Belarusian hackers destroy Aeroflot servers, steal 22 terabytes of data in targeted cyber operation

Belarusian hackers take credit for Aeroflot cyberattack

A group of Belarusian hackers has claimed responsibility for a powerful cyberattack on Aeroflot, Russia’s largest airline. The group, known as Silent Crow, said the operation was not only meant to cause damage but also to send a clear warning to Russian authorities.

In a statement posted on the encrypted messaging app Telegram, Silent Crow revealed that it had secretly gained access to Aeroflot’s systems and stayed inside for nearly a year. During this time, the group says it mapped out the airline’s entire IT network and carefully prepared for the attack.

“We didn’t just hack them. We lived inside their system,” the hackers wrote. According to their message, the attack was carefully planned to show how weak and outdated Russia’s digital security really is.

Silent Crow was joined in the operation by Cyber Partisans, another hacker group made up of Belarusians living in exile. Both groups oppose the governments in Belarus and Russia and have been carrying out digital attacks as part of their resistance.

Hackers claim access to top-level systems and private data

The hackers said they accessed Tier0 infrastructure, the most critical level of an organization’s digital system. Tier0 access means control over core functions, such as user identities, security permissions, and key internal servers. If true, this would give the attackers nearly complete control over Aeroflot’s digital operations.

They also claimed to have taken over employee computers, including those used by the airline’s top leadership. According to Silent Crow, they viewed private company files, monitored internal communication channels, and even accessed wiretapping servers.

Belarusian hackers destroy Aeroflot servers, steal 22 terabytes of data in targeted cyber operation

The hackers said they destroyed around 7,000 servers, both physical and virtual. They also claim to have stolen 22 terabytes of data. This includes databases, emails, internal chats, and other company documents.

The group estimates the total damage could cost Aeroflot tens of millions of U.S. dollars. More importantly, they said the attack was a way to expose the failure of Russian cybersecurity systems.

“This was a message to Russia’s security agencies. Your systems are not safe,” they said.

Attack caused major flight delays across Russian airports

The cyberattack had real-world consequences. On July 28, Aeroflot announced that its information systems had been disrupted. This led to a wave of flight cancellations and delays across airports in Moscow and St. Petersburg.

From Moscow, 19 flights were cancelled and 16 were delayed, while 16 more were cancelled on the return leg. In St. Petersburg, 6 Aeroflot flights were cancelled and 9 delayed, along with more delays on flights heading back.

Aeroflot blamed the problems on a “forced adjustment to the flight schedule,” but gave few details. As travelers waited in terminals, Silent Crow released its public statement taking credit for the attack.

The hacker groups said this operation was also aimed at Russia’s cybersecurity agencies, including the Federal Security Service (FSB) and the National Coordination Center for Computer Incidents (NCCCI).

They ended their message by saying they plan to leak parts of the stolen data in the future. “We didn’t just destroy the infrastructure. We left a trace,” the message read.

Renuka Bangale
Renuka Bangale
Renuka is a distinguished Chartered Accountant and a Certified Digital Threats Analyst from Riskpro, renowned for her expertise in cybersecurity. With a deep understanding of cybercrimes, malware, cyber warfare, and espionage, she has established herself as an authority in the field. Renuka combines her financial acumen with advanced knowledge of digital threats to provide unparalleled insights into the evolving landscape of information security. Her analytical prowess enables her to dissect complex cyber incidents, offering clarity on risks and mitigation strategies. As a key contributor to Newsinterpretation’s information security category, Renuka delivers authoritative articles that educate and inform readers about emerging threats and best practices.

TOP 10 TRENDING ON NEWSINTERPRETATION

Greene breaks GOP silence, denounces Trump’s handling of Rob Reiner tragedy

The reported deaths of filmmaker Rob Reiner and his...

Maria Shriver lashes out at Trump over comments made after Reiner family tragedy

Maria Shriver expressed deep anger and frustration over President...

Iran-linked hackers weaponize doxxing and bounties in escalating cyber war on Israelis

An Iran-linked hacker group has launched an online campaign...

GAO report backs AOC’s warning on Puerto Rico tax breaks costing taxpayers hundreds of millions

A new government report has revealed that a special...

SEC quietly pulls back on crypto enforcement as Trump-linked companies catch a break

A significant change has taken place in how the...

McKinsey faces sweeping job cuts as consulting giant confronts slowing growth at 100

As McKinsey & Co. celebrates 100 years, the firm...

Security researchers warn that some sideloaded Kindle e-books may contain hidden malware

A new cybersecurity warning has raised concerns for Kindle...

Noem shifts blame to ICE as Trump administration grows impatient with deportation pace

Department of Homeland Security Secretary Kristi Noem is facing...

Stanford experiment shows AI hacker ARTEMIS outperforms highly paid human cybersecurity experts

An artificial intelligence system has achieved a major milestone...

Cyber warfare reaches the high seas as IRGC-linked hackers target Greek shipowner Altomare

Leaked documents show that the Greek shipowner Altomare was...

Related Articles

Popular Categories

error: Content is protected !!