RIA’s summary for February indicates that on 4 and 5 February, there were disruptions in the SKAIS2 information system of the Social Insurance Board. The disruptions primarily affected assistive device service providers, who were unable to use the system to check whether the purchaser of the assistive device was entitled to a discount.
On 6 February, there were disruptions when accessing the internet bank and mobile app of LHV. The disruptions were caused by a higher than usual number of users following the release of a new mobile application.
On 9 February, denial-of-service attacks were carried out against the eok.ee website of the Estonian Olympic Committee. Due to the attack, the website was temporarily unavailable on several occasions or responded to queries significantly slower than usual. The attack also affected other websites hosted by the same service provider.
On 10 February, there were short-term interruptions in the operation of the websites terviseportaal.ee, tehik.ee, shk.sm.ee, and misp2.digilugu.ee, which are managed by the Health and Welfare Information Systems Centre. The cause of the interruptions was a configuration error.
On 16 February, there were problems with signing using Smart-ID and Mobile-ID in the e-services environment of the Estonian Tax and Customs Board. The disruptions were caused by an eMTA setting that caused the user session to expire before the signing process was completed.
At the end of February, various phishing emails were once again sent out en masse. The attackers claimed to be from Omniva, LHV Bank, or Smart-ID. The attackers asked people to log in and identify themselves using Smart-ID, referring to anti-money laundering requirements and warning that failure to do so could result in restricted access to their services.
RIA analyst Dorel Kiik warned that such emails are sent from suspicious email addresses. ‘Banks and service providers never send such emails or ask you to enter your details via suspicious links. If you receive such an email, do not click on the link or enter your details. Instead, forward the email to [email protected] to help us take down the phishing sites and then delete the email from your inbox,’ said Kiik.