CA-FORESCOUT-TECHNOLOGIE
13.1.2024 15:53:28 CET | Business Wire | Pressemeddelelse
Forescout, en global leder inden for cybersikkerhed løftede i dag sløret for "Clearing the Fog of War", en rapport, der præsenterer nye beviser for to tidligere dokumenterede angreb, der ramte den danske energisektor i maj 2023.
Der er multimedier i denne pressemeddelelse. Se hele meddelelsen her: https://www.businesswire.com/news/home/20240110894177/da/
Clearing the Fog of War (Source: Forescout)
Forescout Research – Vedere Labs gennemførte en uafhængig analyse af disse angreb og afslørede en større kampagne, der ikke fuldt ud kunne tilskrives Advanced Persistent Threat-gruppen Sandworm, sammen med andre fund, som det danske cybersikkerhedscenter SektorCERT ikke offentliggjorde i sin rapport fra november 2023.
I sine observationer af Adversary Engagement Environment (AEE) identificerede Vedere Labs to vigtige resultater:
- Sandworm er ikke den fælles trusselsaktør: Forescout-forskerne påviste en anden teknik til at ramme den kritiske infrastruktur i den efterfølgende bølge end den, der blev brugt i første angrebsbølge. Dette tyder på, at Sandworm ikke kan udpeges som den APT-gruppe, der er forbundet med begge angrebsbølger.
- Masseudnyttelse blev videreført af en copycat: Den anden bølge af angreb udnyttede upatchede firewalls ved hjælp af en ny "populær" CVE-2023-27881 og yderligere IP-adresser, der ikke blev rapporteret i SektorCERT-rapporten. Meget tyder på, at den anden bølge var en del af en separat masseudnyttelseskampagne.
"At skelne mellem en statsstøttet kampagne, der har til formål at forstyrre kritisk infrastruktur, og en kriminel bølge af masseudnyttelseskampagner, samtidig med at man tager højde for potentielle overlap mellem de to, er nemmere set i bakspejlet end i øjeblikkets hede," bemærker Elisa Costante, VP of Research hos Forescout Research – Vedere Labs. "Denne rapport understreger betydningen af at kontekstualisere observerede hændelser med omfattende trussels- og sårbarhedsefterretninger med henblik på at forbedre OT-netværksovervågning og udvikle bedre hændelsesresponsplaner."
Læs bloggen: Clearing the Fog of War – En kritisk analyse af de seneste cyberangreb på energisektoren i Danmark og Ukraine
Efter den anden hændelse blev yderligere angreb i de efterfølgende måneder rettet mod udsatte enheder i kritiske infrastrukturer verden over. Forescout-forskere registrerede adskillige IP-adresser, der forsøgte at udnytte Zyxel-sårbarheden CVE-2023-28771, så sent som i oktober 2023, på tværs af forskellige enheder, herunder yderligere Zyxel-firewalls. I øjeblikket bruger seks forskellige elselskaber i europæiske lande Zyxel-firewalls, og de kan således fortsat være følsomme over for potentiel udnyttelse af ondsindede aktører.
Denne nyere dokumentation understreger nødvendigheden af, at energivirksomheder og organisationer, der fører tilsyn med kritisk infrastruktur, er opmærksomme på aktuelle trusselsefterretninger, herunder oplysninger om ondsindede IP'er og kendte udnyttede sårbarheder. Regeringer tager i stigende grad proaktive forholdsregler ved at afsætte midler til initiativer, der har til formål at styrke sikkerheden for kritisk infrastruktur inden for energisektoren. Navnlig har det amerikanske energiministerium annonceret et nyt finansieringsinitiativ og øremærket 70 millioner dollars til dette formål så sent som i sidste uge.
Forescout Research gennemførte denne analyse ved hjælp af deres AEE, som omfatter både virkelige og simulerede forbundne enheder. Dette miljø fungerer som et dybdegående værktøj til at lokalisere hændelser og skelne mellem trusselsaktørers mønstre på et højt detaljeret niveau. Målet er at forbedre reaktionerne på komplicerede angreb på kritisk infrastruktur ved hjælp af den dybere indsigt og forståelse, der opnås fra dette specialiserede testmiljø.
Flere oplysninger kan findes i den fulde rapport, "Clearing the Fog of War".
Om Forescout
Forescout Technologies, Inc. er en global leder inden for cybersikkerhed, der løbende identificerer, beskytter og hjælper med at sikre overholdelse af alle administrerede og ikke-administrerede forbundne cyberaktiver – IT, IoT, IoMT og OT. Gennem mere end 20 år har Fortune 100-organisationer og offentlige myndigheder betroet Forescout at stille leverandøruafhængig, automatiseret cybersikkerhed til rådighed i stor skala. Forescout®-platformen leverer omfattende løsninger inden for netværkssikkerhed, risiko- og eksponeringsstyring samt udvidet detektion og respons. Med gnidningsfri kontekstdeling og workflow-orkestrering via økosystempartnere giver det kunderne mulighed for mere effektivt at håndtere cyberrisici og afværge trusler.
Originalsprogsudgaven af denne bekendtgørelse er den officielle, autoriserede version. Oversættelserne er kun tænkt som en hjælp og bør sammenholdes med kildesprogsteksten, der som den eneste er juridisk bindende.
For at se dette indhold fra cts.businesswire.com, så skal du give din accept på toppen af denne side.
