elsehow

Share this post

China did not turn off the power in Mumbai

www.else.how

China did not turn off the power in Mumbai

A "cyber-USS Maine"

Nick Merrill
Mar 5, 2021
1
1
Share this post

China did not turn off the power in Mumbai

www.else.how
A woman works in a dark kitchen.
Photo: Y!F.

The New York Times insinuated that a Chinese cyberattack shut off the power in Mumbai for 12 hours.

It’s true that a Chinese APT is going after Indian targets, including India’s electrical grid.

1
It’s also true that an Indian minister kind-of-sort-of blamed the outage on a cyber attack.
2

But the outage wasn’t caused by a cyber attack. It was caused by human error.

According to Union Power Minister RK Singh:

We had sent a team and their conclusion was that there were some mistakes made by operators and those who handle state transmission system.

3

The New York Times has not issued a retraction—or even added a correction.

Implying—with its colossal megaphone—that China turned off the power in a major city is a big move. The Times should be more careful. Wars have started over less.

In other news…

Substack and Discord have a fun file upload vulnerability, discovered by Devin Gaffney.

Attackers breached Gab (think Nazi Twitter) and got private user data. It was a SQL injection attack, which means the Gab developers are amateurs, but slightly more skilled than the Parler developers, who had just stored private data publicly, unencrypted.

1

https://go.recordedfuture.com/hubfs/reports/cta-2021-0228.pdf

2

https://au.finance.yahoo.com/news/mumbai-power-outage-could-cyber-163116612.html

3

https://www.news18.com/news/india/no-sabotage-behind-mumbai-power-outage-chinese-hacking-attempt-in-nov-last-yr-power-minister-3488093.html

1
Share this post

China did not turn off the power in Mumbai

www.else.how
1 Comment
D.M. Sayres
Writes UNSKIND
Mar 6, 2021

What do you make of China being the go-to cyber boogiemen? What percentage of that is valid fear, what percent is scapegoating? Seems to be a persistent theme lately. Also, separating "state" actors from "state-sponsored" actors, from "independent" orgs...is that a bit reductionist? I'm sure it gets more complicated...maybe a topic for future posts.

Expand full comment
Reply
TopNewCommunity

No posts

Ready for more?

© 2023 Nick Merrill
Privacy ∙ Terms ∙ Collection notice
Start WritingGet the app
Substack is the home for great writing