• About
    • Which Energy Mix is this?
  • Climate News Network Archive
  • Contact
The climate news that makes a difference.
No Result
View All Result
The Energy Mix
  • Canada
  • Fossil Fuels
  • Ending Emissions
  • Cities & Communities
  • Electric Mobility
  • Heat & Power
  • Community Climate Finance
SUBSCRIBE
DONATE
  • Canada
  • Fossil Fuels
  • Ending Emissions
  • Cities & Communities
  • Electric Mobility
  • Heat & Power
  • Community Climate Finance
SUBSCRIBE
DONATE
No Result
View All Result
The Energy Mix
No Result
View All Result
  • Canada
  • Fossil Fuels
  • Ending Emissions
  • Cities & Communities
  • Electric Mobility
  • Heat & Power
  • Community Climate Finance
  FEATURED
Emissions Still Rising, ‘Carbon Bombs’ Risk Another 86B Tonnes, as COP28 Talks Flooded by Fossil Lobbyists December 5, 2023
World Races Toward ‘Disastrous’ Climate Tipping Points, as Positive Change Also Accelerates December 5, 2023
COP Global Stocktake Will ‘Make or Break 1.5°C’, Advocates Warn, as Negotiations Bog Down December 5, 2023
Fossil Fuel Phaseout Must Only Be Done Fairly: Athanasiou December 5, 2023
Fossil Phaseout Urgent, 1.5°C Overshoot Inevitable, Scientists Tell COP28 Negotiators December 4, 2023
Next
Prev

Colonial Pipeline Pays Ransomware Demand as Panic Buying Grips Eastern U.S. Gasoline Users

May 14, 2021
Reading time: 7 minutes
Primary Author: Mitchell Beer @mitchellbeer

ransomware

TheDigitalArtist/Pixabay

19
SHARES

Drivers across the southeastern United States have been getting a new sense of the vulnerability of their fuel supplies over the last week, and operators of the Colonial Pipeline ended up paying a ransom to regain control of their system, after a successful cyberattack took out a 5,500-mile pipeline network that runs from Houston to New Jersey and supplies the eastern U.S. with 45% of its fuel.

While the initial news reports on the virtual heist were almost optimistic, the tone quick shifted day by day.

  • The climate news you need. Subscribe now to our engaging new weekly digest.
  • You’ll receive exclusive, never-before-seen-content, distilled and delivered to your inbox every weekend.
  • The Weekender: Succinct, solutions-focused, and designed with the discerning reader in mind.
Subscribe

On Saturday, the Washington Post reported that the ransomware attack carried out by DarkSide, a criminal gang based in Eastern Europe or Russia, was “not expected to have an immediate impact on fuel supply or prices”. The paper said federal authorities and a well-known private cybersecurity firm were looking into the hack.

A day later, with Colonial giving no indication of when it might reopen, the New York Times pointed to concerns about fuel supplies. “While the shutdown has so far had little impact on supplies of gasoline, diesel, or jet fuel, some energy analysts warned that a prolonged suspension could raise prices at the pump along the East Coast and leave some smaller airports scrambling for jet fuel,” the Times wrote.

By Monday, Reuters said the pipeline was still days away from restarting operations. “While the impact remains to be quantified, the pipeline shutdown will reduce fuel availability in the near term, push up prices, and force refiners to cut production because they have no way to ship the gas.”

As the week wore on, panic buying set in across much of the region, with Charlotte, North Carolina reporting 71% of its gas stations out of fuel. One motorist made a strong bid for a prestigious 2021 Darwin Award by filling at least one plastic shopping bag with flammable, explosive gasoline and stowing it in the trunk of her car.

But Colonial itself, a subsidiary of the sprawling Koch Industries conglomerate, may have set itself up for what amounts to a corporate Darwin Award, after an outside audit three years ago discovered “glaring deficiencies” and “atrocious” information management practices that left the system open to cyberattack, The Associated Press reports.

“How far the company…went to address the vulnerabilities isn’t clear,” AP writes. “Colonial said Wednesday that since 2017, it has hired four independent firms for cybersecurity risk assessments and increased its overall IT spending by more than 50%. While it did not specify an amount, it said it has spent tens of millions of dollars.”

Colonial also posted a job ad for a cyber manager last month, Reuters writes.

