Russian security firm Dr.Web disconnects all servers after breach

Share:

On Tuesday, Russian anti-malware company Doctor Web (Dr.Web) disclosed a security breach after its systems were targeted in a cyberattack over the weekend.

Dr.Web disconnected all servers from its internal network after detecting “signs of unauthorised interference” to its IT infrastructure.

The company was also forced to stop delivering virus database updates to customers on Monday while investigating the breach.

“The attack on our resources began on Saturday, September 14, 2024. We closely monitored it and kept the events under control,” the company said.

“The attempt to harm our infrastructure was prevented in a timely manner, and no user whose system was protected by Dr.Web was affected,” it added in a separate statement in English, published on its official website.

“Following established security policies, we disconnected all our servers from the network and initiated comprehensive security diagnostics.”

In a new statement published on Wednesday, Dr.Web stated that virus database updates resumed on Tuesday and added that the security breach didn’t impact any of its customers.

​”To analyse and eliminate the incident’s consequences, we implemented a series of measures, including the use of Dr.Web FixIt! for Linux,” the company said.

“The gathered data allowed our security experts to successfully isolate the threat and ensure that our customers remained unaffected by it.”

A Dr.Web spokesperson didn’t reply to a request for comment when BleepingComputer reached out multiple times on Tuesday.

Dr.Web is the last in a series of Russian cybersecurity companies targeted in cyberattacks in recent years. For instance, pro-Ukrainian hackers Cyber Anarchy Squad breached Russian information security firm Avanpost in June and leaked what they claimed to be 390GB of data stolen before encrypting over 400 virtual machines.

Kaspersky also revealed in June 2023 that iPhones on its network were infected with spyware via iMessage zero-click exploits that targeted iOS zero-day bugs as part of a campaign now known as “Operation Triangulation.”

The company said at the time that the attacks, which affected its Moscow office and employees in other countries, started in 2019 and were still ongoing.

Sergiu Gatlan

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
3:12 am, Jan 26, 2025
weather icon 2°C
L: -0° | H: 3°
scattered clouds
Humidity: 80 %
Pressure: 1007 mb
Wind: 3 mph WSW
Wind Gust: 9 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 30%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 7:47 am
Sunset: 4:38 pm
DailyHourly
Daily ForecastHourly Forecast
Today 9:00 pm
weather icon
-0° | 3°°C 1 mm 100% 19 mph 93 % 1006 mb 0 mm/h
Tomorrow 9:00 pm
weather icon
6° | 8°°C 1 mm 100% 22 mph 90 % 984 mb 0 mm/h
Tue Jan 28 9:00 pm
weather icon
7° | 9°°C 1 mm 100% 21 mph 86 % 996 mb 0 mm/h
Wed Jan 29 9:00 pm
weather icon
5° | 7°°C 1 mm 100% 15 mph 93 % 1001 mb 0 mm/h
Thu Jan 30 9:00 pm
weather icon
3° | 6°°C 0.93 mm 93% 10 mph 95 % 1023 mb 0 mm/h
Today 6:00 am
weather icon
2° | 4°°C 0 mm 0% 9 mph 81 % 1006 mb 0 mm/h
Today 9:00 am
weather icon
4° | 5°°C 0 mm 0% 14 mph 77 % 1003 mb 0 mm/h
Today 12:00 pm
weather icon
6° | 6°°C 0 mm 0% 17 mph 81 % 997 mb 0 mm/h
Today 3:00 pm
weather icon
5° | 5°°C 1 mm 100% 19 mph 93 % 990 mb 0 mm/h
Today 6:00 pm
weather icon
8° | 8°°C 1 mm 100% 14 mph 84 % 988 mb 0 mm/h
Today 9:00 pm
weather icon
9° | 9°°C 0 mm 0% 16 mph 79 % 986 mb 0 mm/h
Tomorrow 12:00 am
weather icon
8° | 8°°C 1 mm 100% 20 mph 90 % 979 mb 0 mm/h
Tomorrow 3:00 am
weather icon
7° | 7°°C 1 mm 100% 14 mph 77 % 982 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€99,743.84
0.20%
Ethereum(ETH)
€3,170.69
1.06%
XRP(XRP)
€2.97
0.16%
Tether(USDT)
€0.95
-0.01%
Solana(SOL)
€243.50
2.23%
Dogecoin(DOGE)
€0.336884
1.13%
USDC(USDC)
€0.95
-0.01%
Shiba Inu(SHIB)
€0.000019
0.07%
Pepe(PEPE)
€0.000014
-0.40%
Peanut the Squirrel(PNUT)
€0.341643
3.03%
Scroll to Top