In a significant cybersecurity incident, the All-Russian State Television and Radio Broadcasting Company (VGTRK) suffered a major hacker attack on October 7, 2024. The attack, described as “unprecedented,” targeted the media holding’s IT systems, causing disruptions to online broadcasting and internal services.
The Scale and Impact of the Cyberattack
According to initial reports from Gazeta.ru, the attack resulted in the shutdown of VGTRK’s online broadcasting and internal services, including internet and telephony systems. An anonymous source claimed that all data on the servers, including backups, had been wiped, suggesting a potentially severe and long-lasting impact on the organization’s operations.
While VGTRK officials confirmed the attack, they maintained that the incident did not cause substantial damage to the media holding’s operations. They assured that federal TV channels and radio stations continued to broadcast normally, emphasizing that there was no significant threat to their primary functions.
Technical Details and Potential Perpetrators
Cybersecurity experts from FACCT reported that information about the attack first appeared on the social network X, attributed to a pro-Ukrainian hacktivist group called “sudo rm -RF”. This group has previously claimed responsibility for several high-profile cyberattacks on Russian targets, including the RuTube platform in May 2022 and the Skolkovo database breach in May 2023.
Specific Systems Affected
According to the Telegram channel Baza, while the on-air broadcasting of VGTRK channels remained uninterrupted, the attack significantly impacted content production. The internal server hosting the Dalet program, which stores source materials for news segments, was reportedly compromised. This forced the channels to rely on archival footage for their broadcasts.
Additionally, the attack affected administrative systems, causing disruptions to temporary pass requests and potentially compromising the media holding’s archives. The full extent of the damage and the possibility of data recovery remain uncertain at this time.
Official Response and Ongoing Investigation
Dmitry Peskov, the Press Secretary for the President of Russia, acknowledged the severity of the incident, stating that specialists are working to investigate the circumstances and trace the origins of the attack. He emphasized that the cyberattack targeted a critical infrastructure object, underscoring the potential national security implications of the incident.
As cybersecurity experts continue to analyze the attack and its consequences, this incident serves as a stark reminder of the vulnerabilities faced by media organizations and critical infrastructure in the digital age. It highlights the need for robust cybersecurity measures and incident response plans to protect against and mitigate the impact of such sophisticated attacks on essential communication systems.