Topic: energy sector targeting

  • Energy Firms Hit by Sophisticated AiTM Phishing Attacks

    Energy Firms Hit by Sophisticated AiTM Phishing Attacks

    A sophisticated phishing campaign is targeting the energy sector using Adversary-in-the-Middle (AiTM) attacks, which bypass standard email filters and multi-factor authentication (MFA) by stealing login credentials and session cookies. Once an account is compromised, attackers establish persisten...

    Read More »
  • Iran-Backed Hackers Target US Critical Infrastructure via OT

    Iran-Backed Hackers Target US Critical Infrastructure via OT

    Iranian-linked threat actors have been actively targeting US critical infrastructure since last month, exploiting internet-facing operational technology to cause operational and financial disruptions. The attacks manipulate industrial control systems in sectors like energy and water, using specif...

    Read More »
  • Iranian Hackers Target US Critical Infrastructure

    Iranian Hackers Target US Critical Infrastructure

    Multiple U.S. federal agencies warn that an Iranian state-sponsored hacking group is actively targeting and disrupting American critical infrastructure, a campaign believed to be a response to the ongoing geopolitical conflict. The attackers are compromising programmable logic controllers (PLCs),...

    Read More »
  • Hackers Exploit Microsoft ClickOnce & AWS for Stealth Attacks

    Hackers Exploit Microsoft ClickOnce & AWS for Stealth Attacks

    The OneClik cyberattack campaign exploits Microsoft ClickOnce and custom Golang malware to target energy sector organizations, disguising malicious traffic within legitimate AWS cloud services. Attackers use phishing emails with fraudulent Azure-hosted sites to distribute malicious ClickOnce file...

    Read More »