The Regional Internet Registry for Europe, the Middle East, and Central Asia is investigating the compromise of an administrator account that has disrupted network traffic.
RIPE is the regional database that contains all IP addresses and their owners for every country in the Middle East, as well as Europe and Asia.
Internet traffic in the United Arab Emirates and other Middle East nations showed a dip in network traffic overnight and at the start of today.
It was unclear if any other accounts had been hacked.
Security researchers from Hudson Rock reported that the Orange Spain employee was infected by the Raccoon infostealer malware in September 2023, and their account had access credentials for https://access.
The attacker abused the Border Gateway Protocol routing configuration for Orange, the researchers noted.
The attacker publicly disclosed the password, claiming that the account did not have two-factor authentication enabled.
Ironically, the Regional Internet Registry statement in the wake of the attack recommended that account holders enable multifactor authentication.
This Cyber News was published on www.darkreading.com. Publication date: Thu, 04 Jan 2024 18:20:04 +0000