Cloud Defense Logo

Products

Solutions

Company

Book A Live Demo

Breach
2023
How 50% of telco Orange Spain’s traffic got hijacked — a weak password

How 50% of telco Orange Spain’s traffic got hijacked — a weak password

Table of Contents

Incident Details

Orange Spain faced a service interruption today caused by a BGP hijacking incident, resulting in a significant reduction of around 50% in traffic from Orange Spain patrons. The perpetrator managed to infiltrate Orange's RIPE account, which oversees the administration of internet IP addresses. By leveraging details acquired from the compromised RIPE account, the perpetrator enacted a disruptive configuration that compromised BGP routing, disrupting the network's ability to facilitate communication between different networks. This security breach transpired as the perpetrator exploited a weak password to access the compromised RIPE account, which had been compromised since August of the previous year. The illicit trading of login credentials for access.ripe.net in underground markets heightens the risk of similar cyber assaults targeting other establishments and internet service providers throughout Europe. Orange Spain swiftly rectified the alterations and reinstated services for its customers. However, this incident is not an isolated case, with comparable security breaches being prevalent. Key takeaways from this incident underline the significance of enabling two-step verification in RIPE accounts and the necessity for RIPE to enforce multifactor authentication for all users consistently. An investigation has been launched by RIPE, aiming to mandate two-step verification and introduce a broader spectrum of authentication mechanisms in the near future.

Incident

How Did the Breach Happen?

An intrusion took place when an unauthorized individual gained access to Orange's RIPE account by exploiting a password vulnerability.

What Data has been Compromised?

While no specific data was compromised in the breach, it led to a notable decrease in web traffic coming from customers in Orange Spain.

Why Did the company's Security Measures Fail?

The lack of adequate security measures, such as a weak password for the RIPE account and the absence of two-step verification, resulted in a breach in the company's security.

What Immediate Impact Did the Breach Have on the company?

The breach resulted in an immediate outage that impacted Orange Spain's services, leading to a decrease of nearly half in customer traffic.

How could this have been prevented?

The breach could have been avoided by utilizing a robust password for the RIPE account and enforcing two-factor authentication as a required security protocol.

What have we learned from this data breach?

The significance of robust passwords and increased security protocols, like two-factor authentication, is underscored by this breach, as they serve to safeguard against unauthorized entry and potential interruptions in services.

Summary of Coverage

An insufficient password enabled an unauthorized individual to access Orange Spain's RIPE account, resulting in a BGP hijacking and subsequent service interruption. This breach emphasizes the importance of implementing strong security protocols, such as using robust passwords and two-factor authentication, to mitigate the risk of unauthorized entry and safeguard against network disturbances.

Is your System Free of Underlying Vulnerabilities?
Find Out Now