visual
WHITE PAPER

White Paper: InController – New State-Sponsored Cyber Attack Tools

Tuesday May 24, 2022

visual

Synopsis:

The US DHS CISA and other US Government agencies published (on April 14, 2022) a joint cybersecurity advisory regarding APT cyber tools targeting ICS/SCADA devices, according to which, these tools enable APT actors to scan for, compromise, and control affected devices once they’ve established initial access to the ICS/OT network.

In addition, one of the tools listed can be used to compromise Windows-based engineering workstations, using an exploit that compromises an ASRock motherboard driver with known vulnerabilities. By compromising and maintaining full system access to ICS devices, threat groups could elevate privileges, move laterally within a network, and eventually disrupt critical devices or functions.

The purpose of this brief is to advise Radiflow customers and partners using its iSID industrial threat detection system how to detect various Indicators of Compromise (IOCs) of these advanced attack tools.

 

New-State-Sponsored-Cyber-Attack-Tools

Additional Resources

visual

Black & Veatch endorses Radiflow’s iSID

visual

Security Brief: Analysis of the Ukraine Cyber-Attack

visual

Securicon endorses the 3180 Security Gateway as a NERC CIP enabler

visual

New (EU) 2016/1148 Cybersecurity Directive

visual

Whitepaper: “Meet Your Attacker – Taxonomy & Analysis of a SCADA Attacker”

visual

Whitepaper: “Optimizing OT Security through Automatic Attacker Evaluation”

visual

Security Brief: The Norsk Hydro Cyberattack – Using AD in IT/OT Networks

visual

Security Brief: Fine-Tuning ICS Threat Models

visual

Radiflow joins SANS in producing the “2019 State of OT/ICS Cybersecurity” survey

visual

Report: KuppingerCole Executive View of SCADA Security by Radiflow

visual

Conducting IEC-62443 Assessments Using Radiflow Products

visual

Security Brief “COVID19-Themed Malware and Cyber-Attacks – Overview & Protection Measures”

visual

Security Brief: “The Five Best Practices that will Protect Your OT/ICS Network in 2021″

visual

Breach & Attack Simulations (BAS) in OT environments

visual

Securing Railway Operations from OT Cyberattacks

visual

Data-driven approach to industrial cyber risk management – Cyber Risk Manangement eBook

visual

White Paper: InController – New State-Sponsored Cyber Attack Tools

visual

White Paper: Securing Pharmaceuticals from OT Cyber Attacks

visual

White Paper: OT Operating Model

visual

Safeguarding the Maritime Industry Through Advanced Cybersecurity

visual

NIS2 is Coming to OT Are you Ready?

visual

Securing OT Supply Chains

Request Demo Contact Us