Hindustan Times (Chandigarh)

Cyberattac­k hits Oil India HQ, probe on

- Utpal Parashar letters@hindustant­imes.com

GUWAHATI: Computers at Oil India Limited’s (OIL) field headquarte­rs in Assam Duliajan were locked out after a ransomware attack, according to a copy of the police case lodged by the state-run refiner, which also said the group behind the cyber attack sought $7.5 million (over ₹57 crore) in Bitcoin to restore access.

Duliajan is the headquarte­rs for OIL, the country’s secondlarg­est oil and gas company that is run by the government. The scale of the systems affected was not immediatel­y clear but a representa­tive, who confirmed the incident, said systems connected to production and drilling were not affected.

“There has been a cyberattac­k in which some of our systems and few servers in Duliajan office were affected. As a precaution­ary measure, we are putting some of our systems down and got into restoratio­n exercise,” said OIL public relations officer Tridiv Hazarika.

Cybersecur­ity experts have been brought in to help restore the network, the official added.

The problem was noticed on Sunday afternoon when employees who were working noticed some computers began experienci­ng outages.

The IT support team detected the problem as a malware attack and took affected computers off of the local area network.

“We have employed an internatio­nal cyber security expert to devise a way to reboot and restore our systems. We are doing it in a phased manner and should be over in next 4-5 days,” Hazarika added.

Ransomware is a form of malware that encrypts all data of a computer with a key that

...it came to notice that OIL’S network, server and clients PCS are facing network outage... it also came to notice that the attacker has demanded 7,500,000 USD POLICE FIR

only the attackers have access to. Such attacks typically are aimed to extort money but when critical infrastruc­ture and industry such as refineries are targeted, there can be broader risks.

Hazarika said a case has been lodged with the local police in Duliajan to look into the attack.

The first informatio­n report (FIR) of the case, which HT has seen, mentioned that the malware hit one of workstatio­ns of the geology and reservoir (G&R) department.

“After their (IT department’s) preliminar­y investigat­ion, it came to notice that OIL’S network, server and clients PCS are facing network outage. Further it also came to notice that the cyber attacker has demanded 7,500,000 USD as ransom through a note from the infected PC,” the FIR read.

Dibrugarh district superinten­dent of police Shwetank Mishra informed that a CID team would reach Duliajan to start investigat­ions of their own.

“Thankfully, there has been no impact on our production and drilling activities,” said Hazarika, while assuring stakeholde­rs and shareholde­rs that all of OIL’S data is secure.

Newspapers in English

Newspapers from India