GrogHeads Forum

IRL (In Real Life) => Current Events => Topic started by: steve58 on May 10, 2021, 09:55:24 AM

Title: Colonial Pipeline rasomware attack
Post by: steve58 on May 10, 2021, 09:55:24 AM
Since it was almost running on fumes anyway (wife avoids gas stations if she can), I took this as a sign to run out and top off the car and my gas cans... :-\

Quote
Ransom-seeking hackers have broken into Colonial Pipeline, prompting the company to shut one of America's major arteries for fuel delivery.
.
.
.
Colonial's pipeline network serves major U.S. airports, including Atlanta's Hartsfield Jackson Airport, the world's busiest by passenger traffic, and experts say regional fuel supplies could be impacted if the pipeline stays shut.

"A one-to-two-day outage is really a minor inconvenience," said Andrew Lipow, president of Lipow Oil Associates. But by day four or five, he said, "we could see a much greater widespread impact through large areas throughout the mid-Atlantic and the southeast."

Whether the pipeline stays shut that long in turn depends on how deeply the hackers penetrated Colonial's network - and how soon cybersecurity experts can pull them out.

https://www.foxbusiness.com/markets/colonial-pipeline-hack-attack-knowns-unknowns

State of Emergency Declared in 17 States and D.C. after Pipeline Cyberattack (https://redstate.com/jenvanlaar/2021/05/10/breaking-state-of-emergency-declared-in-17-states-and-d-c-after-pipeline-cyberattack-n377425)
Title: Re: Colonial Pipeline rasomware attack
Post by: Gusington on May 10, 2021, 10:25:53 AM
I've read that many times when a ransomware attack like this happens, the hackers are just paid off to unlock to hacked asset as it is less expensive than trying to unlock it legitimately. I wonder what will happen here.
Title: Re: Colonial Pipeline rasomware attack
Post by: Sir Slash on May 10, 2021, 11:22:25 AM
Filled my gas tank up also this morning. The latest here is a rumor that there'll be a shortage of chlorine because of a chemical plant fire and explosion somewhere. I got chlorine for the pool Friday and the lady at the Pool-Place said there would be no problem with getting the liquid but the tablets maybe in short supply. So, of course today, there's not a single box of the tablets in town. The Panic-Buyers/Hoarders have struck.  :idiot2:  Gas here is $2.80 a gallon, what's it where you are?
Title: Re: Colonial Pipeline rasomware attack
Post by: Gusington on May 10, 2021, 12:28:21 PM
About 3.50 for premium (93). But I fill it maybe once every three weeks.
Title: Re: Colonial Pipeline rasomware attack
Post by: steve58 on May 10, 2021, 12:47:45 PM
$2.69 for regular unleaded in NoVA as of this morning.
Title: Re: Colonial Pipeline rasomware attack
Post by: W8taminute on May 10, 2021, 01:54:59 PM
3.39 for super over where I'm at.  I think regular unleaded is 2.89.  This is as of yesterday.

Title: Re: Colonial Pipeline rasomware attack
Post by: Pete Dero on May 10, 2021, 02:14:54 PM
What are you all complaining about  :-[ ?

In Belgium (and many in the EU are even higher) the price per gallon is around $6.5 and we didn't have a ransomware attack ...
Title: Re: Colonial Pipeline rasomware attack
Post by: W8taminute on May 10, 2021, 02:21:40 PM
^I know in Canada, our neighbor to the north, the price of benzin is just as expensive as in Europe. 
Title: Re: Colonial Pipeline rasomware attack
Post by: steve58 on May 11, 2021, 10:10:57 AM
And it begins...

https://www.foxbusiness.com/technology/colonial-pipeline-ceo-warns-of-fuel-shortages-following-cyberattack
Title: Re: Colonial Pipeline rasomware attack
Post by: Sir Slash on May 11, 2021, 06:36:36 PM
States of Emergency declared in 15, I think, states.  :timeout:
Title: Re: Colonial Pipeline rasomware attack
Post by: JasonPratt on May 11, 2021, 07:00:22 PM
The nearest Wal-Mart ran out of gas sometime today, but that was probably due to hoarding.

Note to self, fill up just to be safe when I go eat in a minute...  :hide:
Title: Re: Colonial Pipeline rasomware attack
Post by: steve58 on May 12, 2021, 04:42:00 PM
Colonial has announced it has restarted the pipeline (https://www.nbcnews.com/tech/security/colonial-announces-pipeline-restart-says-normal-service-will-take-seve-rcna917), but normal service will take 'several days'.  Hope so, because stations in my vicinity are running out.  I thought I also read that they were not paying any ransom, so gonna be interesting the next week or two...

Interesting...kill a pipeline, but then say pipe is the way to go?  :idiot2:
Quote
At a Tuesday press conference, Department of Energy (DOE) Secretary Jennifer Granholm was asked by a reporter about the "feasibility of using rail cars" to transport fuel across the country as the nation faces a gas shortage from a Russian cyber attack.

The energy secretary said the Department of Transportation was looking into the use of rail cars to transport fuel and that "these are not easy solutions," as there are a lot of variables with rail transportation.