But the pipeliner still ended up paying a ransom of nearly US$5 million to DarkSide, Bloomberg reported yesterday, citing three sources familiar with aspects of the transaction. “Of course, the guidance from the FBI is not to do that,” said White House Press Secretary Jen Psaki.

Nevertheless, “the company paid the hefty ransom in difficult-to-trace cryptocurrency within hours after the attack, underscoring the immense pressure faced by the Georgia-based operator to get gasoline and jet fuel flowing again to major cities along the Eastern Seaboard,” Bloomberg says.

While DarkSide had helpfully asserted that “our goal is to make money, and not creating problems for society,” the news agency reports the decryption tool the hackers supplied after they received their ransom “was so slow that the company continued using its own backups to help restore the system”.

And the problems with the Colonial Pipeline aren’t limited to cybersecurity.

The system was also the source of a large gasoline spill last August near Huntersville, North Carolina, The Weather Channel reports. The company initially placed the spill at 273,000 gallons, before steadily increasing its estimate to 354,060, then 1.12 million gallons, writes WCNC Charlotte.

Which meant that “what was already one of the worst gasoline spills in the United States appears to be even larger and deeper than earlier estimates,” The Weather Channel says.

Nearly a year later, the episode is still raising local concerns ranging from drinking water quality to property values, WCNC adds.

“It is unacceptable that for eight months Colonial Pipeline has been unable to provide a reliable accounting of the amount of gasoline released into this community,” DEQ Secretary Dionne Delli-Gatti said in a release. “We will take all necessary steps and exercise all available authority to hold Colonial Pipeline accountable for what has become one of the largest gasoline spills in the country.”

The company only found out about the spill after two teenagers spotted it while riding by on all-terrain vehicles, WCNC states. “We have no idea how long this was leaking because current practices clearly do not provide enough safety measures to monitor a leak like this,” said state Sen. Natasha Marcus.

But the same company that saw eight months as an acceptable time span to get a handle on a large local gasoline spill moved far more swiftly to shut down a much bigger operation when its finances were thrown into jeopardy.

“The company halted operations because its billing system was compromised,” CNN reports, “and they were concerned they wouldn’t be able to figure out how much to bill customers for fuel they received. One person familiar with the response said the billing system is central to the unfettered operation of the pipeline. That is part of the reason getting it back up and running has taken time.”

A company spokesperson stated that, “in response to the cybersecurity attack on our system, we proactively took certain systems offline to contain the threat, which temporarily halted all pipeline operations, and affected some of our IT systems.” The spokesperson added there was no evidence the hackers had compromised any of the pipeline’s operational systems, CNN says.

Meanwhile, after a week of frenzied news coverage, White House briefings, and what CNN calls a “whole-of-government” response from the Biden administration, there’s a growing sense that one of the country’s biggest pipeline networks may have been brought to its knees by a pack of amateurs.

“DarkSide’s business model is to provide attackers with limited skills the funding and resources they need to actually launch the attacks, providing a platform that both parties can profit off of,” CNN writes. “Among the signs that the hackers were novices is the fact that they chose a high-risk target that deals in a low-margin business, meaning the attack was unlikely to yield the kind of payout experienced ransomware actors are typically looking for.”

But the biggest known attack on U.S. energy infrastructure still shone a harsh light on those systems’ vulnerability to cyberattacks, the Washington Post reports. In Colonial’s case, “legacy assets” across the more than 40-year-old system rely on digital technology “that’s been bolted on top,” Siemens Energy vice president Leo Simonovich told the paper, and “as they get more connected, they also become more vulnerable”.

The Post has more on the challenges in protecting existing infrastructure from new cybersecurity threats.

Much of the reporting over the last week has brought new emphasis to a behind-the-scenes problem that receives steady coverage in industry publications.

“The attack is just the latest episode in which hackers have gone after critical systems such as water plants, oil refineries, chemical plants, or the electric grid—including a notorious incident in which Russia shut off part of Ukraine’s power supply,” Politico writes. “It’s also part of a growing plague involving ransomware, in which hackers demanding payments have crippled targets such as hospitals, police stations, or municipal governments.”

“Warning lights have been flashing for some time now, but this is the most brazen attack on critical infrastructure yet,” Katell Thielemann, a VP analyst at Gartner, told Utility Dive. “It shows a complete lack of norms of engagement and fear of reprisal in the cyber domain when criminal actors feel empowered to target critical assets that underpin the lives of millions.”

