ESET Researchers Discover Links Between Major Cybersecurity Attacks
11 Oct 2018

ESET, the leader in cybersecurity research and a top European Union-based endpoint security company, has discovered evidence linking the infamous cybercriminal group TeleBots to Industroyer, the most powerful modern malware targeting industrial control systems and the culprit behind the electricity blackout in Ukraine’s capital, Kiev, in 2016.

TeleBots demonstrated its prowess with NotPetya, the disk-wiping malware that disrupted global business operations in 2017, and its ties with BlackEnergy, which was deployed in the first-ever malware-enabled blackout in Ukraine in 2015 (predating the Industroyer-induced blackout by one year).

In April 2018, ESET discovered fresh activity from the TeleBots group: an attempt to deploy a new backdoor, which ESET detects as Exaramel. ESET’s analysis suggests that this backdoor is an improved version of the main Industroyer backdoor – the first piece of evidence linking Industroyer to TeleBots.

Posted Date: October 16, 2018
View More