Granholm also said the Colonial pipeline, which runs from Texas to New York and is similar to the recently canceled Keystone XL pipeline, is the premiere way to pump petroleum into communities.

"So this particular area of the country there – this is why we have doubled down on ensuring that there's an ability to truck oil in – gas in," Granholm said. "But it's – the pipe is the best way to go."

https://1010wcsi.com/fox-politics/bidens-energy-sec-says-pipe-is-best-way-to-transport-fuel-sparks-backlash-regarding-keystone-xl-pipeline/
Title: Re: Colonial Pipeline rasomware attack
Post by: Jarhead0331 on May 12, 2021, 04:50:54 PM
People are such assholes. There wouldn't be as much of a problem if there was no panic buying.
Title: Re: Colonial Pipeline rasomware attack
Post by: Gusington on May 12, 2021, 05:11:39 PM
^+10000000

Interesting that no ransom was paid. Wonder what they did to get it back online...
Title: Re: Colonial Pipeline rasomware attack
Post by: Jarhead0331 on May 12, 2021, 05:26:34 PM
Quote from: Gusington on May 12, 2021, 05:11:39 PM
^+10000000

Interesting that no ransom was paid. Wonder what they did to get it back online...

My understanding is that the hack did not shutdown the pipeline, rather Colonial, the operator, shut it down out of an abundance of caution. The hack was a ransomware attack targeting Colonial's information and data systems, I believe in order to seize confidential information and records. The hackers then ransom the information in exchange for payment over the threat to publish the material publicly. 
Title: Re: Colonial Pipeline rasomware attack
Post by: Gusington on May 12, 2021, 05:41:18 PM
Damn. Too late for a cybersecurity review for Colonial now I suppose.
Title: Re: Colonial Pipeline rasomware attack
Post by: Sir Slash on May 12, 2021, 06:34:56 PM
I understand they're planning a review sometime.  It's supposed to be in the pipeline.  ::)
Title: Re: Colonial Pipeline rasomware attack
Post by: Gusington on May 12, 2021, 09:10:07 PM
 :-[
Title: Re: Colonial Pipeline rasomware attack
Post by: Sir Slash on May 12, 2021, 09:59:29 PM
Too 'crude' for you?  :P
Title: Re: Colonial Pipeline rasomware attack
Post by: Pete Dero on May 13, 2021, 04:09:45 AM
According to New York Times reporter Nicole Perlroth :

Interesting forensic finding on Colonial Pipeline: They were STILL using a vulnerable version of Microsoft Exchange (the same systems exploited by Chinese hackers that was revealed in March), among other notable lapses. Per Coalition.
Title: Re: Colonial Pipeline rasomware attack
Post by: Destraex on May 13, 2021, 08:27:02 AM
Why the hell is this sort of thing not on a separate or disconnected network. Have they not seen Battlestar Galactica?
Title: Re: Colonial Pipeline rasomware attack
Post by: Gusington on May 13, 2021, 08:48:06 AM
 :buck2:

oy vey
Title: Re: Colonial Pipeline rasomware attack
Post by: steve58 on May 13, 2021, 02:29:32 PM
So Colonial did pay some of the ransom:

https://www.bloomberg.com/news/articles/2021-05-13/colonial-pipeline-paid-hackers-nearly-5-million-in-ransom
Title: Re: Colonial Pipeline rasomware attack
Post by: Dammit Carl! on May 13, 2021, 02:35:26 PM
Shit is crazy.  Did a job in upstate SC on Tuesday and the locusts from NC were all over the place sucking up the gas.  When it came time to leave and go back home, needed to legit fill my tank and wound up having to travel deep into Greenville to find a place with fuel.
Title: Re: Colonial Pipeline rasomware attack
Post by: steve58 on May 14, 2021, 03:38:10 PM
Really glad I filled up on Monday.  Most the the stations near me are showing dry (on Gasbuddy).  Hope things look better next week.

https://www.newsmax.com/newsfront/pipeline-cybersecurity-attack/2021/05/14/id/1021439/

Oy, this station is gonna be in a bit of trouble...$6.99/gal!?!?!? (https://www.foxbusiness.com/lifestyle/virginia-gas-station-prices-7-per-gallon) :o

https://twitter.com/LauraCPerrot/status/1392246588194578433
Title: Re: Colonial Pipeline rasomware attack
Post by: steve58 on May 16, 2021, 02:30:20 PM
Hackers hacked??

https://nypost.com/2021/05/14/colonial-pipeline-hackers-darkside-have-lost-control-of-servers-report/
Title: Re: Colonial Pipeline rasomware attack
Post by: Gusington on May 16, 2021, 03:57:28 PM
 :2funny:
Title: Re: Colonial Pipeline rasomware attack
Post by: Jarhead0331 on May 16, 2021, 05:45:54 PM
Sounds more like an exit scam to me.
Title: Re: Colonial Pipeline rasomware attack
Post by: Sir Slash on May 16, 2021, 09:09:22 PM
Or Skynet. Just saying.
Title: Re: Colonial Pipeline rasomware attack
Post by: solops on May 16, 2021, 10:28:35 PM
Deleted