- Threat landscape for industrial automation systems, Q2 2024by Kaspersky ICS CERT on September 26, 2024 at 8:00 am
In this report, we share statistics on threats to industrial control systems in Q2 2024, including statistics by region, industry, malware and other threat types.
- Cinterion EHS5 3G UMTS/HSPA Module Researchby Kaspersky ICS CERT on June 13, 2024 at 10:00 am
We performed the security analysis of a Telit Cinterion modem in course of a bigger project of security assessment of a popular model of a truck and found eight vulnerabilities.
- Threat landscape for industrial automation systems, Q1 2024by Kaspersky ICS CERT on May 27, 2024 at 10:00 am
In this report Kaspersky ICS CERT shares statistics on threats blocked on ICS computers globally and in separate regions in Q1 2024: share of attacked computers, most affected industries, most common types of threats.
- Threat landscape for industrial automation systems. H2 2023by Kaspersky ICS CERT on March 19, 2024 at 10:00 am
Kaspersky ICS CERT shares industrial threat statistics for H2 2023: most commonly detected malicious objects, threat sources, threat landscape by industry and region.
- ICS and OT threat predictions for 2024by Evgeny Goncharov on January 31, 2024 at 10:00 am
Kaspersky experts make their predictions about ICS and OT threats: specifically, ransomware and hacktivist attacks, threats to logistics and transportation, etc.
- Updated MATA attacks industrial companies in Eastern Europeby GReAT, Kaspersky ICS CERT on October 18, 2023 at 10:00 am
In early September 2022, we discovered several new malware samples belonging to the MATA cluster. The campaign had been launched in mid-August 2022 and targeted over a dozen corporations in Eastern Europe from the oil and gas sector and defense industry.
- Threat landscape for industrial automation systems. Statistics for H1 2023by Kaspersky ICS CERT on September 13, 2023 at 9:00 am
In the first half of 2023, the percentage of ICS computers on which malicious objects were blocked decreased from H2 2022 by just 0.3 pp to 34%.
- Focus on DroxiDat/SystemBCby Kurt Baumgartner on August 10, 2023 at 10:00 am
An unknown actor targeted an electric utility in southern Africa with Cobalt Strike beacons and DroxiDat, a new variant of the SystemBC payload. We speculate that this incident was in the initial stages of a ransomware attack.
- Common TTPs of attacks against industrial organizationsby Kirill Kruglov, Vyacheslav Kopeytsev, Artem Snegirev on August 10, 2023 at 8:00 am
In 2022 we investigated a series of attacks against industrial organizations in Eastern Europe. In the campaigns, the attackers aimed to establish a permanent channel for data exfiltration, including data stored on air-gapped systems.
- The nature of cyberincidents in 2022by Kaspersky GERT, Kaspersky Security Services on May 16, 2023 at 8:00 am
Kaspersky Incident Response report for 2022: incident response statistics, key trends and conclusions, expert recommendations.