Russian hackers breached Polish power grid thanks to bad security, report says
嗯,用户让我总结一下这篇文章的内容,控制在100字以内,而且不需要用“文章内容总结”这样的开头。首先,我需要仔细阅读文章,抓住主要信息。 文章讲的是波兰政府称俄罗斯黑客入侵了他们的能源基础设施。具体来说,是在去年年底,黑客攻击了风力、太阳能发电厂和热电厂。波兰的CERT团队发布了报告,指出这些系统安全措施很薄弱,比如使用默认用户名和密码,没有启用多因素认证。 黑客试图植入破坏性恶意软件,但只在热电厂被阻止了,在风力和太阳能发电厂成功破坏了监控系统。不过攻击没有导致停电,也不会影响波兰电网的稳定性。网络安全公司ESET和Dragos之前指责是Sandworm组织所为,但波兰CERT认为是Berserk Bear或Dragonfly组织。 所以总结的时候要包括:俄罗斯黑客入侵波兰能源设施、利用薄弱安全、植入恶意软件、未成功破坏供电、以及不同组织的指责情况。 接下来要控制在100字以内,简洁明了。可能需要省略一些细节,比如具体日期和公司名称。 </think> 波兰政府称俄罗斯黑客入侵其能源基础设施,利用薄弱安全措施攻击风力、太阳能发电厂及热电厂。黑客尝试植入破坏性恶意软件,部分攻击得逞但未致停电。网络安全公司与波兰CERT分别指认不同俄方组织为幕后黑手。 2026-1-30 17:49:4 Author: techcrunch.com(查看原文) 阅读量:0 收藏

In Brief

Posted:

Wind turbines stand across open fields near a railway line in northern Poland, on January 10, 2026.
Image Credits:Mateusz Wlodarczyk/NurPhoto / Getty Images

The Polish government said Russian government hackers broke into parts of the country’s energy grid infrastructure, taking advantage of its poor security.

On Friday, Poland’s Computer Emergency Response Team (CERT), which is part of the Ministry of Digital Affairs, released a technical report about an incident at the end of last year, where suspected Russian government hackers hacked wind and solar farms and a heat-and-power plant. According to the report, the hackers didn’t face a lot of resistance. The targeted systems used default usernames and passwords and did not have multi-factor authentication enabled, both incredibly basic mistakes. 

The hackers tried to infect the systems they broke into with wiper malware designed to erase and effectively destroy the systems, perhaps trying to turn off the power, although it’s unclear if that was their goal. Either way, the attacks were stopped at the heat-and-power plant, but not at the wind and solar farms, whose systems to monitor and control grid systems were made inoperable by the malware. 

“All of the attacks were purely destructive in nature — by analogy to the physical world, they can be compared to deliberate acts of arson,” read the report. 

The hackers failed to disrupt power at any of their targeted facilities. And even if they had succeeded, the report said that the hack “would not have affected the stability of the Polish power system during the period in question.”

Cybersecurity firms ESET and Dragos previously released reports about the attacks, which occurred on December 29 of last year, accusing the notorious Russian government hacking group Sandworm of being behind the intrusions. Sandworm has a documented history of targeting energy infrastructure in Ukraine and turning off the lights in the country in 2015, 2016, and 2022.

Poland’s CERT, however, accused a different Russian government hacking group, known as Berserk Bear or Dragonfly, which is not known for destructive attacks, but rather more traditional cyberespionage.

Subscribe for the industry’s biggest tech news

Latest in Security


文章来源: https://techcrunch.com/2026/01/30/russian-hackers-breached-polish-power-grid-thanks-to-bad-security-report-says/
如有侵权请联系:admin#unsafe.sh