection Agency dropped plans to require states to assess water facilities’ cyber defenses. Republican lawmakers in three states called the oversight illegal, accusing the EPA of overreach. The White House said it would work with Congress to beef up the environmental watchdog’s authority.

The attacks on Texas utilities targeted at least two other communities. In Abernathy, hackers entered through a virtual network connection, but city staff caught them within 30 seconds and cut off the attackers as they were trying to change passwords, City Manager Donald Provost told Bloomberg News. Lockney’s city manager, Buster Poling, Jr., said his staff also caught the attack early and that it “really did not affect the city.”

Hale Center’s Cypert said he learned that other towns had been attacked when the city’s industrial control software vendor called telling them to “lock down.” Hale Center uses the same vendor as Muleshoe and a handful of other area communities, he said.

Advertisement

When the warning came in, Cypert said he rushed to unplug the ethernet cable from the computer that operates the water system. Hale Center wasn’t breached, but Cypert said in reviewing its security, the city’s IT contractor found what appeared to be a brute force attempt to crack Hale Center’s firewall — 37,000 tries in four days.

The attempts on Hale Center’s firewall came from IP addresses around the world but one was repeated over and over, Cypert said. The investigation traced it back to St. Petersburg and the city’s industrial control vendor, Morgeson Consulting in Lubbock, quickly got Cypert on a conference call with FBI agents already investigating the Muleshoe attack, he said.

Morgeson Consulting’s owner didn’t immediately respond to an email seeking comment.

Cypert said he later sent the FBI data from the attempts on its firewall. The city’s IT contractor, Ben Warren, also walked the investigators through some of the technical details, he said. The agents were impressed by Warren’s technical acumen and offered the city manager a piece of advice, Cypert recalled.

“Hang on to him,” they said, referring to Warren.

Advertisement

Copyright 2024 Bloomberg.

Topics
Cyber
Texas
Russia



Source link

Advertisement

Texas

South Texas Blood & Tissue sends blood units to Austin after 6th Street mass shooting

Published

on

South Texas Blood & Tissue sends blood units to Austin after 6th Street mass shooting


SAN ANTONIO — South Texas Blood & Tissue worked late last night and early this morning to prepare and send blood units to Austin in the wake of the mass shooting on 6th street early Sunday.

The Blood Emergency Readiness Corp (BERC) has been activated and an additional 140 units have been sent from various blood centers, including O negative and O positive.

The blood bank says community support is critical and community members are encouraged to donate at any local donor center.

3 dead, 14 injured in Austin mass shooting on 6th Street, suspect fatally shot by officers

Advertisement

Mayor Gina Ortiz Jones shared her condolences, adding that commonsense gun reform may prevent such tragedies in the future.

I’m deeply saddened to hear of the mass shooting in Austin that killed and injured so many,” Mayor Jones said in a statement. “Let’s keep our neighbors to the north in our prayers, that those injured recover quickly and the families of the victims who were needlessly murdered are comforted. We must prevent such tragedies from happening through commonsense gun solutions. Thank you to the first responders who were at the scene and prevented further loss of life.

U.S. Congressman Joaquin Castro condemned the country’s gun violence in an X post saying in part “Congress must continue to work to end the scourge of gun violence in our country.”

San Antonio’s FBI office is also assisting the Austin Police Department in their investigation, officials shared at a press briefing this morning.

Special Agent Alex Doran said the joint terrorism task force is helping investigate potential early indications of terrorism.

“We have members from our Evidence Response team as well as our many other specialty teams, including our digital forensics folks that are on scene, helping to address the scene and gather additional evidence,” Doran said. “Obviously, it’s still way too early in the process to determine an exact motivation, but there were indicators that on the subject and in his vehicle that indicate potential nexus to terrorism. Again, it’s still too early to make a determination on that.”

Advertisement
Comment with Bubbles

BE THE FIRST TO COMMENT

This is a developing story.



Source link

Advertisement
Continue Reading

Texas

St. Andrew’s Prom Closet helps North Texas teens shine without the high cost

Published

on

St. Andrew’s Prom Closet helps North Texas teens shine without the high cost


It’s that time of year again – prom season. For many students, it’s a night to remember, but between dresses and other expenses, the costs can add up quickly. Every year, St. Andrew’s Methodist Church steps up to help ease the financial burden for families, offering free prom dresses and accessories to young women.

“I’m feeling very excited, very happy, you know it’s all like coming to me at once,” said Gabrielle Bennett, a high school junior.

Prom season is a moment many young girls look forward to, and finding the perfect dress.

Boutique experience for every shopper

“It was a lot of searching through a lot of dresses.. and seeing what fits, what doesn’t, what looks nice, and then you finally find one, and it fits perfect,” said Ally Atkins, a high school senior.

Advertisement

For 17 years, St. Andrew’s Methodist Church has opened its prom closet to girls across North Texas, helping those who may not be able to afford the high cost of prom. This year, organizers hope to serve 1,400 shoppers. There are more than 5,000 dresses to choose from in different colors, styles, and sizes.

“Every young lady should feel special at prom. Every young lady deserves to be beautiful, and in some cases, some of these young ladies, this would not be possible,” said Kathy Moore, a Prom Closet chairman.

Community donations make it possible

The experience is designed to feel like a real boutique – from trying on dresses to grabbing the perfect shoes, bag, and accessories. Everything is donated.

“I had one yesterday that walked into our dress area, and she stopped and just said, ‘wow,’ and so right there, that moment, that’s why we do it,” Moore said.

Organizers said the event is made possible by community donations and dozens of volunteers, but they’re always looking for more help. Next year, they hope to serve even more girls, continuing their mission to make more prom dreams come true.

Advertisement

“I want to thank this whole organization, I’m very grateful,” Bennett said.

How to participate

If you know someone who may need a prom dress this season, the Prom Closet is open until March 7. It is by appointment only. For more information, visit: https://standrewmethodist.org/prom-closet/



Source link

Continue Reading

Texas

U.S. and Israel carry out joint military strikes against Iran

Published

on

U.S. and Israel carry out joint military strikes against Iran


The U.S. and Israel announced a major military operation against Iran early Saturday, after President Trump threatened the Iranian regime for weeks to make a new deal to rein in its nuclear program, and before that, threatened it over its violent crackdown on protesters in January.



Source link

Continue Reading

Trending