Yet Another Utility Company Falls Victim to Ransomware Attack

Stu Sjouwerman | Mar 5, 2020

iStock-1145831937The latest ransomware attack on yet another utility company echos the warnings from last year’s report on utilities’ readiness for a cyberattack.

Just two weeks ago, Massachusetts utility company, Reading Municipal Light Dept (RMLD), announced on their website that they had become the victim of a ransomware attack. Calling it a “targeted” attack, RMLD becomes just one of many utility companies to be the focus of cyberattacks by eleven different cybercriminal organizations.

Utility companies are known to be plenty aware of the threats, and are thinking about attacks in terms of both Information Technology and Operational Technology. But, according to Siemens, only 42 percent of utility companies rated their cyber-readiness as “high”, casting doubt on whether they are truly ready. This gives cybercriminals the upper hand, as they are ready and willing to go on the attack.

In the case of RMLD, no operational systems were impacted, and the attack was isolated. But attacks like these can go completely wrong, taking entire operations down. With Operational technology being rated as 10-20 years old, the possibility of vulnerable endpoints, applications, and browsers is high.

Utility organizations need to both work quickly to update any and all network endpoints, even if managing operational technology. For example, hosting an older OS as a VM rather than as a physical endpoint could be one way to remediate the risk older environments pose.

In addition, educating users through Security Awareness Training keeps them from engaging with suspicious and potentially malicious emails and web content – a leading attack vector for ransomware today.

It appears that RMLD got off lightly, the next utility may not be so lucky.

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.