Hacker Wipes Romania's Entire Land Registry Database (cybernews.com) 51
A hacker reportedly wiped Romania's entire land registry database after a failed extortion attempt, halting property transactions across the country and preventing notaries from issuing land extracts, authenticating sales, or registering mortgages. "On the dark web, the hacker also boasted to have begun backup copies of stolen data in an attempt to prevent it from being restored," reports Cybernews. "However, Romanian officials have managed to at least restore the ANCPI's website and post a message saying they were rebuilding the agency's entire network from scratch. It appears that the agency has an offline copy of the wiped data." From the report: First, the hacker breached Romania's cadastre agency, the National Agency for Cadastre and Real Estate Advertising (ANCPI), posting on a hacking forum: "[RO] Thy arss shall be spanked, Romania! [ANCPI]." "In addition to the data of Romanian citizens, from various databases collected through ANCPI networks, there is also a copy of the GitLab servers containing the source code of all their systems, such as Eterra, RENNS, as well as a version of my little ransomware program," the announcement continued.
"The official government website announced a shutdown of IT systems due to 'technical problems,' but this is a bit of an understatement. An offer of assistance was made, but without insistence or pressure." Indeed, the ANCPI initially claimed technical issues but had to admit it was facing a cyberattack. Today, no one can really access the institution's systems. And since the extortion didn't work, the hacker -- who seems to have entered the database using valid credentials -- deleted all data they had stolen, including internal documents, employee credentials, and, of course, land registry data.
"The official government website announced a shutdown of IT systems due to 'technical problems,' but this is a bit of an understatement. An offer of assistance was made, but without insistence or pressure." Indeed, the ANCPI initially claimed technical issues but had to admit it was facing a cyberattack. Today, no one can really access the institution's systems. And since the extortion didn't work, the hacker -- who seems to have entered the database using valid credentials -- deleted all data they had stolen, including internal documents, employee credentials, and, of course, land registry data.
They're Russian (Score:3)
Re: (Score:3)
Nuke them. It is time to change Russia into a green glass surface
Most Russians don't support the current regime and are a victim of the current government. They deserve to be nuked for that?
Re: (Score:1)
Re: (Score:3)
Still nuke-able?
Re: (Score:2)
Yup. You don't need a long study of Russian history to see they have suffered a string of leaders that appear to hate the average Russian and will readily kill or crush them one way or another. The current torture is marching into Ukrainian machine guns and drones.
Doesn't matter if you are a Tsar, Stalin or Putin, result appears to be the same, you are cannon fodder mate. Mother Russia is cruel to her children and as far as I can tell they love it, the more miserable it is the crazier they get. Maybe lay
Re: They're Russian (Score:4, Informative)
That polling data is misleading. The party is deliberately unpolular because they get all the grief that actually belongs to putler. It is really a classic:
https://en.wikipedia.org/wiki/... [wikipedia.org]
This is why putler is not "elected" as the head of united russia, but as an independent.
Re: (Score:2)
Sure - it's not easy to get clear, unbiased answers when the country is ruled by fear and an iron fist. But some polling data has shown only 1/3rd of Russians said they would likely vote for the Party Unified Russia. So that means 65% - a vast majority - wouldn't say who they would vote for or would vote for someone else (https://wciom.com/our-news/ratings/rating-of-political-parties). Still nuke-able?
Then that is support for what the Government of Russia does.
I don't support nuking Russia of course, but as long as this present government is in power, what the Russian people support is irrelevant.
Re: (Score:2)
Iran has shown that US military can not even shoot down drones with 100% accuracy.
Then comes the problem that every other nuclear armed country will fire theirs as "pre-emptive self defence"
Let me guess, you have watched Bear Grills and think you can become a survival warrior instantly....ROTFLMAO.
Re: (Score:2)
Are you Russian ?
You know Mother Russia appears to hate you? When is it your turn to get drafted to die for an Oligarch?
Re: (Score:2)
I live in a country that is far more free and democratic than either of those.
Re: (Score:2)
That discounts China then. Assuming you are not lying.
Let me guess a Scandi perhaps? Or Dutch.
Do you have sympathy for Russia? Or maybe it's fear. Granted there's a lot to fear with Crazy Ivan, but I don't think even he is that crazy to start lobbing Nukes about wholesale. No winners in that game. Only losers.
Re: (Score:2)
I also have US friends who I do not judge because of Trump (not that they would vote for the pedo anyway)
I am a Kiwi, I have no need to lie
Re: (Score:2)
No Russian, nor US. I live in a country that is far more free and democratic than either of those.
Wonderful - now show the other 8 billion of us the path to being just like your free and democratic shining light on the hill.
I suspect like many of the better countries, yours probably has somewhere around the population of New York City.
Re: (Score:2)
Aussies...have some things better but their racism towards the Aborigines is bad.
I have been to the USA about 10 times, both for work and holidays (the tourist trap cities).
Closest to China I have been to China is HongKong before China started becoming aggressive there, won't be back.
Been to lots of EU countries too.
Re: (Score:2)
+1 Funny!
I'm Romanian and this is BS (Score:5, Interesting)
In the summary (Score:4, Informative)
It appears that the agency has an offline copy of the wiped data.
