CA-FORESCOUT-TECHNOLOGIE
13.1.2024 15:53:28 CET | Business Wire | Pressemeddelelse
Forescout, en global leder inden for cybersikkerhed løftede i dag sløret for "Clearing the Fog of War", en rapport, der præsenterer nye beviser for to tidligere dokumenterede angreb, der ramte den danske energisektor i maj 2023.
Der er multimedier i denne pressemeddelelse. Se hele meddelelsen her: https://www.businesswire.com/news/home/20240110894177/da/
Clearing the Fog of War (Source: Forescout)
Forescout Research – Vedere Labs gennemførte en uafhængig analyse af disse angreb og afslørede en større kampagne, der ikke fuldt ud kunne tilskrives Advanced Persistent Threat-gruppen Sandworm, sammen med andre fund, som det danske cybersikkerhedscenter SektorCERT ikke offentliggjorde i sin rapport fra november 2023.
I sine observationer af Adversary Engagement Environment (AEE) identificerede Vedere Labs to vigtige resultater:
- Sandworm er ikke den fælles trusselsaktør: Forescout-forskerne påviste en anden teknik til at ramme den kritiske infrastruktur i den efterfølgende bølge end den, der blev brugt i første angrebsbølge. Dette tyder på, at Sandworm ikke kan udpeges som den APT-gruppe, der er forbundet med begge angrebsbølger.
- Masseudnyttelse blev videreført af en copycat: Den anden bølge af angreb udnyttede upatchede firewalls ved hjælp af en ny "populær" CVE-2023-27881 og yderligere IP-adresser, der ikke blev rapporteret i SektorCERT-rapporten. Meget tyder på, at den anden bølge var en del af en separat masseudnyttelseskampagne.
"At skelne mellem en statsstøttet kampagne, der har til formål at forstyrre kritisk infrastruktur, og en kriminel bølge af masseudnyttelseskampagner, samtidig med at man tager højde for potentielle overlap mellem de to, er nemmere set i bakspejlet end i øjeblikkets hede," bemærker Elisa Costante, VP of Research hos Forescout Research – Vedere Labs. "Denne rapport understreger betydningen af at kontekstualisere observerede hændelser med omfattende trussels- og sårbarhedsefterretninger med henblik på at forbedre OT-netværksovervågning og udvikle bedre hændelsesresponsplaner."
Læs bloggen: Clearing the Fog of War – En kritisk analyse af de seneste cyberangreb på energisektoren i Danmark og Ukraine
Efter den anden hændelse blev yderligere angreb i de efterfølgende måneder rettet mod udsatte enheder i kritiske infrastrukturer verden over. Forescout-forskere registrerede adskillige IP-adresser, der forsøgte at udnytte Zyxel-sårbarheden CVE-2023-28771, så sent som i oktober 2023, på tværs af forskellige enheder, herunder yderligere Zyxel-firewalls. I øjeblikket bruger seks forskellige elselskaber i europæiske lande Zyxel-firewalls, og de kan således fortsat være følsomme over for potentiel udnyttelse af ondsindede aktører.
Denne nyere dokumentation understreger nødvendigheden af, at energivirksomheder og organisationer, der fører tilsyn med kritisk infrastruktur, er opmærksomme på aktuelle trusselsefterretninger, herunder oplysninger om ondsindede IP'er og kendte udnyttede sårbarheder. Regeringer tager i stigende grad proaktive forholdsregler ved at afsætte midler til initiativer, der har til formål at styrke sikkerheden for kritisk infrastruktur inden for energisektoren. Navnlig har det amerikanske energiministerium annonceret et nyt finansieringsinitiativ og øremærket 70 millioner dollars til dette formål så sent som i sidste uge.
Forescout Research gennemførte denne analyse ved hjælp af deres AEE, som omfatter både virkelige og simulerede forbundne enheder. Dette miljø fungerer som et dybdegående værktøj til at lokalisere hændelser og skelne mellem trusselsaktørers mønstre på et højt detaljeret niveau. Målet er at forbedre reaktionerne på komplicerede angreb på kritisk infrastruktur ved hjælp af den dybere indsigt og forståelse, der opnås fra dette specialiserede testmiljø.
Flere oplysninger kan findes i den fulde rapport, "Clearing the Fog of War".
Om Forescout
Forescout Technologies, Inc. er en global leder inden for cybersikkerhed, der løbende identificerer, beskytter og hjælper med at sikre overholdelse af alle administrerede og ikke-administrerede forbundne cyberaktiver – IT, IoT, IoMT og OT. Gennem mere end 20 år har Fortune 100-organisationer og offentlige myndigheder betroet Forescout at stille leverandøruafhængig, automatiseret cybersikkerhed til rådighed i stor skala. Forescout®-platformen leverer omfattende løsninger inden for netværkssikkerhed, risiko- og eksponeringsstyring samt udvidet detektion og respons. Med gnidningsfri kontekstdeling og workflow-orkestrering via økosystempartnere giver det kunderne mulighed for mere effektivt at håndtere cyberrisici og afværge trusler.
Originalsprogsudgaven af denne bekendtgørelse er den officielle, autoriserede version. Oversættelserne er kun tænkt som en hjælp og bør sammenholdes med kildesprogsteksten, der som den eneste er juridisk bindende.
For at se dette indhold fra cts.businesswire.com, så skal du give din accept på toppen af denne side.
