Ukraine Railway Systems Attacked By Russian Hackers

Online train tickets have been unavailable in Ukraine due to a sophisticated cyber hack, which the Ukrainian Ministry of Justice says Russia is behind this attack. Ukraine’s national railway company Ukrzaliznytsia, confirmed in a statement that the cyber attack had taken place on March 24.

The company said this attack was “very systematic, complex, and multi-level”. It took down its online portal, rendering the sale of tickets online impossible at least until March 25. So far, back-up protocols are keeping trains running 

Ukrzaliznytsia’s infrastructure is frequently targeted by Russian drones and missiles and cyber attacks. 
Following the latest attack, the rail company doubled the number of ticket windows and staff at several stations, including Kyiv, to accommodate passengers. Users were advised to purchase domestic and international paper tickets through those ticket offices operating with more staff. Passengers aiming to travel after March 25th have been advised to refrain from visiting ticket offices to avoid queues and to allow those with imminent departures to be served.

Ukrzaliznytsia stated that its experts are working closely with the Cyber Department of the Security Service of Ukraine (SBU) and the Ukrainian Computer Emergency Response Team (CERT-UA) to restore all disrupted services. “As Ukrzaliznytsia has been the target of cyber-attacks in the past, the company has implemented backup protocols,” the company added.

“The key thing is that the enemy was not able to disrupt the train schedule: trains are running stably, on schedule, and without delays, and all operational processes have been adjusted to a backup mode. The railway continues to operate despite physical attacks on infrastructure and will not be stopped by even the most malicious cyber-attacks.”

A complete restoration of user-facing online services will only be possible once the railway company and its partners have tested services for potential vulnerabilities.

With many Ukrainian airports shut down and air traffic suspended due to the Russian invasion, Ukraine's railways remain a vital lifeline for the country's economy. 

Kyiv Indepndent   |  Pravda   |  Railtech  |   Bleeping Computer  |   Infosecurity Magazine   |   The Record     

Image: @Ukrzaliznytsia

You Might Also Read: 

Poland’s Train Network Disrupted:


If you like this website and use the comprehensive 7,000-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Sign up for our FREE Weekly Newsletter
Combatting Rising AI Attacks With AI-Powered Defences  »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

Directory of Cyber Security Suppliers

Directory of Cyber Security Suppliers

Our Supplier Directory lists 7,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

Acunetix

Acunetix

Acunetix is a leading web vulnerability scanner, widely acclaimed to include the most advanced SQL injection and XSS black box scanning technology.

Cyber 360

Cyber 360

Cyber 360 is a Cybersecurity contract and fulltime placement firm dedicated to identifying and hiring Cybersecurity professionals.

V-Key

V-Key

V-Key is a global leader in software based digital security, providing solutions for mobile identity, authentication, authorization, and mobile payments for major banks.

Swiss Cyber Storm

Swiss Cyber Storm

Swiss Cyber Storm is a non profit organization hosting the international Swiss Cyber Storm Conference and running the Swiss part of the European Cyber Security Challenges.

i-Sprint Innovations

i-Sprint Innovations

i-Sprint is a leader in Securing Identity and Transactions in the Cyber World for industries that are security sensitive.

YL Ventures

YL Ventures

YL Ventures funds and supports brilliant Israeli tech entrepreneurs from seed to lead.

PAX Momentum

PAX Momentum

PAX Momentum is the Mid-Atlantic’s premier startup accelerator, specializing in cyber, enterprise software, telecom, CleanTech, FinTech, InsureTech, and AI.

Citalid

Citalid

The Citalid cyber risk management platform combines threat and business intelligence to identify the risks scenarios you face.

Clario Tech

Clario Tech

Clario is a simple, comprehensive, personalized protection app. It comes with a full suite of intelligent security software and intelligent people to help you live a better, safer digital life.

Cypherix

Cypherix

Cypherix is tightly focused on cryptography and data security. We leverage our expertise to deliver state-of-the-art, world-class encryption software packages.

WebOrion

WebOrion

WebOrion is an All-in-One Web Security & Performance Suite. Fortify, accelerate and monitor your website today.

Rhino Security Labs

Rhino Security Labs

Rhino Security Labs is a top penetration testing and security assessment firm, with a focus on cloud pentesting, network pentesting, web application pentesting, and phishing.

Active Countermeasures

Active Countermeasures

Active Countermeasures believe in giving back to the security community. We do this through free training, thought leadership, and both open source and affordable commercial tools.

Aunalytics

Aunalytics

Aunalytics is a data platform company that delivers insights as a service to answer your most important IT and business questions.

Gutsy

Gutsy

Gutsy uses process mining to help organizations visualize and analyze their complex security processes to understand how they actually run, based on observable event data.

ViCyber

ViCyber

ViCyber is an Australian based company whose mission is to simplify and strengthen cybersecurity for all businesses, irrespective of size.