Russian Government briefed that says some of its federal agencies’ websites were compromised in a supply chain attack on 8th March after unknown attackers hacked the stats widget used to track the number of visitors by multiple government agencies.
The units that are targeted by the attackers are as follows the Energy Ministry, the Federal State Statistics Service, the Federal Penitentiary Service, the Federal Bailiff Service, the Federal Antimonopoly Service, the Culture Ministry, and other Russian state agencies.
The incident was discovered on the 8th of March after attackers blocked access to the site and published their own banners.
“It is difficult to compromise these websites directly, so hackers attack resources through external services and thus gain access to demonstrate incorrect content,” the press service of the Russian Ministry of Economic Development told Interfax.
“After hacking the widget, hackers were able to publish incorrect content on the pages of the websites. The incident was promptly localized.”
The Russian digital development ministry maintains that the websites are brought back within after an hours after the breach.
The origin of attack is still unknown. It is also mentioned by the Russian ministry that they have launched a Forensic investigation of the attack.