Re: In the summary (Score:4, Informative)
They actually do.
The whole system used to be paper based until few years ago. My guess is they'll be going back to the paper version for a few days/weeks.
But for obvious reasons, it's more practical to repair the digital version and resume operations ASAP.
Re: (Score:1)
If the new stuff is backed by paper stuff (showing the same data), and the digital records are backed up on a tape drive/library, it shouldn't be a massive problem.
The paper stuff is at one location along with the meatsacks administering stuff, the tape backup is someplace else... even if it's just scans of files or decent cell phone pics, that's good enough to reconstruct everything from.
An office that doesn't have backups is destined for a bad time.
If you're relying on Cloud backups... have that cloud bac
Re: In the summary (Score:5, Interesting)
In South Africaâ(TM)s capital the building that contained all the property data burned down about 10 years ago. Since that was not digitized yet is was and still is a major problem
Re: (Score:2)
This is why I wonder why companies are not working on high capacity backups. We have LTO for tape... and that's it. Not even IBM (IIRC) develops their own format anymore.
We desperately need companies to start doing HVD disks and holographic media. Hell, we had Tamarak with holographic media in the 1990s, and many companies doing it. Yes, there are hurdles, but there were hurdles with CDs and DVDs, which were easily solved. This way, we can get something like a 400 CD jukebox, add a HVD drive, and even
heading towards a success story? (Score:5, Insightful)
It appears that the agency has an offline copy of the wiped data.
Seems like this is heading towards a success story? Critical systems hacked and data lost. System rebuilt from scratch and data restored. Temporary service outage during rebuild/restore.
Yeah, preventing the intrusion would have been a better success story, but the above is also a success.
Re: The cloud is someone elses computer (Score:1)
Re: (Score:2)
The fact that you do not grasp that "insert random agency" is not the government should concern the people who have stakes in you.
Re: (Score:2)
And many sysadmins think that their on-premise servers are immune from hacking. In my experience, self-hosted servers are much less protected than cloud servers. This is because most companies that self-host, refuse to spend the money required to implement real security measures.
Re: The cloud is someone elses computer (Score:2)
Unless those servers are owned by Microsoft, and then they've had multiple breakins where there are no logs so they don't know what happened
Re: (Score:2)
I presume you are referring to Azure. I'm not sure what missing logs your are referring to. Windows servers keep _tons_ of logs, as does Azure itself. Could a hacker break in without leaving a log trace? Sure. But it would be a lot harder than doing so in an on-premise server cluster.
Welcome to new war tactics... (Score:2)
The problem is that many companies and governments don't realize that they can't go cheap on backups. A few years ago, having a NAS on site that backs up all the other company machines was good enough. For peace of mind, go 3-2-1, and copy critical data offsite.
Then came ransomware, then NotPetYa type of data destruction software. Now, 3-2-1-1-0 is minimum, with the offline copy being WORM, and LTO being the only high capacity, archive rated storage medium out there. Problem is that storage hasn't incre
Cost of mitigation (Score:3)
Friendly word to business owners and senior managers; if you haven't tested your ransomwate recovery mechanism and proved it works just assume there is none.
...and no I don't know the details but I can tell you it was preventable.
Re: (Score:2)
Re: (Score:2)
Tape is great!
Have the tape drive backup program just watching for changed files from a group of programs, and if there's changes, it needs a password to start copying to the tape library or drive (whatever). The tape drive or library is either offsite or in building (but safe from anything that could get onto the companies network), and as soon as that ransomware screen pops up, kick the power button on the power strip (or yank the power cable to the computer).
If it's accessible online, connected to the '
Re: Cost of mitigation (Score:2)
Also Slovakia (Score:3)
The Slovakian land registry also got hacked 2 years ago. I wonder if they are using the same software.
Re: (Score:3)
Pretty sure no, Romanian software is made by a group of local companies. And those companies have a bad reputation, being linked [hotnews.ro] to a fugitive [wikipedia.org].
Kafka (Score:2, Troll)
Someone call Land Surveyor K. There's now an entire country to survey. His training may finally be useful.
Sounds like they werent as tough as they thought (Score:1)
Sounds like they werent as tough as they thought. Everytime the DMV dicks around a citizen, I always wonder who among the crowd "possess certain skills" and get tired of it. I'm glad someone got a point back for their side.
Wasted opportunity! (Score:2, Funny)
If they were smart then they would have simply sold land to people on a legit looking website and changed the ownership database. If you are morally bankrupt then you should at least avoid being intellectually bankrupt.
Try that with paper and microfiche! (Score:2)
Just saying .. an off-site backup is very good for such data!
Do Albania next (Score:2)
offline data (Score:2)
"It appears that the agency has an offline copy of the wiped data"
Well, like, duh. Had they not, they should all be immediately fired. And never work in IT again.
ByteToBreach identity attributed to Zakaria Mahdjo (Score:2)
‘In an interview with Euronews Romania conducted over the Signal messaging app, a person claiming to be the hacker apologized to Romanians and IT professionals for the intrusion and, when asked whether c
How should this be classified as? (Score:2)