A new SpyCloud study found that nearly 18% of U.S. water and wastewater organizations have identity data actively exposed by infostealers, with one infected vendor device exposing logins tied to about 167 utility metering tenants. The report warns that stolen credentials can enable cascading supply chain exposure and provide attackers with legitimate access paths into corporate email, VPNs, and operational technology systems. #SpyCloud #CISA #EnvironmentalProtectionAgency
Keypoints
- SpyCloud analyzed 10,000 organizations and found 1,787 with active infostealer exposure.
- Nearly two of every 10 U.S. water and wastewater organizations were affected.
- A single infected device at a smart meter provider exposed logins for about 167 utility metering tenants.
- Stolen session cookies and credentials can let attackers bypass multifactor authentication.
- The report found 258 exposed organizations had credentials for operational technology or remote-access systems.
Read More: https://cyberscoop.com/spycloud-study-water-utilities-infostealer-exposure/