A Colonial Pipeline facility in Baltimore, Maryland. A cyberattack forced the shutdown of 5,500 miles of Colonial Pipeline's sprawling interstate system, which carries gasoline and jet fuel from Texas to New York. The FBI confirmed that DarkSide ransomware is responsible for the attack that compromised the Atlanta-based pipeline company. EPA
A Colonial Pipeline facility in Baltimore, Maryland. A cyberattack forced the shutdown of 5,500 miles of Colonial Pipeline's sprawling interstate system, which carries gasoline and jet fuel from Texas to New York. The FBI confirmed that DarkSide ransomware is responsible for the attack that compromised the Atlanta-based pipeline company. EPA
A Colonial Pipeline facility in Baltimore, Maryland. A cyberattack forced the shutdown of 5,500 miles of Colonial Pipeline's sprawling interstate system, which carries gasoline and jet fuel from Texas to New York. The FBI confirmed that DarkSide ransomware is responsible for the attack that compromised the Atlanta-based pipeline company. EPA
A Colonial Pipeline facility in Baltimore, Maryland. A cyberattack forced the shutdown of 5,500 miles of Colonial Pipeline's sprawling interstate system, which carries gasoline and jet fuel from Texas

Why is the energy industry prone to cyber attacks?


  • English
  • Arabic

The attack on a critical US artery for the transport of fuel has once again exposed the vulnerabilities of the energy industry to cyber attacks. The ransomware attack on the 2.5 million barrels per day Colonial Pipeline endangered access to fuel for the US East Coast. The pipeline, which was built in the 1960s, snakes across a distance of 8,850 kilometres and carries products sufficient to meet the total consumption of Germany, Europe’s largest economy and the world’s fourth-biggest.

So what makes the energy industry a target for attacks and why is it vulnerable?

Any impact on the energy sector can affect entire communities and even countries. An attack on a power plant or a pipeline can cause widespread blackouts, impact transportation, heating, and the functioning of critical activities in the economy.

The vulnerability in the energy industry originates from the use of legacy industrial control systems, particularly if these have not been upgraded for a number of years and are not fully integrated across systems, according to Mohammed AlMohtadi, chief information security officer at Abu Dhabi’s Injazat.

“These legacy systems therefore not only represent risk factors for energy organisations but can also have a widespread economic impact,” he said.

So how do large energy and utility companies become prey to attacks?

Threat actors usually attempt to steal trade secrets, confidential data and intellectual property, through ransomware attacks.

“While we anticipate breaches to be very sophisticated, in most cases they occur through simple phishing emails and other social engineering activities,” added Mr AlMohtadi.

A ransomware attack, such as the one on the Colonial Pipeline, involves hackers infecting networks with malicious software that encrypts data and leaves machines locked until the victims pay an extortion fee.

On Monday, DarkSide, the group behind the attack, said its aim was to "make money" but not create problems for society. In many cases, the attacks cost the economy much more than the ransom amount demanded.

In many cases, where a cybercriminal intends to inflict political and physical damage to a country or cause financial or reputational harm, the energy sector often becomes a prime target.

“[The] energy industry comes under critical infrastructure … if it is breached, the nation's financial and physical infrastructure could be potentially crippled,” said Avinash Advani, founder and chief executive of Dubai-based cybersecurity company CyberKnight.

Oil and gas infrastructure, nuclear plants, electricity grids, water companies and utility firms that supply the community with power, water, and treat sewage are potential targets.

The Covid-19 pandemic has exposed the energy industry's underbelly. As more people work from home to contain the spread of coronavirus, they unwittingly expose an organisation to cyber attacks.

“Employees at energy organisations are working from home and remotely accessing corporate assets … [they] become a critical attack vector and entry point for attackers,” said Mr Advani.

Researchers have found many coronavirus-related malicious e-mail campaigns and hundreds of downloadable files that attempt to infect user devices. Malicious files have been masked under the guise of pdf, mp4 and docx files. The names of files imply that they contain instructions on how to protect yourself from the virus or updates on the threat.

So how did the Colonial Pipeline become victim to a cyberattack?

“We assume the Colonial Pipeline, the biggest US pipeline system connecting oil supplies in Texas with New York, has been attacked through an insecure remote access,” Stefan Schachinger, network security product manager at computer security company Barracuda, said.

“Remote accesses are not insecure per definition but require proper security measures such as encryption and multi-factor authentication,” he added.

DarkSide, the ransomware group that claimed the Colonial Pipeline attack is new but experienced, industry experts said.

