Start your day with intelligence. Get The OODA Daily Pulse.
Last weekend, the primary risk awareness variable we encouraged our readership to track based on the recent events in Russia was the following:
“The information threat vectors and cyber attack surface have been expanded: Be on the lookout for how recent events have ginned up the tactical and strategic activity of Advanced Persistent Threats (APTs) and non-state cyber actors in the field – on all sides of this multi-sided hybrid conflict. Early last week, before the events in Russia, White House Deputy National Security Adviser Anne Neuberger at the FT Cyber Resilience Summit in Washington, voiced concern that Ukraine is already experiencing a ‘surge’ in cyberattacks as it executes counteroffensive. Watch this space.”
Yesterday, a new, unidentified non-state actor hacking operation hit a Russian telecom satellite in support of the Wagner Group.
⚠️ Confirmed: Metrics show a disruption to satellite internet provider Dozor-Teleport which supplies Russia's FSB, Gazprom, Rosatom and military installations; the incident comes amid a wave of cyberattacks by a group claiming affiliation with Wagner PMC 🛰️📉 pic.twitter.com/rSoRyUFsWm
— NetBlocks (@netblocks) June 29, 2023
A summary of this development as reported by our friends over at The Record:
“Hackers claim to take down Russian satellite communications provider. Here’s what you need to know:
1. A group claiming affiliation with the Wagner Group, a Russian private mercenary army, has taken responsibility for a cyberattack on Dozor-Teleport, a Russian satellite communications provider. This attack has disrupted the internet connectivity of Dozor-Teleport, impacting energy companies and the country’s defense and security services.
2. The hackers behind the attack have allegedly damaged satellite terminals and leaked and destroyed confidential information stored on Dozor-Teleport’s servers. They have posted 700 files, including documents and images, to a leak site.
3. The restoration process for Dozor-Teleport’s core network could take from a few days to several weeks, with full restoration potentially taking several months. This cyberattack follows a similar breach on Viasat, another satellite telecommunications service provider, during Russia’s invasion of Ukraine. Both attacks raise concerns about the vulnerability of satellite infrastructure and the potential threat they pose to national security.” (1)
There's a new claim that Wagner attacked a satellite Internet provider called Dozor reportedly used by Russian mil, security agencies, etc. Its website is indeed down, and some data has been leaked. But Wagner's involvement is very unlikelyhttps://t.co/9De9pDTwRx
— Oleg Shakirov (@shakirov2036) June 29, 2023
A full report can be found at: Hackers Claim to take down Russian satellite communications provider
Cybernews.com also has some early reporting: Russian satellite telecom Dozor allegedly hit by hackers
In the end, this level of uncertainty and instability – with a nuclear arsenal at the center of it all – is a high-risk global scenario for all markets, businesses, nation-states, and geopolitics futures.
Your organization should be tracking these events at the macro level on a consistent basis. We are here to help. Consider:
With these frameworks in mind:
We also encourage OODA Loop members to analyze hybrid warfare and gray-zone tactics and consider providing innovative solutions based on the following assessment of your company’s capabilities and core competencies:
https://oodaloop.com/archive/2022/05/12/with-viasat-satellite-hack-officially-attributed-to-russia-by-us-and-eu-allies-what-next-for-satellite-security/
https://oodaloop.com/archive/2022/03/22/cyber-attack-against-satellite-calls-into-question-satellite-security/
https://oodaloop.com/archive/2022/04/18/four-urgent-actions-for-the-c-suite-to-prepare-for-high-end-cyberattacks/
https://oodaloop.com/archive/2022/02/25/anonymous-wages-war-on-russia/
`
https://oodaloop.com/archive/2021/12/14/when-in-the-gray-zone-with-vladamir-putin-in-ukraine-dod-and-ic-hybrid-warfare-innovation-will-prove-vital/
https://oodaloop.com/archive/2019/07/17/ooda-special-report-the-kinetic-potential-of-russian-cyber-war/
https://oodaloop.com/archive/2022/06/29/lessons-on-the-future-of-cyberwar-from-russia/
https://oodaloop.com/archive/2023/04/19/ukraine-is-a-master-class-in-cyber-defense-and-a-real-time-ai-accelerator/
https://oodaloop.com/archive/2023/03/24/after-meeting-in-moscow-will-xi-and-putin-combine-it-armies-and-ict-driven-hybrid-warfare-efforts-against-the-west/
https://oodaloop.com/archive/2023/01/04/time-to-reconsider-the-how-state-actors-are-defined-in-cyberspace/
https://oodaloop.com/archive/2022/10/05/russias-cyber-attacks-in-ukraine-is-less-about-testing-new-attacks-and-all-about-regime-survival/
https://oodaloop.com/archive/2023/01/05/ooda-loop-2022-space-and-the-future-of-national-security-and-cybersecurity/
https://oodaloop.com/archive/2022/06/13/optical-communications-innovation-and-laser-satellites-are-the-future-of-space-communications/
https://oodaloop.com/archive/2021/08/09/what-the-c-suite-needs-to-know-about-a-return-to-great-power-competition-and-dod-capabilities-per-the-congressional-research-service/