In light of recent attacks on satellite networks in Europe sparked by the war in Ukraine, the U.S. government warns that such attacks might soon spread to the United States.
The Federal Bureau of Investigation (FBI) and Cybersecurity and Infrastructure Security Agency (CISA) have recently disseminated a warning, expressing concern over the potential threats to the US and international satellite communication networks (SATCOM).
Network providers’ customer environments could be put at risk through successful intrusions into SATCOM networks. Additionally, the advisory didn’t outline specific industries that may be vulnerable, but the use of satellite communications is widespread across the country.
This CSA includes recommendations and mitigations to toughen SATCOM network cybersecurity that are summarized by CISA and FBI to protect the critical infrastructure organizations and their customers.
Here below we have mentioned all the key geographical areas where GNSS spoofing and/or jamming has amplified are:-
Cyber-attacks against Viasat, resulting in a widespread outage in Europe last month, led Western intelligence agencies to launch an investigation last month.
After a cyber-attack at Viasat on February 24, nearly 9,000 subscribers to Nordnet’s satellite internet service in France were taken offline.
Not only that, due to this same cyber incident, 40,000 subscribers of the bigblu satellite internet service were also affected in the following countries:-
According to VIASAT, the “cyber event” caused a “partial network outage” across Europe for customers using its KA-SAT satellite. And originally, it was thought that the cyberattack had been caused by a DDoS attack.
In this event, Viasat has confirmed that for remote access to modems, the threat actors have exploited a misconfiguration in the management section of the satellite network. While apart from this, Viasat has not provided any technical details regarding this cyber incident.
Mitigation actions recommended
Here below we have listed all the mitigations recommended:-
You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity and hacking news updates.
Zero Trust is a security framework that operates under the assumption that no implicit trust…
Orange Cyberdefense has announced the development of InvokeADCheck, a new PowerShell module designed to streamline…
Traffic Distribution Systems (TDS) have emerged as critical tools for both legitimate and malicious purposes,…
Cybercriminals are evolving their phishing methods, employing more sophisticated social engineering tactics to deceive their…
Trend Micro's Managed XDR team has recently investigated a sophisticated Business Email Compromise (BEC) attack…
Kudelski Security Research recently published an article detailing advanced methods for tracking and analyzing threat…