Russian security firm Dr.Web disconnects all servers after breach

Share:

On Tuesday, Russian anti-malware company Doctor Web (Dr.Web) disclosed a security breach after its systems were targeted in a cyberattack over the weekend.

Dr.Web disconnected all servers from its internal network after detecting “signs of unauthorised interference” to its IT infrastructure.

The company was also forced to stop delivering virus database updates to customers on Monday while investigating the breach.

“The attack on our resources began on Saturday, September 14, 2024. We closely monitored it and kept the events under control,” the company said.

“The attempt to harm our infrastructure was prevented in a timely manner, and no user whose system was protected by Dr.Web was affected,” it added in a separate statement in English, published on its official website.

“Following established security policies, we disconnected all our servers from the network and initiated comprehensive security diagnostics.”

In a new statement published on Wednesday, Dr.Web stated that virus database updates resumed on Tuesday and added that the security breach didn’t impact any of its customers.

​”To analyse and eliminate the incident’s consequences, we implemented a series of measures, including the use of Dr.Web FixIt! for Linux,” the company said.

“The gathered data allowed our security experts to successfully isolate the threat and ensure that our customers remained unaffected by it.”

A Dr.Web spokesperson didn’t reply to a request for comment when BleepingComputer reached out multiple times on Tuesday.

Dr.Web is the last in a series of Russian cybersecurity companies targeted in cyberattacks in recent years. For instance, pro-Ukrainian hackers Cyber Anarchy Squad breached Russian information security firm Avanpost in June and leaked what they claimed to be 390GB of data stolen before encrypting over 400 virtual machines.

Kaspersky also revealed in June 2023 that iPhones on its network were infected with spyware via iMessage zero-click exploits that targeted iOS zero-day bugs as part of a campaign now known as “Operation Triangulation.”

The company said at the time that the attacks, which affected its Moscow office and employees in other countries, started in 2019 and were still ongoing.

Sergiu Gatlan

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
11:05 pm, Jan 24, 2025
weather icon 8°C
L: 6° | H: 9°
scattered clouds
Humidity: 86 %
Pressure: 1000 mb
Wind: 6 mph S
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 40%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 7:49 am
Sunset: 4:35 pm
DailyHourly
Daily ForecastHourly Forecast
Tomorrow 9:00 pm
weather icon
6° | 9°°C 1 mm 100% 7 mph 91 % 1010 mb 0 mm/h
Sun Jan 26 9:00 pm
weather icon
2° | 8°°C 1 mm 100% 16 mph 91 % 1009 mb 0 mm/h
Mon Jan 27 9:00 pm
weather icon
6° | 8°°C 1 mm 100% 23 mph 92 % 983 mb 0 mm/h
Tue Jan 28 9:00 pm
weather icon
8° | 9°°C 1 mm 100% 20 mph 84 % 995 mb 0 mm/h
Wed Jan 29 9:00 pm
weather icon
5° | 8°°C 1 mm 100% 19 mph 90 % 1000 mb 0 mm/h
Tomorrow 12:00 am
weather icon
7° | 8°°C 0 mm 0% 5 mph 87 % 1000 mb 0 mm/h
Tomorrow 3:00 am
weather icon
6° | 7°°C 0 mm 0% 4 mph 88 % 1000 mb 0 mm/h
Tomorrow 6:00 am
weather icon
3° | 5°°C 1 mm 100% 7 mph 91 % 1001 mb 0 mm/h
Tomorrow 9:00 am
weather icon
5° | 5°°C 0.59 mm 59% 6 mph 73 % 1004 mb 0 mm/h
Tomorrow 12:00 pm
weather icon
6° | 6°°C 0.22 mm 22% 7 mph 55 % 1006 mb 0 mm/h
Tomorrow 3:00 pm
weather icon
6° | 6°°C 0 mm 0% 4 mph 56 % 1008 mb 0 mm/h
Tomorrow 6:00 pm
weather icon
4° | 4°°C 0 mm 0% 3 mph 70 % 1009 mb 0 mm/h
Tomorrow 9:00 pm
weather icon
3° | 3°°C 0 mm 0% 4 mph 73 % 1010 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€99,817.25
0.85%
Ethereum(ETH)
€3,162.98
0.09%
XRP(XRP)
€2.95
-0.75%
Tether(USDT)
€0.95
-0.02%
Solana(SOL)
€242.44
1.51%
USDC(USDC)
€0.95
0.00%
Dogecoin(DOGE)
€0.333759
-0.56%
Shiba Inu(SHIB)
€0.000019
-1.03%
Pepe(PEPE)
€0.000014
-0.19%
Peanut the Squirrel(PNUT)
€0.341611
3.03%
Scroll to Top