Se kildeudgaven på businesswire.com: https://www.businesswire.com/news/home/20240110894177/da/
Information om Business Wire
Følg pressemeddelelser fra Business Wire
Skriv dig op her, og modtag pressemeddelelser på e-mail. Indtast din e-mail, klik på abonner, og følg instruktionerne i den udsendte e-mail.
Flere pressemeddelelser fra Business Wire
Dealroom and NATO Innovation Fund: European Defence, Security & Resilience Startups Smash Record with $8.7B Raised in 202510.2.2026 07:05:00 CET | Press release
The 55% year on year surge was fuelled by late-stage mega rounds, indicating a maturing ecosystem to address NATO’s capability needs.Munich retained its position as Europe's #1 DSR hub, with the UK attracting the most VC funding and Central and Eastern Europe showing the largest growth.AI dominated the sector, underpinning 44% of all DSR funding. An exclusive new report by Dealroom and the NATO Innovation Fund shows that European DSR (Defence, Security and Resilience) startups secured a record $8.7 billion in venture capital in 2025. The surge was fuelled by late-stage mega-rounds to support breakthrough technologies that help address critical capabilities for NATO nations – from freedom of operations & mobility, to awareness and decision making, and the security of critical technologies. Record funding surge powers DSR Startups to meet NATO nations’ most urgent security needs Funding for DSR startups increased by 55% year on year and is nearly four times higher than five years ago. It
4Moving Biotech Announces the Closing of a €12 Million Financing to Advance a First-in-Class DMOAD in Knee Osteoarthritis10.2.2026 06:52:00 CET | Press release
- Funding secured, extending the financial runway to reach a proof-of-concept inflection point - Company’s attractiveness reinforced through the onboarding of new investors 4Moving Biotech (4MB), a clinical-stage biotechnology company and a spin-off of 4P-Pharma, developing a first-in-class disease-modifying osteoarthritis drug (DMOAD) for knee osteoarthritis, today announced the closing of a €12 million financing, completed through a structured and coordinated funding process. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260209500141/en/ Francis Berenbaum (Left) Luc Boblet, Revital Rattenbach, Jérôme Vailland (Right) This financing was secured from a pool of private investors and family offices, who chose to reinforce their commitment by investing directly at the subsidiary level in 4MB. The round includes a combination of equity and loans, reflecting a flexible capital structure aligned with long-term value creation. Thi
SBTS and ZIM Connections Bring Travel eSIM to Global Travelers10.2.2026 05:00:00 CET | Press release
New service leverages SoftBank Corp.’s wireless network in Japan SBTS, the joint venture between BTS and SoftBank Corp., and ZIM Connections today announced a strategic partnership to launch a travel eSIM solution, initially focused on inbound and outbound travel into and from Japan. The service is now live and commercially available here, marking the first step in a broader global rollout of multiple travel eSIM offerings. The initial launch is a digital travel eSIM platform developed by ZIM Connections and commercialized by SoftBank Corp. (“SoftBank”), a Japan-based telecommunications and IT operator. It enables travelers to easily search for, purchase, and activate unlimited global eSIM plans through a seamless digital experience. The first phase focuses on travelers visiting Japan as well as Japan-based travelers going abroad, leveraging SoftBank’s network for connectivity in the region. This launch represents a fully commercial market introduction, delivering immediate value to tr
FPT Achieves HITRUST r2 v11.5.1 Certification, Demonstrating the Highest Level of Information Protection Assurance10.2.2026 03:00:00 CET | Press release
FPT, a leading global IT company, announced its in-scope platforms and facilities of FPT Data Center have earned certified status from HITRUST for cybersecurity and information protection. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260209729954/en/ The scope of the HITRUST r2 v11.5.1 certification includes FPT’s Application Services System, Database System, and Deployment System, all hosted and managed within the FPT Data Center in Hanoi, Vietnam, as well as the data center facility itself. The HITRUST Certification demonstrates that FPT has met requirements defined by leading cybersecurity and regulatory frameworks, confirming that strong controls are in place to protect sensitive data and manage risk effectively. The certification also includes the HITRUST AI Security Certification, which validates that the organization’s AI systems are safeguarded against AI-specific threats such as data poisoning, model inversion, an
SheltonAI Announces Global Expansion, Senior Leadership Appointments, and Accelerated Growth9.2.2026 23:04:00 CET | Press release
SheltonAI, the institutional AI platform for valuation, announced senior executive appointments, major global expansion, and strong growth momentum entering 2026. SheltonAI announced several senior leadership appointments, including: Stephen Can, CSO, previously Executive Chairman & Founder of Blackstone Strategic Partners Peter Song, COO, previously COO of Blackstone Strategic Partners Chris Cooper, CFO, previously Global CFO at Sequoia, SoftBank, & Clearlake Capital Paige Shiring, has been promoted to Director, previously with Thoma Bravo 2026 NY Analyst Class & 10+ Hires in January SheltonAI also plans to open several regional HQs in 2026, including: New YorkSydneyGCC Region, with office lead to be announced later in Feb 2026 The company reported significant momentum entering the year, including 10+ new hires in January and over $1 trillion in incremental assets supported by the platform during the month, driven by new client deployments and expanded mandates. SheltonAI’s platform p
I vores nyhedsrum kan du læse alle vores pressemeddelelser, tilgå materiale i form af billeder og dokumenter samt finde vores kontaktoplysninger.
Besøg vores nyhedsrum