The group targets largely English-speaking countries and avoids the economies of former Soviet states, said Boston-based cyber security firm Cybereason. Its ransom demand typically ranges from $200,000 to $2 million. The group has published stolen data from more than 40 victims, who are believed to be just a fraction of the overall number.

Cyber attacks on energy infrastructure are typically politically or financially motivated.

“When there is an attack on the West, it usually originates from [entities inside] Russia or Eastern European countries with ties to Russia, Iran, China, or North Korea,” said Mr Advani.

However, there can be financially motivated criminal groups that may or may not be associated with a government.

President Joe Biden has said there is no evidence that the Russian government is responsible for the attack on the Colonial Pipeline, but that the country has "some responsibility" to address the ransomware attack and that he will seek global co-operation to battle similar hacks.

US Energy Secretary Jennifer Granholm told Bloomberg TV that supply in the country has so far not been impacted and that the company has said it hopes to restore operations by the end of this week.

“It tells you how utterly vulnerable we are,” Ms Granholm said. “We’re seeing all of these examples of ransomware attacks coming - whether it’s telecommunications or this critical infrastructure. And obviously in my lane I’m very worried about the energy infrastructure.”

She said the incident clearly highlighted the need of private sector companies to step up their investment in cyber defence.

Globally, around 61 per cent of companies surveyed by London-based Mimecast said they were affected by a ransomware attack last year. About 52 per cent of them paid the ransom but of those, only two-thirds recovered their data.

Given the serious implications of cyber attacks, the energy industry should not underestimate groups that target facilities. Many of these groups now have help desks, technical support, payroll processing, and subcontractors, according to Marty Edwards, vice president of operational technology security at Maryland-based cyber-security company Tenable.

“They are essentially full-fledged criminal corporations operating in the digital world.”

"If reports are accurate, the Colonial Pipeline incident has all of the markings of a possible ransomware attack that began in the IT environment and, out of precaution, forced the operator to shut down operations,” added Mr Edwards.

In 2012, the Shamoon virus attack on Saudi Aramco systems wiped the hard drives of some 30,000 computers clean.

The attacks were blamed on Iran, which denied responsibility.

In 2017, a $20 billion petrochemical project joint venture between Saudi Aramco and Dow Chemicals also experienced a spate of hacking attacks.

The financial fallout from cyber attacks in the Arabian Gulf in 2017 was estimated at more than $1bn, according to a 2018 report by Siemens. Three-quarters of regional oil and gas companies, or over 30 per cent of the global production of oil, have experienced some form of cyber-security breach in the past, according to DarkMatter, a UAE-based cyber security company.

The financial fallout from data breaches among a selected sample of companies in the UAE and Saudi Arabia rose 9.4 per cent, costing them $6.53m per breach, according to a 2020 study by IBM Security.

In 2017, Saudi Arabia, Opec's biggest producer, established the National Cybersecurity Authority (NCA) to combat cyber threats.

The UAE rolled out its first National Cybersecurity Strategy in 2019, followed by the formation of National Cybersecurity Council to develop policies and laws to strengthen cyber security and ensure the country is not vulnerable to attacks.

In December, Dubai Electronic Security Centre rolled out a cyber resilience plan that aims to safeguard the emirate's critical infrastructure including oil and gas sector. In June, Injazat opened a Cyber Fusion Centre in Abu Dhabi, expanding its cyber defence abilities and portfolio of services.

In the Middle East, companies such as Saudi Aramco, the world's largest exporter of oil, are enforcing stricter compliance on third-party vendors to ensure their facilities are protected against cyber attacks, that could impact the supply of oil globally.

Suppliers including general vendors and those specialising in outsourced infrastructure, customised software, network connectivity, and critical data processors need to obtain Saudi Aramco's cyber security standard certification.

.
.
The specs
  • Engine: 3.9-litre twin-turbo V8
  • Power: 640hp
  • Torque: 760nm
  • On sale: 2026
  • Price: Not announced yet
New UK refugee system

 

  • A new “core protection” for refugees moving from permanent to a more basic, temporary protection
  • Shortened leave to remain - refugees will receive 30 months instead of five years
  • A longer path to settlement with no indefinite settled status until a refugee has spent 20 years in Britain
  • To encourage refugees to integrate the government will encourage them to out of the core protection route wherever possible.
  • Under core protection there will be no automatic right to family reunion
  • Refugees will have a reduced right to public funds
FROM%20THE%20ASHES
%3Cp%3EDirector%3A%20Khalid%20Fahad%3C%2Fp%3E%0A%3Cp%3EStarring%3A%20Shaima%20Al%20Tayeb%2C%20Wafa%20Muhamad%2C%20Hamss%20Bandar%3C%2Fp%3E%0A%3Cp%3ERating%3A%203%2F5%3C%2Fp%3E%0A

