Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: CRITICAL INFRASTRUCTURE

Threat Research

Redfly: Espionage Actors Continue to Target Critical Infrastructure

September 7, 2023October 22, 2025 Securonix

Symantec’s Threat Hunter Team links the Redfly espionage group to a ShadowPad-based intrusion targeting a national grid in Asia, with credentials stolen and multiple hosts compromised over as long as six months. The campaign features a ShadowPad variant, Packe…

Read More
Threat Research

Scattered Spider: The Modus Operandi

August 18, 2023October 17, 2025 Securonix

Scattered Spider (UNC3944, Scatter Swine, Muddled Libra) is a financially motivated threat actor active since May 2022, primarily targeting telecom and BPO sectors and expanding to critical infrastructure. The group relies on social engineering, signed kernel …

Read More
Threat Research

Cuba Ransomware Deploys New Tools: BlackBerry Discovers Targets Including Critical Infrastructure Sector in the U.S. and IT Integrator in Latin America

August 14, 2023October 16, 2025 Securonix

BlackBerry reports Cuba ransomware has rolled out new tools in campaigns targeting U.S. critical infrastructure and a Latin American IT integrator, including the first observed use of CVE-2023-27532 against Veeam. The findings detail evolving TTPs and toolsets…

Read More
Threat Research

Chinese Threat Actor Used Modified Cobalt Strike Variant to Attack Taiwanese Critical Infrastructure

May 28, 2023October 15, 2025 Securonix

A Chinese threat actor operated a modified Cobalt Strike variant, “Cobalt Strike Cat,” to attack Taiwanese government entities and critical infrastructure. The campaign covered recon, exploitation of remote code execution vulnerabilities, credential theft, and…

Read More
Threat Research

Volt Typhoon targets US critical infrastructure with living-off-the-land techniques | Microsoft Security Blog

May 19, 2023October 17, 2025 Securonix

Volt Typhoon is a China-based state-sponsored actor targeting US critical infrastructure with stealthy post‑compromise credential access and network discovery. The campaign relies on living-off-the-land techniques and traffic proxying through compromised devic…

Read More
Threat Research

#StopRansomware: BianLian Ransomware Group | CISA

May 10, 2023October 15, 2025 Securonix

Two sentences summarizing: FBI, CISA, and ACSC describe BianLian ransomware and data-extortion group IOCs and TTPs identified through investigations as of March 2023, noting a shift from double-extortion to exfiltration-based extortion. The advisory covers ini…

Read More
Threat Research

Uncovering RedStinger – Undetected APT cyber operations in Eastern Europe since 2020

May 8, 2023October 16, 2025 Securonix

Red Stinger is an Eastern Europe–focused APT active since 2020, tracked publicly by Malwarebytes and Kaspersky under different aliases, with campaigns targeting Ukraine’s military, transportation, and critical infrastructure. The operation used a repeatable in…

Read More
Threat Research

Threat Assessment: Royal Ransomware

May 4, 2023October 15, 2025 Securonix

Royal ransomware is a private group formed by former Conti members that has targeted critical infrastructure, notably healthcare, since September 2022. It uses BATLOADER to drop a Cobalt Strike beacon and has expanded to a Linux/ESXi variant, with public extor…

Read More
Threat Research

X_Trader Supply Chain Attack Affects Critical Infrastructure Organizations in U.S. and Europe

April 19, 2023October 13, 2025 Securonix

Symantec’s Threat Hunter Team links a broader X_Trader software supply chain attack to multiple victims, including two critical infrastructure organizations in the energy sector in the U.S. and Europe, plus two other financial trading firms. The operation uses…

Read More
Threat Research

Threat Actor Spotlight: RagnarLocker Ransomware – Sygnia

April 4, 2023October 15, 2025 Securonix

Sygnia analyzes RagnarLocker, detailing its double-extortion operations against critical infrastructure and the group’s TTPs, including the use of RMS and AnyDesk for C2 and data exfiltration. The report also offers mitigations and hunting guidance to help org…

Read More
Threat Research

#StopRansomware: Ransomware Attacks on Critical Infrastructure Fund DPRK Malicious Cyber Activities | CISA

February 6, 2023October 15, 2025 Securonix

The advisory outlines ongoing DPRK state-sponsored ransomware activity targeting Healthcare and Public Health Sector organizations and other critical infrastructure, detailing TTPs, IOCs, and cryptocurrency ransom payments. It also describes how actors acquire…

Read More
Threat Research

NoName057(16) – The Pro-Russian Hacktivist Group Targeting NATO

January 5, 2023October 14, 2025 Securonix

NoName057(16) is a pro-Russian hacktivist group conducting DDoS campaigns targeting Ukraine, NATO, and other entities, leveraging Telegram, a volunteer-driven DDoS program, and a GitHub-hosted toolkit. The group has impacted several sectors including governmen…

Read More
Threat Research

Cyble – Mallox Ransomware Showing Signs Of Increased Activity

December 7, 2022October 15, 2025 Securonix

Mallox ransomware activity has surged, driven by a .NET-based loader that downloads encrypted payloads and decrypts them in memory before encryption. The operation targets critical infrastructure, stops GPS-related services, and uses a private chat and leak si…

Read More
Threat Research

Vulnerable SDK components lead to supply chain risks in IoT and OT environments | Microsoft Security Blog

November 16, 2022October 16, 2025 Securonix

Microsoft researchers warn that vulnerable Boa web servers embedded in IoT SDKs create supply-chain risk across critical infrastructure by enabling attackers to silently access networks and gather information. The post highlights Boa prevalence, CVEs in RealTe…

Read More
Threat Research

Ransomware Roundup: Ragnar Locker Ransomware | FortiGuard Labs

September 14, 2022October 14, 2025 Securonix

Fortinet’s Ragnar Locker Ransomware Roundup explains that Ragnar Locker encrypts files, exfiltrates data, and uses double extortion to pressure victims, including negotiations via a Tor-based site and leaking stolen information on a “Wall of Shame.” It also no…

Read More

Posts pagination

Previous 1 … 215 216 217 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.