Story image

NZ & AU join international condemnation against Russia for NotPetya attack

19 Feb 2018

The New Zealand and Australian Governments have joined international condemnation against Russia for the NotPetya attack that struck many countries and crippled global organisation such as Maersk in June last year.

Last week the US White House and a number of other international leaders attributed the NotPetya attack to the Russian military.

A statement from the US Press Secretary says that NotPetya spread worldwide and caused billions of dollars’ damage to regions including Europe, Asia and the Americas.

“It was part of the Kremlin’s ongoing effort to destabilize Ukraine and demonstrates ever more clearly Russia’s involvement in the ongoing conflict.  This was also a reckless and indiscriminate cyber-attack that will be met with international consequences,” the statement says.

New Zealand’s Government Communications Security Bureau (GCSB) director-general Andrew Hampton has also spoken up about the attacks.

“While NotPetya masqueraded as a criminal ransomware campaign, its real purpose was to damage and disrupt systems. Its primary targets were Ukrainian financial, energy and government sectors. However, NotPetya’s indiscriminate design caused it to spread around the world affecting these sectors worldwide,” he says.

Although there were no reports that the attacks had a direct impact in New Zealand, it did cause ‘disruption’ as some organisations updated their systems to protect against attacks.

“This reinforces that New Zealand is not immune from this type of threat. In a globally connected world our relative geographic isolation offers no protection from cyber threats,” Hampton says.

The Australian Government has also put the blame squarely on Russia as a result of advice from Australian intelligence agencies and through consultations with the United States and United Kingdom.

“The Australian Government condemns Russia’s behaviour, which posed grave risks to the global economy, to government operations and services, to business activity and the safety and welfare of individuals,” a statement says.

“The Australian Government is further strengthening its international partnerships through an International Cyber Engagement Strategy to deter and respond to the malevolent use of cyberspace.”

“The Government is committed to ensuring the Australian public sector, businesses and the community are prepared for evolving cyber threats.”

According to Mimecast’s director of security product management Steve Malone, cyber resilience and continuity investment is critical for organisations.

“The Petya ransomware highlighted the disruptive power ransomware can have. By encrypting and blocking access to files, ransomware can cause massive damage to critical national services and valuable business data,” Malone says.

No matter the perpetrator of this attack, businesses must look forward and implement a cyber resilience strategy to avoid becoming the next victim. This should span beyond just security, and include continuity, remediation and recovery to ensure critical services can keep on running, even when the worst happens,” Malone concludes.

Machine learning is a tool and the bad guys are using it
KPMG NZ’s CIO and ESET’s CTO spoke at a recent cybersecurity conference about how machine learning and data analytics are not to be feared, but used.
Seagate: Data trends, opportunities, and challenges at the edge
The development of edge technology and the rise of big data have brought many opportunities for data infrastructure companies to the fore.
Popular Android apps track users and violate Google's policies
Google has reportedly taken action against some of the violators.
How blockchain could help stop video piracy in its tracks
An Australian video tech firm has successfully tested a blockchain trial that could end up being a welcome relief for video creators and the fight against video piracy.
IBM X-Force Red & Qualys introduce automated patching
IBM X-Force Red and Qualys are declaring a war on unpatched systems, and they believe automation is the answer.
Micro Focus acquires Interset to improve predictive analytics
Interset utilises user and entity behavioural analytics (UEBA) and machine learning to give security professionals what they need to execute threat detection analysis.
Raising the stakes: McAfee’s predictions for cybersecurity
Security teams and solutions will have to contend with synergistic threats, increasingly backed by artificial intelligence to avoid detection.
Exclusive: Ping Identity on security risk mitigation
“Effective security controls are measured and defined by the direct mitigation of inherent and residual risk.”