Se kildeudgaven på businesswire.com: https://www.businesswire.com/news/home/20240110894177/da/
Information om Business Wire
Følg pressemeddelelser fra Business Wire
Skriv dig op her, og modtag pressemeddelelser på e-mail. Indtast din e-mail, klik på abonner, og følg instruktionerne i den udsendte e-mail.
Flere pressemeddelelser fra Business Wire
AIT Worldwide Logistics Announces Strategic Partnership With Greenbriar Equity Group16.2.2026 15:03:00 CET | Press release
Agreement supports continuity, accelerating next phase of AIT’s growth plan Supply chain solutions leader AIT Worldwide Logistics (“AIT”) has entered into a definitive agreement to partner with Greenbriar Equity Group, L.P. (“Greenbriar”) in support of the global freight forwarder’s next chapter of growth. Financial terms of the private transaction were not disclosed. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260216984391/en/ AIT Worldwide Logistics' strategic partnership with Greenbriar Equity Group represents one of the largest private acquisitions ever in the global freight forwarding sector. The deal marks the culmination of five successful years with The Jordan Company, L.P. (“TJC”). TJC, alongside key members of AIT’s executive leadership team, will remain invested in the company. Over the course of the company’s relationship with TJC, AIT has dramatically expanded its global footprint, acquired 14 businesses, and
Compass Pathways to Announce New Clinical Data from Two Ongoing Phase 3 Trials16.2.2026 14:00:00 CET | Press release
Compass Pathways plc (Nasdaq: CMPS), a biotechnology company dedicated to accelerating patient access to evidence-based innovation, announced that tomorrow it will report new clinical data from two ongoing Phase 3 trials evaluating COMP360, a synthetic, proprietary formulation of psilocybin, for treatment-resistant depression (TRD). The company will be disclosing new clinical data from Part A and Part B from COMP005 and Part A from COMP006. The results are scheduled for release on February 17th at 6:30 am ET, followed by a webinar hosted by Compass management at 8:00 am ET. Live Webcast Compass management will host a live audio webcast on February 17th at 8:00 am ET. The webcast will be accessible at this link: https://lifescievents.com/event/hz02j0rpw/ A replay of the webcast will be accessible for 30 days following the event. About Compass Pathways Compass Pathways plc (Nasdaq: CMPS) is a biotechnology company dedicated to accelerating patient access to evidence-based innovation in m
Transition Industries and Mexico’s CFEnergía Sign Natural Gas Supply Contract Enabling Construction of Pacifico Mexinol, the World’s Largest Ultra-Low Carbon Methanol Plant16.2.2026 14:00:00 CET | Press release
The long-term contract guarantees operational readiness and enables the start of construction in the second quarter of 2026 The project positions Mexico as a reliable supplier of ultra-low carbon methanol for strategic global markets Transition Industries LLC, a developer of world-scale, net-zero carbon emissions methanol and hydrogen projects, and CFEnergía, a subsidiary of Mexico’s Federal Electricity Commission (CFE), announced the signing of a long-term firm natural gas supply contract for the Pacifico Mexinol (“Mexinol”) project, located near Topolobampo, Sinaloa. Under this agreement, CFEnergía will supply approximately 160 million cubic feet per day (MMcfd) of natural gas over the long term, ensuring a critical input for Mexinol’s production of ultra-low carbon methanol. The supply will be provided by CFEnergía at market prices and will optimize the use of existing infrastructure. CFEnergía will source the natural gas from the USA. The agreement is subject to customary condition
K2 Partnering Solutions Appoints Srinivas Rao as Chief Executive Officer16.2.2026 10:00:00 CET | Press release
K2 Partnering Solutions, a global leader in consultative technology and talent solutions, today announced the appointment of Srinivas Rao as Chief Executive Officer. Srinivas is a seasoned global executive with more than 28 years of experience driving value creation, scalable growth, and operational transformation across digital, consulting, IT services, and business services. He brings deep expertise in leading complex, multi-market organisations and has successfully scaled $800M+ P&Ls, working closely with boards, sponsors, and executive leadership teams across the USA, UK, Europe, the Middle East, and APAC. Most recently, Srinivas served as Chief Business Officer and a member of the Executive Council at LTIMindtree, where he was accountable for growth acceleration, market expansion, strategic customer relationships, and operating performance across a highly complex regional footprint. During his tenure, he played a pivotal role in strengthening go-to-market execution, driving margin
Italy Sees Economic Boost From the Opening Weekend of the Olympic Winter Games Milano Cortina 202616.2.2026 09:00:00 CET | Press release
Northern Italy sees more than 60% increase in Visa cardholder visitors from overseas, with an increase in purchases up 80% compared to the same period in 2025 Significant increase in spending from Visa cardholders in many areas of commerce including Clothing & Accessories, Restaurants and Mobility & Transport Biggest share of spend comes from U.S. Visa cardholders, with most significant increases in year-on-year spending from Canada and Switzerland Visa, the Official Payment Technology Partner of the Olympic and Paralympic Winter Games, today released new data revealing consumer spending patterns in the Winter Games host locations1 during the opening weekend of the Olympic Winter Games Milano Cortina 2026. VisaNet data analysed by Visa Consulting & Analytics (VCA) shows the positive impact that Milano Cortina 2026 is having on commerce: Overseas Visa cardholders visits rose by more than 60%, with the largest share of visitors coming from the U.S. (+160% year-on-year), followed by China
I vores nyhedsrum kan du læse alle vores pressemeddelelser, tilgå materiale i form af billeder og dokumenter samt finde vores kontaktoplysninger.
Besøg vores nyhedsrum
