UK Power Outage - The Cyber Effect?

Electric power distribution networks across Britain were struck by an exceptional damaging power outage, with cities, towns, villages and airports, rail and road networks across England and Wales without electricity which affected around 1 million UK citizens.

The power cut happened on Friday 9th August in the early evening at 5pm with blackouts affecting the midlands, the South East, South West, North West and N. East of England, and Wales. 

The UK National Grid said its systems were not to blame and the power cut was caused by the loss of two generators.

Duncan Burt, the Director of Operations, say that the UK’s Grid systems still ‘worked well’ after the ‘incredibly rare event’ of two power stations disconnecting. 

When asked by the BBC he said he did not believe that a cyber-attack or unpredictable wind power generation were to blame, although both US and UK security services have been warning recently that attacks on Critical National Infrastructure are an increasing liability and threat with the ability to seriously disrupt national operations. And increasingly cyber incursions have been reported, attributed to nation-states.

These attacks are with bytes and bots and they are aimed at our energy grids, our infrastructure, and even our private financial and other information.

The US Government has announced a surprising move to secure power grids by using “retro” technologies. It comes after numerous attempts by foreign actors to launch cyberattacks on so-called critical national infrastructure (CNI). Nations have been trying to secure the industrial control systems that power CNI for years. The challenge lies in the fact that these systems were not built with security in mind, because they were not originally meant to be connected to the internet. 

It is with this in mind cyber monitoring should be considerably improved in the UK to be made constant and it requires a new strategy: rather than bringing in new technology and skills, it should use analog and manual technology to isolate the grid's most important control systems. 

Around 300,000 UK Power Networks customers were affected in London and the south east, and Western Power Distribution said around 500,000 people were affected in the Midlands, south west and Wales. Power was restored to them all shortly after 6pm. Northern Powergrid, which serves Yorkshire and the North East, said 110,000 of its customers lost power, while at least 26,000 people were without power in the North West of England, Electricity North West said.

No Answers as to the Cause - So far
The “incredibly rare event” appears to have been triggered after two power stations disconnected from the grid almost at the same time, said a senior official at National Grid, which owns the electricity transmission system in England and Wales.
However, the questions remain as to what caused the massive power-out. And there are questions as to whether it was a planned cyber-attack by a government Hacker group in order to test the effects on the UK. 

These questions are still being asked and it will take some weeks before a full report is completed.

The UK’s energy watchdog Ofgem said it had asked for "an urgent detailed report from National Grid so we can understand what went wrong and decide what further steps need to be taken".

News By CSI:

You Might Also Read:

Improving Electric Power-Grid Security:

America Remains Vulnerable To Cyber Attack:

 

« FBI Turns To Social Media To Track Shooters
US National Security Agency’s Cyber Offensive »

ManageEngine
CyberSecurity Jobsite
Check Point

Directory of Suppliers

TÜV SÜD Academy UK

TÜV SÜD Academy UK

TÜV SÜD offers expert-led cybersecurity training to help organisations safeguard their operations and data.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Tines

Tines

The Tines security automation platform helps security teams automate manual tasks, making them more effective and efficient.

Association of Information Security Professionals (AISP)

Association of Information Security Professionals (AISP)

The Association of Information Security Professionals (AISP) represents the interests of information security professionals in Singapore.

Nimbusec

Nimbusec

Nimbusec scans your website around the clock and informs immediately if it has been hacked or manipulated

Engineering Group

Engineering Group

Engineering is the Digital Transformation Company, a leader in Italy and with over 80 offices across Europe, the United States, and South America.

QuintessenceLabs

QuintessenceLabs

QuintessenceLabs offers a suite of Data Security technology, products and solutions to secure digital information in-transit, at-rest or in-use.

Lineal Services

Lineal Services

Lineal supports clients in meeting their digital forensics, cyber security and eDiscovery needs by providing bespoke solutions to complex problems.

Cyfirma

Cyfirma

CYFIRMA offers Cyber threat visibility and intelligence suite and services aimed at keeping your organization’s cybersecurity posture up-to-date.

URS Certification

URS Certification

United Registrar of Systems (URS Certification) is an independent certification body operating in more than 30 countries within the multinational URS Holdings.

Green House Data

Green House Data

Green House Data is a managed services provider delivering hybrid solutions to enterprises who need secure IT environments and efficient management of their critical applications and business data.

VeriClouds

VeriClouds

VeriClouds is a password verification service that helps organizations detect compromised passwords and stop account takeover attacks.

Center for Information Technology Policy (CITP) - Princeton University

Center for Information Technology Policy (CITP) - Princeton University

The Center for Information Technology Policy at Princeton University is a nexus of expertise in technology, engineering, public policy, and the social sciences.

NARIS

NARIS

NARIS is the leading provider of an integrated Governance, Risk and Compliance platform called NARIS GRC.

iSPIRAL IT Solutions

iSPIRAL IT Solutions

iSPIRAL is a leading regulatory technology software provider delivering state-of-art AML, KYC, Risk and Compliance solutions.

Chestnut Hill Technologies (CHT)

Chestnut Hill Technologies (CHT)

CHT provide Best Practices IT Cybersecurity and Technology Solutions and Consulting Support to the Mid Cap through Fortune 1000 Nationwide.

CyberEPQ

CyberEPQ

CyberEPQ (Cyber Extended Project Qualification) is the UK’s first and only Extended Project Qualification in Cyber Security.

CrashPlan

CrashPlan

CrashPlan delivers secure, continuous endpoint backup and recovery for businesses of all sizes.

GrabDefence

GrabDefence

GrabDefence enables digital businesses to thrive by safeguarding their ecosystem against fraud risk, digital identity threats and compliance challenges.