CA-FORESCOUT-TECHNOLOGIE
13.1.2024 15:53:28 CET | Business Wire | Pressemeddelelse
Forescout, en global leder inden for cybersikkerhed løftede i dag sløret for "Clearing the Fog of War", en rapport, der præsenterer nye beviser for to tidligere dokumenterede angreb, der ramte den danske energisektor i maj 2023.
Der er multimedier i denne pressemeddelelse. Se hele meddelelsen her: https://www.businesswire.com/news/home/20240110894177/da/
Clearing the Fog of War (Source: Forescout)
Forescout Research – Vedere Labs gennemførte en uafhængig analyse af disse angreb og afslørede en større kampagne, der ikke fuldt ud kunne tilskrives Advanced Persistent Threat-gruppen Sandworm, sammen med andre fund, som det danske cybersikkerhedscenter SektorCERT ikke offentliggjorde i sin rapport fra november 2023.
I sine observationer af Adversary Engagement Environment (AEE) identificerede Vedere Labs to vigtige resultater:
- Sandworm er ikke den fælles trusselsaktør: Forescout-forskerne påviste en anden teknik til at ramme den kritiske infrastruktur i den efterfølgende bølge end den, der blev brugt i første angrebsbølge. Dette tyder på, at Sandworm ikke kan udpeges som den APT-gruppe, der er forbundet med begge angrebsbølger.
- Masseudnyttelse blev videreført af en copycat: Den anden bølge af angreb udnyttede upatchede firewalls ved hjælp af en ny "populær" CVE-2023-27881 og yderligere IP-adresser, der ikke blev rapporteret i SektorCERT-rapporten. Meget tyder på, at den anden bølge var en del af en separat masseudnyttelseskampagne.
"At skelne mellem en statsstøttet kampagne, der har til formål at forstyrre kritisk infrastruktur, og en kriminel bølge af masseudnyttelseskampagner, samtidig med at man tager højde for potentielle overlap mellem de to, er nemmere set i bakspejlet end i øjeblikkets hede," bemærker Elisa Costante, VP of Research hos Forescout Research – Vedere Labs. "Denne rapport understreger betydningen af at kontekstualisere observerede hændelser med omfattende trussels- og sårbarhedsefterretninger med henblik på at forbedre OT-netværksovervågning og udvikle bedre hændelsesresponsplaner."
Læs bloggen: Clearing the Fog of War – En kritisk analyse af de seneste cyberangreb på energisektoren i Danmark og Ukraine
Efter den anden hændelse blev yderligere angreb i de efterfølgende måneder rettet mod udsatte enheder i kritiske infrastrukturer verden over. Forescout-forskere registrerede adskillige IP-adresser, der forsøgte at udnytte Zyxel-sårbarheden CVE-2023-28771, så sent som i oktober 2023, på tværs af forskellige enheder, herunder yderligere Zyxel-firewalls. I øjeblikket bruger seks forskellige elselskaber i europæiske lande Zyxel-firewalls, og de kan således fortsat være følsomme over for potentiel udnyttelse af ondsindede aktører.
Denne nyere dokumentation understreger nødvendigheden af, at energivirksomheder og organisationer, der fører tilsyn med kritisk infrastruktur, er opmærksomme på aktuelle trusselsefterretninger, herunder oplysninger om ondsindede IP'er og kendte udnyttede sårbarheder. Regeringer tager i stigende grad proaktive forholdsregler ved at afsætte midler til initiativer, der har til formål at styrke sikkerheden for kritisk infrastruktur inden for energisektoren. Navnlig har det amerikanske energiministerium annonceret et nyt finansieringsinitiativ og øremærket 70 millioner dollars til dette formål så sent som i sidste uge.
Forescout Research gennemførte denne analyse ved hjælp af deres AEE, som omfatter både virkelige og simulerede forbundne enheder. Dette miljø fungerer som et dybdegående værktøj til at lokalisere hændelser og skelne mellem trusselsaktørers mønstre på et højt detaljeret niveau. Målet er at forbedre reaktionerne på komplicerede angreb på kritisk infrastruktur ved hjælp af den dybere indsigt og forståelse, der opnås fra dette specialiserede testmiljø.
Flere oplysninger kan findes i den fulde rapport, "Clearing the Fog of War".
Om Forescout
Forescout Technologies, Inc. er en global leder inden for cybersikkerhed, der løbende identificerer, beskytter og hjælper med at sikre overholdelse af alle administrerede og ikke-administrerede forbundne cyberaktiver – IT, IoT, IoMT og OT. Gennem mere end 20 år har Fortune 100-organisationer og offentlige myndigheder betroet Forescout at stille leverandøruafhængig, automatiseret cybersikkerhed til rådighed i stor skala. Forescout®-platformen leverer omfattende løsninger inden for netværkssikkerhed, risiko- og eksponeringsstyring samt udvidet detektion og respons. Med gnidningsfri kontekstdeling og workflow-orkestrering via økosystempartnere giver det kunderne mulighed for mere effektivt at håndtere cyberrisici og afværge trusler.
