Sources Claim Telvent Hacking Linked to Group in China

By Ed Silverstein September 28, 2012

There are reports that the recent hacking of a Canadian software maker was linked to a source in China. The Canadian government is not confirming the allegation, however, and China denies it.

Telvent, owned by France's Schneider Electric SA, affected the company’s system in the United States, Canada and Spain, according to KrebsOnSecurity.com. The website also said its sources are blaming the attack on Chinese hackers.

Canadian officials, however, did not identify the source of the attack as China, Reuters said. The Chinese government denies it was involved in the hacking.

Telvent manufactures software used by energy companies to manage the production and distribution of electricity. Its technology is used for power grids and smart energy technology.

The hackers broke into Telvent’s network, installed malicious software and apparently took files, The Register reported. The attack may have affected some customer files, The Register added.

“Criminals can now study the documents for vulnerabilities in the systems, and potentially devise attacks to sabotage nations' electricity distribution networks,” The Register warned.

Telvent systems manage over 60 percent of the total hydrocarbon movements in North and Latin America, and controls transmission and distribution of over 140,000 GWh via electrical grids.

The Register says Dell SecureWorks alleges the “Comment Group” could be responsible for the hacking. The Comment Group is a large and active hacking group in China, according to Sophos.

Meanwhile, Telvent cut data links between some of its internal network and clients' systems, while it investigates the attack.

“Although we do not have any reason to believe that the intruder(s) acquired any information that would enable them to gain access to a customer system, or that any of the compromised computers have been connected to a customer system, as a further precautionary measure, we indefinitely terminated any customer system access by Telvent,” the company said in a statement carried by Sophos.

Dale Peterson, founder of Digital Bond, told Wired that "some project files contain the 'recipe' for the operations of a customer, describing calculations and frequencies at which systems run or when they should be turned on or off.”

Telvent informed customers about the attack in a recent letter. The hacking was discovered on Sept. 10.

Last year, Chinese officials denied it was involved in the alleged hacking of U.S. civilian satellites, TechZone360 said.




Edited by Braden Becker

TechZone360 Contributor

SHARE THIS ARTICLE
Related Articles

President Obama Outlines Plans for Greater Protection of U.S. Interests from Cyberthreats

By: Peter Bernstein    2/12/2016

President Obama, in a commentary piece in the Wall Street Journal, has laid out what is described as "Our new national action plan includes $3 billion…

Read More

Self-Driving Car Update: The Human Driver Is No Longer a Risk

By: Rob Enderle    2/11/2016

This week, the NHTSA made a decision to designate the computer in a self-driving car the driver. This means, in theory, that you can now build a car t…

Read More

Artificial Intelligence: Man's New Best Friend

By: Special Guest    2/11/2016

Roll over dogs, there's a new human companion in town and it's smart, omnipresent and perhaps best of all, hair-free.

Read More

Tech Ethics (And Where They're Lacking)

By: Kayla Matthews    2/11/2016

The late Supreme Court Justice Potter Stewart once said, "Ethics is knowing the difference between what you have a right to do and what is right to do…

Read More

Carriers Losing Nearly $40 Billion a Year to Fraudulent Calling

By: Laura Stotler    2/10/2016

Telecom fraud is big business and poses a significant threat to carriers throughout the globe. According to a 2015 survey from the Communications Frau…

Read More