Security News > 2022 > March > Russian government sites hacked in supply chain attack
Russia says some of its federal agencies' websites were compromised in a supply chain attack on Tuesday after unknown attackers hacked the stats widget used to track the number of visitors by multiple government agencies.
The list of sites impacted in the attack includes the websites of the Energy Ministry, the Federal State Statistics Service, the Federal Penitentiary Service, the Federal Bailiff Service, the Federal Antimonopoly Service, the Culture Ministry, and other Russian state agencies.
"It is difficult to compromise these websites directly, so hackers attack resources through external services and thus gain access to demonstrate incorrect content," the press service of the Russian Ministry of Economic Development told Interfax.
This comes after the Russian government shared a list of more than 17,000 IP addresses allegedly used in DDoS attacks against Russian networks.
The Federal Security Service's National Coordination Center for Computer Incidents warned Russian organizations to take measures to counter threats to their information security and shared guidance to defend against such attacks.
"There are nonstop cyberattacks on Russian sites from abroad. We are getting prepared for various scenarios in order to ensure the accessibility of Russian [online] resources. There are no plans to switch off the internet from inside ," a spokesperson told Interfax.
News URL
Related news
- LottieFiles hacked in supply chain attack to steal users’ crypto (source)
- Over 4,000 Adobe Commerce, Magento shops hacked in CosmicSting attacks (source)
- Microsoft and DOJ disrupt Russian FSB hackers' attack infrastructure (source)
- Supply Chain Attacks Can Exploit Entry Points in Python, npm, and Open-Source Ecosystems (source)
- Russian RomCom Attacks Target Ukrainian Government with New SingleCamper RAT Variant (source)
- Crypt Ghouls Targets Russian Firms with LockBit 3.0 and Babuk Ransomware Attacks (source)
- LottieFiles hit in npm supply chain attack targeting users' crypto (source)
- LottieFiles supply chain attack exposes users to malicious crypto wallet drainer (source)
- Warning: Over 2,000 Palo Alto Networks Devices Hacked in Ongoing Attack Campaign (source)