Russia Accused Of Cyber Attack On Norway

Russia has been accused of carrying out a "significant" cyber-attack on the Norwegian parliament in August. In this attack/hack, unauthorised individuals got access to the email accounts of several elected members of the Storting, Norway's single-chamber parliament.

The cyber criminals also hacked into accounts belonging to the parliament’s employees. An unspecified amount of data was stolen and this has members of Norway's main opposition party.

Norway's foreign minister, Ine Eriksen Soereide, told reporters that the attack was created by Russia and she said it is very a serious incident affecting the country's "most important democratic institution.....This is a serious event that hit our most important democratic institution.... Based on the information available to the government, it is our assessment that Russia stood behind this activity."” said Soereide.

Soereide did not give details of any action that Norway might take against its neighbor. A Norwegian foreign ministry spokeswoman declined to comment when asked whether Russia would be asked to recall its ambassador or any of its diplomats from Norway. 

Moscow has rejected Norway's claim, calling it a ‘serious and willful provocation.’ In addition, the Russian embassy referred to the fact that Russia does not blame the authorities of other countries in such cases, despite the fact that millions of cyber-attacks are annually committed on Russian state Internet resources from abroad, including from foreign missions in Norway.

These sort of events go back also to September 2018 when a Russian IT adviser named Mikhail Bochkaryov was arrested at Oslo Airport after exhibiting strange behavior at an IT conference held in Norway's parliament.  Bochkaryov, an employee of the Russian parliament's upper chamber, had been attending a seminar organised by the European Centre for Parliamentary Research and Documentation on the Storting's digitalisation process. 

Norway’s Police Security Service (PST) said the IT professional had been detained on suspicion of illegal intelligence activities and later released with charge.

  • In 2017, Norway accused APT 29 of carrying out spear-phishing attacks on Norway’s foreign ministry, army, and other institutions. Arne Christian Haugstoyl, an official with PST, said that the group, which has "links to the Russian authorities," had targeted nine different email accounts.  
  • In 2018, NATO member Norway arrested a Russian national suspected of gathering information on the parliament's internet network, but released him several weeks later due to lack of evidence.

The two countries, which share a common border in the Arctic, have had good relations, but these have become strained since Russia's annexation of Ukrainean territory in the  Crimean peninsula 

RFERL:         Infosecurity Magazine:         Security Week:        BBC:         112 UA

You Might Also Read: 

German Government Hit By Russian Hackers:

 

« Social Media Has Gone Global
Artificial Intelligence: Threats & Opportunities »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

FT Cyber Resilience Summit: Europe

FT Cyber Resilience Summit: Europe

27 November 2024 | In-Person & Digital | 22 Bishopsgate, London. Business leaders, Innovators & Experts address evolving cybersecurity risks.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

Bryan Cave LLP

Bryan Cave LLP

Bryan Cave LLP is a global business and litigation law firm. Practice areas include Data Privacy and Security.

Bugcrowd

Bugcrowd

As leaders in crowdsourced security testing, Bugcrowd connects companies and their applications to a crowd of tens of thousands of security researchers to identify critical software vulnerabilities.

Optiv

Optiv

Optiv is a market-leading provider of end-to-end cyber security solutions. We help clients plan, build and run successful cyber security programs that achieve business objectives.

Tenfold Software

Tenfold Software

Tenfold is the unique, centralized platform for managing user and permissions efficiently and automatically.

Cyscale

Cyscale

Cyscale automates the contextual analysis of cloud misconfigurations, vulnerabilities, access, and data, to provide an accurate and actionable assessment of risk.

Swedish Board for Accreditation and Conformity Assessment (SWEDAC)

Swedish Board for Accreditation and Conformity Assessment (SWEDAC)

SWEDAC is the national accreditation body for Sweden. The directory of members provides details of organisations offering certification services for ISO 27001.

Prompt

Prompt

Prompt supports the creation of partnerships and the setting up of industrial-institutional applied R&D projects for all ICT sectors.

Adaptive Shield

Adaptive Shield

Addaptive Shield - Complete Control For Your SaaS Security. Proactively find and fix weaknesses across your SaaS platforms.

Privakey

Privakey

Transaction Intent Verification. Privakey delivers a secure channel to streamline high risk transactions, enabling digital trust between services and their users.

Verichains

Verichains

Verichains Lab is a pioneer and leading APAC blockchain security firm with extensive expertise in the areas of security, cryptography and core blockchain technology.

Censinet

Censinet

Censinet provides the first and only third-party risk management platform for healthcare organizations to manage the threats to patient care that exist within an expanding ecosystem.

Bitdefender

Bitdefender

Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide.

Avalon Cyber

Avalon Cyber

Arm your organization in the fight against cyberattacks by partnering with the experts at Avalon Cyber.

Rampart AI

Rampart AI

Tackling DevSecOps Issues In Application Security. Rampart has revolutionized the shift left security approach, applying zero-trust to application development.

Google Safety Engineering Center (GSEC)

Google Safety Engineering Center (GSEC)

GSEC Málaga is an international cybersecurity hub where Google experts work to understand the cyber threat landscape and to create tools that keep users around the world safer online.

Apex

Apex

We aspire to make the AI revolution run faster, securely, for the benefit of all. We are purposely built for the new AI era and are creating capabilities to safely enable AI.