U.S. Power Grid Documents First Ever Cyber Disruption

We’ve talked critical infrastructure vulnerabilities quite a bit on this blog through the years but until today, our conversations have been confined to hypotheticals.

According to an interview conducted May 4, 2019 on NPR the United States first cyber power grid disruption has been reported to the Department of Energy.

The disruption took place in March of this year in a geographic area reported broadly as “Utah, Wyoming and California – Southern California”.

No loss of power or service interruptions were reported in association with the “disruption” and the event was categorized as a “loss of visibility”. Essentially, operators were unable to see what was going on on the grid during the event.

Targeted DDOS

While specifics are short at this time, the root cause of the event has been attributed to a targeted DDOS attack directed at the network.

While in general DDOS attacks are fairly rudimentary tools in the hacking toolbox this particular DDOS showed signs that the hackers were familiar with the network and were able to exploit a flaw particular to it.

“In this case, the denial of service exploited a particular vulnerability, so it was a little bit more targeted than that. The hacker or hackers knew what they were doing and were able to actually find a particular flaw in this network equipment and send a certain type of packet or string of data to really make it stop working.”

How Vulnerable is the Grid?

That is the million dollar question. The U.S. power grid is a massively complicated and interconnected beast with connections to utilities large and small, sophisticated and philistine. The potential for infiltration and disruption has been documented and now proven, albeit in a rather minor way.

How Vulnerable is your network?