THE SPECS

Engine: 2.0-litre 4-cylinder turbo

Power: 275hp at 6,600rpm

Torque: 353Nm from 1,450-4,700rpm

Transmission: 8-speed dual-clutch auto

Top speed: 250kph

Fuel consumption: 6.8L/100km

On sale: Now

Price: Dh146,999

Other acts on the Jazz Garden bill

Sharrie Williams
The American singer is hugely respected in blues circles due to her passionate vocals and songwriting. Born and raised in Michigan, Williams began recording and touring as a teenage gospel singer. Her career took off with the blues band The Wiseguys. Such was the acclaim of their live shows that they toured throughout Europe and in Africa. As a solo artist, Williams has also collaborated with the likes of the late Dizzy Gillespie, Van Morrison and Mavis Staples.
Lin Rountree
An accomplished smooth jazz artist who blends his chilled approach with R‘n’B. Trained at the Duke Ellington School of the Arts in Washington, DC, Rountree formed his own band in 2004. He has also recorded with the likes of Kem, Dwele and Conya Doss. He comes to Dubai on the back of his new single Pass The Groove, from his forthcoming 2018 album Stronger Still, which may follow his five previous solo albums in cracking the top 10 of the US jazz charts.
Anita Williams
Dubai-based singer Anita Williams will open the night with a set of covers and swing, jazz and blues standards that made her an in-demand singer across the emirate. The Irish singer has been performing in Dubai since 2008 at venues such as MusicHall and Voda Bar. Her Jazz Garden appearance is career highlight as she will use the event to perform the original song Big Blue Eyes, the single from her debut solo album, due for release soon.

Who's who in Yemen conflict

Houthis: Iran-backed rebels who occupy Sanaa and run unrecognised government

Yemeni government: Exiled government in Aden led by eight-member Presidential Leadership Council

Southern Transitional Council: Faction in Yemeni government that seeks autonomy for the south

Habrish 'rebels': Tribal-backed forces feuding with STC over control of oil in government territory

The Uefa Awards winners

Uefa Men's Player of the Year: Virgil van Dijk (Liverpool)

Uefa Women's Player of the Year: Lucy Bronze (Lyon)

Best players of the 2018/19 Uefa Champions League

Goalkeeper: Alisson (Liverpool)

Defender: Virgil van Dijk (Liverpool)

Midfielder: Frenkie de Jong (Ajax)

Forward: Lionel Messi (Barcelona)

Uefa President's Award: Eric Cantona

Heavily-sugared soft drinks slip through the tax net

Some popular drinks with high levels of sugar and caffeine have slipped through the fizz drink tax loophole, as they are not carbonated or classed as an energy drink.

Arizona Iced Tea with lemon is one of those beverages, with one 240 millilitre serving offering up 23 grams of sugar - about six teaspoons.

A 680ml can of Arizona Iced Tea costs just Dh6.

Most sports drinks sold in supermarkets were found to contain, on average, five teaspoons of sugar in a 500ml bottle.

Benefits of first-time home buyers' scheme
  • Priority access to new homes from participating developers
  • Discounts on sales price of off-plan units
  • Flexible payment plans from developers
  • Mortgages with better interest rates, faster approval times and reduced fees
  • DLD registration fee can be paid through banks or credit cards at zero interest rates
Islamophobia definition

A widely accepted definition was made by the All Party Parliamentary Group on British Muslims in 2019: “Islamophobia is rooted in racism and is a type of racism that targets expressions of Muslimness or perceived Muslimness.” It further defines it as “inciting hatred or violence against Muslims”.

Test series fixtures

(All matches start at 2pm UAE)

1st Test Lord's, London from Thursday to Monday

2nd Test Nottingham from July 14-18

3rd Test The Oval, London from July 27-31

4th Test Manchester from August 4-8

Citadel: Honey Bunny first episode

Directors: Raj & DK

Stars: Varun Dhawan, Samantha Ruth Prabhu, Kashvi Majmundar, Kay Kay Menon

Rating: 4/5

The specs

Engine: 3.8-litre, twin-turbo V8

Transmission: eight-speed automatic

Power: 582bhp

Torque: 730Nm

Price: Dh649,000

On sale: now  

The biog

Favourite films: Casablanca and Lawrence of Arabia

Favourite books: Start with Why by Simon Sinek and Good to be Great by Jim Collins

Favourite dish: Grilled fish

Inspiration: Sheikh Zayed's visionary leadership taught me to embrace new challenges.