• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechCybersecurity

Hackers Have Penetrated Energy Grid, Symantec Warns

Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
September 6, 2017, 6:00 AM ET

Hackers have been burrowing their way inside the critical infrastructure of energy and other companies in the U.S. and elsewhere, warns cybersecurity giant Symantec.

In a new report, Symantec (SYMC) claims that the threat of cyberattack-induced power outages in the west has elevated from a theoretical concern to a legitimate one in recent months. “We’re talking about activity we’re seeing on actual operational networks that control the actual power grid,” Eric Chien, technical director of security technology and response at Symantec, told Fortune on a call.

Reports surfaced over the summer of hackers targeting staff at nuclear energy facilities with phishing attacks, designed to steal login credentials or install malware on machines. The extent of the campaign as well as the question of whether the attackers had breached operational IT networks, rather than merely administrative ones, was unclear at the time.

Symantec is now erasing all doubt. “There are no more technical hurdles for them to cause some sort of disruption,” Chien said of the hackers. “All that’s left is really motivation.”

Get Data Sheet, Fortune’s technology newsletter.

Symantec detailed its findings in a report released Wednesday morning. The paper tracks the exploits of a hacker group that Symantec has dubbed DragonFly 2.0, an outfit that the company says it has linked to an earlier series of attacks perpetrated between 2011 and 2014 by a group it dubbed DragonFly.

Adam Meyers, vice president of intelligence at CrowdStrike, a billion-dollar cybersecurity startup, said his team had been tracking the group, which it dubbed Berserk Bear, since 2015. He disputed Symantec’s attribution, saying there is no reason to believe that DragonFly—nicknamed “Energetic Bear” by CrowdStrike—and DragonFly 2.0 (aka Berserk Bear) were linked.

In Meyers view, there’s not enough evidence to tie the two groups together, especially given that source code for some of the malicious software used in the most recent attacks leaked in 2010, he said. In other words, anyone could incorporate the code into their own hacking tools.

Meyers did wager a guess about the origin of the attacks, however. “It’s likely a Russian actor targeting global energy and related industries,” Meyers added, noting that the intrusions appeared to align with Moscow’s strategic interests.

The most recent wave of attacks hit energy companies in the U.S., Turkey, Switzerland, Afghanistan, and elsewhere. The first phase began in December 2015 with a set of phony New Year’s Eve party invitations that were actually boobytrapped emails. The intensity and frequency of attacks picked up this year, Symantec said.

Chien said Symantec had notified more than 100 companies in the U.S., Europe, and elsewhere about the attacks. Even if businesses remove the malware on their computers, the attackers might still be able to use stolen login credentials to commandeer the corporate systems, he said.

Such an attack would echo tactics employed in Ukraine, where attackers infiltrated computers and caused a temporary blackout at the end of last year.

Rob Lee, CEO of Dragos, a startup that protects critical infrastructure networks, told Fortune that he was, like Meyers, not sold on Symantec’s attribution work. “I’m not yet confident linking this to Dragonfly, but what Symantec highlights is a consistent and worrying trend of adversaries targeting U.S. industrial infrastructure,” he wrote in an email. “Our infrastructure is resilient so folks shouldn’t worry, but we do need to do more in the face of an aggressive adversary.”

Other experts are more outwardly alarmed by the recent breaches. “We used to talk about what could a cyber attack do—it could shut down the power grid. That was all hypothetical,” Chien told Fortune. “Now we’re seeing activity where, to be honest, if they wanted to disrupt something in the power grid, they could have done it yesterday.”

Before President Donald Trump took office, he vowed to conduct a sweeping review of the nation’s and federal government’s cyber defenses. At the end of last month, a quarter of the president’s National Infrastructure Advisory Council quit their advisory posts, saying that the president had devoted “insufficient attention” to cybersecurity threats to critical infrastructure.

About the Author
Robert Hackett
By Robert Hackett
Instagram iconLinkedIn iconTwitter icon
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

A woman looks frustrated a computer
AIWomen
Women are avoiding the very technology that threatens them most, as expert warns of a ‘two-tiered AI economy’ approaching
By Jacqueline MunisMarch 21, 2026
2 hours ago
AIFinance
Why Block’s COO is tracking ‘gross profit per employee’—and how AI is on track to double it to $2 million
By Sheryl EstradaMarch 21, 2026
3 hours ago
home for sale
AIChatGPT
A man let ChatGPT sell his home. It beat every agent’s estimate by $100K—and closed in 5 days
By Jake AngeloMarch 21, 2026
4 hours ago
LawElon Musk
Musk misled Twitter investors before 2022 buyout, jury says
By Isaiah Poritz, Jef Feeley and BloombergMarch 20, 2026
12 hours ago
bespectacled man scratches the back of his head during congressional hearing
CryptoCryptocurrency
Kalshi locks in $22 billion valuation, gaining slight edge over its rival Polymarket
By Carlos GarciaMarch 20, 2026
14 hours ago
Big TechEntrepreneurs
Mark Cuban reads 1,000 emails a day—now he’s using a Mac Mini to fight the AI-generated flood threatening his clean inbox obsession
By Marco Quiroz-GutierrezMarch 20, 2026
15 hours ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.