Romania’s national oil pipeline firm Conpet reports cyberattack
嗯,用户让我帮忙总结一下这篇文章的内容,控制在一百个字以内,而且不需要用“文章内容总结”或者“这篇文章”这样的开头。直接写描述即可。首先,我需要仔细阅读这篇文章,抓住主要信息。 文章讲的是罗马尼亚的国家石油管道公司Conpet遭受了网络攻击。攻击影响了他们的业务系统,导致网站暂时下线。不过,运营技术如SCADA和通信系统没有受到影响,所以石油运输正常进行。公司内部专家已经采取了应对措施,并与国家网络安全机构合作调查。此外,他们还向有关部门提交了刑事投诉。 还有提到Qilin勒索软件集团声称窃取了1TB的数据,并在Tor网站上发布了数据样本。Qilin自2022年以来活跃,并且最近与其他两个勒索软件集团结盟,提升了攻击能力。罗马尼亚的其他关键基础设施也遭受过类似攻击。 总结的时候要简明扼要,控制在100字以内。重点包括:Conpet遭遇网络攻击,影响业务系统和网站;运营技术未受影响;公司正在调查并采取措施;Qilin勒索软件声称窃取数据;其他基础设施也受攻击。 现在把这些信息浓缩成一段话,确保不超过100字,并且直接描述内容。 </think> 罗马尼亚国家石油管道公司Conpet遭遇网络攻击,导致业务系统中断及网站暂时下线。尽管运营技术未受影响,但公司已启动应对措施并与网络安全机构合作调查。Qilin勒索软件声称窃取其1TB数据。近期罗马尼亚其他关键基础设施也频遭勒索攻击。 2026-2-9 08:55:40 Author: securityaffairs.com(查看原文) 阅读量:0 收藏

Romania’s national oil pipeline firm Conpet reports cyberattack

Pierluigi Paganini February 09, 2026

Romania’s national oil pipeline operator Conpet said a cyberattack disrupted its business systems and temporarily knocked its website offline.

Conpet is a state-controlled company that owns and operates the country’s crude oil, condensate, and liquid petroleum product pipeline network. Its main role is to transport oil from domestic production fields and import points to refineries across Romania.

A company press release states that it detected a cyberattack on February 3, 2026, which impacted the company’s business IT infrastructure.

CONPET clarifies that operational technologies were not affected, including the SCADA and telecommunications systems, and that the National Oil Transport System continues to operate normally without disruptions or safety issues. Oil and fuel transport activities remain fully functional.

As a consequence of the incident, the company’s website (www.conpet.ro) is currently inaccessible.

The company reports that its internal specialists immediately activated mitigation measures and are working closely with Romania’s national cybersecurity authorities to investigate the incident and restore affected systems as quickly as possible.

On the same day, CONPET also filed a criminal complaint with Directorate for Investigating Organized Crime and Terrorism (DIICOT), Romania’s organized crime and terrorism investigation directorate.

Finally, the pipeline operator emphasizes that the incident does not affect its operational activity, financial stability, or ability to meet contractual obligations.

“CONPET S.A. informs about the fact that, on 03.02.2026, there was a cyber attack that affected the business IT infrastructure of the company.” reads the press release published by the company.

“We mention that the operational technologies (SCADA System and Telecommunication System) have not been affected, thus the basic activity of the society, consisting of the transport of oil and gasoline through the National Oil Transport System, operates in normal parameters and there are no synchronization in its operation.”

The company did not provide technical details about the attack, however, the ransomware group Qilin added the company to its Tor data leak site on February 5, 2026. The extortion group claims the theft of 1TB of sensitive data and published images of stolen data as proof of the hack.

Qilin ransomware operation has been active since 2022, it has become one of the most active RaaS groups in 2025, claiming over 40 victims monthly and peaking at 100 in June. Recently, Resecurity’s researchers detailed how the Qilin RaaS group relies on global bulletproof hosting networks to support its extortion operations.

In early October, DragonForceLockBit, and Qilin formed a ransomware alliance to boost attack effectiveness, marking a major shift in the cyber threat landscape. Ransomware groups DragonForce, LockBit, and Qilin formed a strategic alliance to enhance their attack capabilities, signaling an evolving cyber threat landscape. The alliance aims at sharing tools and infrastructure to enhance attack effectiveness. 

Recently, other critical infrastructure operators in Romania have suffered ransomware attacks, including Romania’s largest coal-based power producer Oltenia Energy Complex and Romanian energy supplier Electrica Group

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – malware, Conpet)




文章来源: https://securityaffairs.com/187736/cyber-crime/romanias-national-oil-pipeline-firm-conpet-reports-cyberattack.html
如有侵权请联系:admin#unsafe.sh