Solar and wind farms may also be vulnerable, Grist warns.

“This was not a minor target,” energy researcher and author Amy Myers Jaffe told Politico. “Colonial Pipeline is ultimately the jugular of the U.S. pipeline system. It’s the most significant, successful attack on energy infrastructure we know of in the United States. We’re lucky if there are no consequences, but it’s a definite alarm bell.”

(h/t to the amazing and attentive Adrian Irving-Beer for helping to source details on this story)



in Biodiversity & Habitat, Climate Impacts & Adaptation, Fossil Fuels, Health & Safety, Jurisdictions, Oil & Gas, Pipelines / Rail Transport, Sub-National Governments, United States

The latest climate news and analysis, direct to your inbox

Subscribe

Related Posts

bhumann34 / Pixabay
COP Conferences

Emissions Still Rising, ‘Carbon Bombs’ Risk Another 86B Tonnes, as COP28 Talks Flooded by Fossil Lobbyists

December 5, 2023
160
Tony Webster/Flickr
COP Conferences

World Races Toward ‘Disastrous’ Climate Tipping Points, as Positive Change Also Accelerates

December 5, 2023
84
Kiara Worth UNFCCC/flickr
Environmental Justice

Fossil Fuel Phaseout Must Only Be Done Fairly: Athanasiou

December 5, 2023
31

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

Trending Stories

SalFalko/flickr

Canada Pension Plan ‘Flunks the Test’ by Cheerleading Alberta Fossils: DeRochie

December 4, 2023
871
Environment and Climate Change Canada/Facebook

Canada to Mandate 75% Cut in Fossil Industry Methane by 2030

December 5, 2023
476
bhumann34 / Pixabay

Emissions Still Rising, ‘Carbon Bombs’ Risk Another 86B Tonnes, as COP28 Talks Flooded by Fossil Lobbyists

December 5, 2023
160
skeeze / Pixabay

Fossil Phaseout Urgent, 1.5°C Overshoot Inevitable, Scientists Tell COP28 Negotiators

December 5, 2023
215
Mariordo/wikimedia commons

Solid-State Battery Breakthrough Could Double EV Range

November 30, 2023
1.1k
Tony Webster/Flickr

World Races Toward ‘Disastrous’ Climate Tipping Points, as Positive Change Also Accelerates

December 5, 2023
84

Recent Posts

Kiara Worth UNFCCC/flickr

COP Global Stocktake Will ‘Make or Break 1.5°C’, Advocates Warn, as Negotiations Bog Down

December 5, 2023
54
Kiara Worth UNFCCC/flickr

Fossil Fuel Phaseout Must Only Be Done Fairly: Athanasiou

December 5, 2023
31
Jan Arne Wold/Equinor

‘Really Wise Decision’ as Ottawa, Nova Scotia Turn Down Offshore Oil Proposal

December 5, 2023
44
U.S. Energy Information /Pixabay

Interim Toll Allows Trans Mountain to Double Fee to Fossil Producers

December 4, 2023
90
energy efficient home retrofit

Low Funding, Fewer Deep Retrofits Limit Gains from Canada Greener Homes Program

December 4, 2023
366
Northern Lights above the Drayton Valley wildfire, May 2023/Twitter

Climate Analyst Urges Balanced Reporting of Canada’s Wildfire Emissions

December 4, 2023
85
Next Post
https://creativecommons.org/licenses/by-nc-sa/2.0/

Suncor, ATCO Seek Government Backing for ‘Multi-Billion-Dollar’ Hydrogen/CCS Project

Copyright 2023 © Energy Mix Productions Inc. All rights reserved.

  • About
  • Contact
  • Privacy Policy and Copyright
  • Cookie Policy

Proudly partnering with…

scf_withtagline
The Energy Mix - Energy Central
Climate & Capital PrimaryLogo_FullColor
No Result
View All Result
  • Canada
  • Fossil Fuels
  • Ending Emissions
  • Cities & Communities
  • Electric Mobility
  • Heat & Power
  • Community Climate Finance

Copyright 2023 © Smarter Shift Inc. and Energy Mix Productions Inc. All rights reserved.

Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behaviour or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}