The Growing Threat Of Russian Cyber Reprisals On Britain

Banks, energy and water companies are on maximum alert over the threat of a serious cyber-attack from Moscow as concern continues over the safety of Russian exiles in the UK.

Fears that Russia will target Britain’s critical national infrastructure have prompted round-the-clock threat assessments by the UK’s financial sector, energy firms and GCHQ, the UK’s largest intelligence agency, along with the security services MI5 and MI6.

The Bank of England, major financial institutions, including Lloyds and organisations such as Water UK are working with the government’s National Cyber Security Centre (NCSC) to assess the next move from Moscow following the murder of Nikolai Glushkov, 68, and the Salisbury chemical attack.

Scotland Yard on Saturday 17th March issued a renewed appeal for information for anyone who may have seen a burgundy red BMW owned by Sergei Skripal, 66, the former Russian spy who was found unconscious on 4 March in Salisbury along with his daughter, Yulia.

The pair were poisoned with a nerve agent and remain critical but stable in hospital. Glushkov, a businessman and a known critic of President Vladimir Putin, was found strangled at his home in London last week. 

Police across Britain have begun contacting Russian exiles to discuss their safety as they investigate the murder of Glushkov, understood to have been on a list of 22 “fugitives” published by the Russian embassy in London last year. Officers have yet to establish if there is a link between the attacks.

Intelligence officials, however, fear that Moscow may strike next using very different methods, referring to Russia’s involvement in the crippling NotPetya ransomware cyber-attack last year that targeted Ukraine’s financial, energy and government sectors before it spread across the world.

On Thursday 15th March the Trump administration accused Russia of engineering a series of cyber-attacks that targeted American and European nuclear power plants and water and electricity systems, the first time the United States has publicly accused Moscow of hacking into America’s energy infrastructure.

The UK’s NCSC is based inside GCHQ and notifies UK firms considered to be “critical national infrastructure” and the government of the latest threat level. It is monitoring significant Russian activity in the UK, though it is understood that no specific threat from Russia has emerged since the attempted murder of Skripal and his 33-year-old daughter and the murder of Glushkov. Robert Hannigan, a former director of GCHQ and the National Security Council, told the Observer that the NCSC was monitoring “very large volumes” of attacks every day on the UK, including its globally important financial services.
Hannigan, who was responsible for the UK’s first cyber strategy in 2009 and is now a senior associate fellow at the Royal United Services Institute, said that from his experience, which also includes three years as prime minister Tony Blair’s security adviser, he had never seen Russia so unpredictable and hostile. “In their [the Russians] current mood it’s hard to know what they will do. What’s different now is the willingness to be reckless, not to play by the rules that most civilised countries play by and not to worry about being found out. They no longer seem to care.”

Hannigan said they were continually detecting Russians on UK cyber networks. “They’re constantly being found on networks but it’s their intent that matters more than the fact they are there. The difficulty with cyber is that you can be on a network to gather intelligence or you can be on a network to do something destructive and the two look pretty much the same.”

A senior banking source, confirming that the sector was working closely with GCHQ and the security services to evaluate any threat from Russia, said they were also concerned about the risk of attack, not just from the Kremlin but from rogue elements caught up in the febrile climate that has prevailed since the Salisbury chemical attack. 

“It is possible that Russian patriots may take it upon themselves to make a point at a time like this,” said the source.
A Lloyds spokesman said: “We update and test our defences regularly and work closely with both industry bodies and law enforcement agencies to help us protect our customers.” 

A Water UK spokesperson, which represents the major water companies, said it was in regular contact with government officials to ensure its cyber defences were sufficiently robust. 

The UK government has floated the idea of fining organisations which fail to implement effective cyber security measures as part of plans to make Britain’s essential infrastructure resilient against future cyber-attacks. 

Beyza Unal, a research fellow at Chatham House’s international security department, said that the UK had been shoring up its defences in the face of the evolving cyber threat. “The UK has a really good cyber defence strategy planning as well as organisation, each sector talks to the government organisations,” she said.

Latest figures from the NCSC reveal more than 1,100 attacks over the past year, 590 significant. Thirty required action by government bodies, a number of which targeted the UK’s internationally important financial sector.

Guardian

You Might Also Read:

Russia Warns UK Against Cyber Retaliation:

British IT Bosses Fear Sophisticated Cyber Threats:

UK To Increase National Cyber Defences:
 

« North Korea's Cyber Soldiers Are Concealed Abroad
Millions Of Facebook Profiles Were ‘Harvested’ In US Election Breach »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Directory of Cyber Security Suppliers

Directory of Cyber Security Suppliers

Our Supplier Directory lists 7,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Fieldfisher

Fieldfisher

Fieldfisher's Technology, Outsourcing & Privacy Group has class-leading expertise in privacy, data & cybersecurity, digital media, big data, the cloud, mobile payments and mobile apps.

360Logica

360Logica

360Logica is a software testing company offering numerous kinds of testing services to improve the quality and performance of your software and IT systems.

Vector InfoTech

Vector InfoTech

Vector InfoTech is a leader in Industrial Security, Networks, IT and Telecommunications.

Science Applications International Corporation (SAIC)

Science Applications International Corporation (SAIC)

SAIC is a premier technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. Services and solutions include Cybersecurity.

Modulo Security

Modulo Security

Modulo provides automated Governance, Risk, and Compliance (GRC) solutions.

National Cyber Security Center (NCSC) - Hungary

National Cyber Security Center (NCSC) - Hungary

The National Cyber Security Center was established in 2015 by uniting the GovCERT-Hungary, National Electronic Information Security Authority (NEISA) and the Cyber Defence Management Authority (CDMA).

Chronicle

Chronicle

Chronicle products combine intelligence about global threats in the wild, threats inside your network, and unique signals about both.

Thoma Bravo

Thoma Bravo

Thoma Bravo is a leading private equity firm with a 40+ year history and a focus on investing in software and technology companies.

Kontron

Kontron

Kontron offers a combined portfolio of secure hardware, middleware and services for Internet of Things (IoT) and Industry 4.0 applications.

Cloudsec Asia

Cloudsec Asia

Cloudsec Asia is Thailand's top-ranked cybersecurity consultant company. We offers security services to ensure that all your IT assets are reliable, accessible, and secure.

Synoptek

Synoptek

Synoptek is a global systems integrator and managed IT services provider (MSP). We offer comprehensive IT management and consultancy services to organizations worldwide.

Professional Labs

Professional Labs

Professional Labs specialize in simplifying complex problems for our customers with Cloud Services, Managed Services and Cyber Security.

DigitalXForce

DigitalXForce

DigitalXForce is the Digital Trust Platform for the New Era – SaaS based solution that provides Automated, Continuous, Real Time Security & Privacy Risk Management.

Cyber Intell Solution (CIS)

Cyber Intell Solution (CIS)

Cyber Intell Solution provide expert consulting, specialized products, and tailored operational services to governmental and corporate industry worldwide.

Amnet Technology Solutions (Amnet Systems)

Amnet Technology Solutions (Amnet Systems)

Amnet Systems is a technology services organization that provides Managed IT, Cloud Computing, Cyber Security, Data Center and Audio Visual services since 1995.

Trofi Security

Trofi Security

Trofi Security provides Information Technology and Information Security services to organizations in both the public and private sectors.