Attackers exploited discontinued web server at Tata Power

Teilen:

Microsoft has warned that state-sponsored hackers are attacking critical energy infrastructure in India via exploiting a discontinued web server, with the most recent attack observed on Tata Power last month. Microsoft security researchers discovered a vulnerable open-source component in the “Boa web server” still being used in routers, security cameras, and popular software development kits (SDKs), despite its retirement in 2005.

Tata Power last month admitted it was hit by a cyber attack on its IT infrastructure. The power company, however, said that all its critical operational systems were functioning normally.

The cyber attack on Tata Power was the handiwork of the Hive ransomware group that has victimized over 1,300 firms globally, receiving approximately $100 million in ransom payments, according to a joint advisory by the FBI, the US Cybersecurity and Infrastructure Security Agency, and the Department of Health and Human Services last week.

Microsoft said it sees attackers attempting to exploit Boa vulnerabilities, indicating that it is still targeted as an attack vector.

A report published by cybersecurity company Recorded Future in April this year first detailed suspected electrical grid intrusion activity and implicated common IoT devices.

While investigating the attack activity, Microsoft researchers assessed the vulnerable component to be the now-retired Boa web server, which is often used to access settings and management consoles and sign-in screens in devices.

“Without developers managing the Boa web server, its known vulnerabilities could allow attackers to silently gain access to networks by collecting information from files,” said the tech giant.

Moreover, those affected may be unaware that their devices run services using the discontinued Boa web server and that firmware updates and downstream patches do not address its known vulnerabilities.

“Microsoft assesses that Boa servers were running on the IP addresses on the list of IOCs published by Recorded Future at the time of the report’s release and that the electrical grid attack targeted exposed IoT devices running Boa,” said the security researchers.

Tata Power Company had said that some of its IT systems were impacted by the cyber attack.

According to Microsoft, the popularity of the Boa web server displays the potential exposure risk of an insecure supply chain, even when security best practices are applied to devices in the network.

“In critical infrastructure networks, being able to collect information undetected prior to the attack allows the attackers to have much greater impact once the attack is initiated, potentially disrupting operations that can cost millions of dollars and affect millions of people,” it added.

Disclaimer: Only the headline and image of this article may have been edited by the CXOvoice, the rest of the content is generated from a syndicated feed.

https://cxovoice.com/attackers-exploited-discontinued-web-server-at-tata-power/

Attackers exploited discontinued web server at Tata Power

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
3:08 pm, Mai 18, 2025
Wetter-Symbol 16°C
L: 14° | H: 18°
wenige Wolken
Luftfeuchtigkeit: 57 %
Druck: 1019 mb
Wind: 6 mph NNW
Windböe: 9 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 13%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 5:04 am
Sonnenuntergang: 8:49 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
14° | 18°°C 0 mm 0% 7 mph 63 % 1020 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
11° | 18°°C 0 mm 0% 11 mph 82 % 1022 mb 0 mm/h
Di. Mai 20 10:00 pm
Wetter-Symbol
9° | 20°°C 0 mm 0% 8 mph 79 % 1022 mb 0 mm/h
Mi. Mai 21 10:00 pm
Wetter-Symbol
12° | 18°°C 1 mm 100% 9 mph 93 % 1019 mb 0 mm/h
Do. Mai 22 10:00 pm
Wetter-Symbol
9° | 17°°C 0 mm 0% 10 mph 63 % 1023 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
16° | 17°°C 0 mm 0% 7 mph 57 % 1019 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
16° | 17°°C 0 mm 0% 6 mph 55 % 1019 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
13° | 14°°C 0 mm 0% 6 mph 63 % 1020 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
12° | 12°°C 0 mm 0% 7 mph 69 % 1020 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
11° | 11°°C 0 mm 0% 6 mph 82 % 1020 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
12° | 12°°C 0 mm 0% 7 mph 73 % 1021 mb 0 mm/h
Tomorrow 10:00 am
Wetter-Symbol
16° | 16°°C 0 mm 0% 8 mph 51 % 1021 mb 0 mm/h
Tomorrow 1:00 pm
Wetter-Symbol
18° | 18°°C 0 mm 0% 10 mph 45 % 1021 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€93,527.44
1.56%
Ethereum(ETH)
€2,256.30
2.43%
Fesseln(USDT)
€0.90
-0.01%
XRP(XRP)
€2.15
3.13%
Solana(SOL)
€154.28
3.44%
USDC(USDC)
€0.90
0.00%
Dogecoin(DOGE)
€0.201695
5.59%
Shiba Inu(SHIB)
€0.000013
5.58%
Pepe(PEPE)
€0.000012
9.41%
Peanut das Eichhörnchen(PNUT)
€0.311783
17.48%
Nach oben scrollen