Originalsprogsudgaven af denne bekendtgørelse er den officielle, autoriserede version. Oversættelserne er kun tænkt som en hjælp og bør sammenholdes med kildesprogsteksten, der som den eneste er juridisk bindende.
For at se dette indhold fra cts.businesswire.com, så skal du give din accept på toppen af denne side.
Se kildeudgaven på businesswire.com: https://www.businesswire.com/news/home/20240110894177/da/
Information om Business Wire
Følg pressemeddelelser fra Business Wire
Skriv dig op her, og modtag pressemeddelelser på e-mail. Indtast din e-mail, klik på abonner, og følg instruktionerne i den udsendte e-mail.
Flere pressemeddelelser fra Business Wire
HTEC Showcases Lakebase Branching at Databricks’ Data & AI Summit26.6.2026 11:18:00 CEST | Press release
HTEC, the global technology and AI engineering firm headquartered in Silicon Valley, last week showcased how it used Lakebase data branching to enable faster development, safer operations, and new possibilities for data-driven organizations operating in highly regulated environments. The Solution was developed in collaboration with a leading risk and compliance technology provider who serves financial institutions. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260626875859/en/ HTEC, the global technology and AI engineering firm headquartered in Silicon Valley, last week showcased how it used Lakebase data branching to enable faster development, safer operations, and new possibilities for data-driven organizations operating in highly regulated environments. Solving Critical Development Bottlenecks in Regulated Environments At the core of the collaboration was a shared challenge: how to enable modern data workflows in an envi
Stallergenes Greer Named One of Switzerland’s Best Managed Companies for 202626.6.2026 10:28:00 CEST | Press release
Stallergenes Greer, a global leader in allergy care, has been recognised for its overall business performance, company culture, and sustained growth by receiving the prestigious 2026 Switzerland’s Best Managed Companies award. The 2026 Best Managed Companies programme award winners are among Switzerland’s best private companies. The awards are derived from Deloitte’s global Best Managed Companies awards programme, an internationally recognised programme that evaluates businesses based on their leadership in the areas of strategy, culture and commitment, capabilities, innovation, governance and financial performance. Applicants are evaluated by an independent jury of experts. The evaluation of the Switzerland awards is based on more than 30 years of observed practice from the global awards programme that has been rolled out in 50+ countries worldwide. This recognition reflects Stallergenes Greer's consistent ability to deliver on its strategic vision while maintaining the operational di
Roboverse Reply Impresses at ELROB 2026 With Intelligent Robotic Systems for Critical Missions26.6.2026 10:00:00 CEST | Press release
Roboverse Reply, the Reply Group company specializing in robotics and automation, won the 1st Place in the “Reconnaissance” category and a special prize for “Best Team Effort” at the European Land Robot Trial (ELROB) 2026 in Thun, Switzerland. Teaming up with ELP, a specialist for technical equipment for defusing service, the company demonstrated outstanding performance alongside a field of international participants from June 15 to 19, proving that its autonomous solutions operate reliably under real-world conditions. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260626012237/en/ Roboverse Reply won 1st Place in the “Reconnaissance” category and a special prize for “Best Team Effort” at the European Land Robot Trial 2026, proving that its autonomous solutions operate reliably under real-world conditions. ELROB is Europe’s most demanding and established showcase for robotics and unmanned systems, where leading experts from
The WSJ Leadership Institute Names Philip Morris International Among “Best Companies For the Future”26.6.2026 10:00:00 CEST | Press release
The ranking recognizes companies best positioned to thrive amid AI-driven and structural economic change Philip Morris International Inc. (PMI) (NYSE: PM) has been named in the WSJ Leadership Institute’s inaugural “Best Companies for the Future” ranking, which evaluates large corporations on their ability to adapt and succeed in a rapidly evolving global environment. PMI ranks at #97 overall and is the third highest ranked company in the Food Beverage & Tobacco industry group after Coca-Cola and PepsiCo. Compiled by Bendable Labs for the WSJ Leadership Institute, a premium executive learning and leadership program from Dow Jones and The Wall Street Journal, the ranking assesses companies across six key dimensions - AI readiness, innovation, talent readiness, financial fitness, resilience, and agility - to identify those that are best positioned for long-term success. PMI’s inclusion reflects the reality that today it is a leading international consumer goods company, focused on a smoke
SureWerx® Acquires Genesi S.r.l.26.6.2026 10:00:00 CEST | Press release
Expanding SureWerx’s Global Portfolio with Leading Work-at-Height and Confined Space Safety Solutions SureWerx®, a leading global provider of safety, tool & equipment products, announced today that it has acquired Genesi S.r.l. Terms were not disclosed. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260626881708/en/ Based in Bergamo, Italy, Genesi is a leading provider of safety solutions for work-at-height and confined space solutions. For more than 20 years, Genesi has built its reputation on a customer-centered approach, combining innovative, high-quality products with engineering expertise, training, services, maintenance and after-sales support to help protect workers in high-risk environments. Its portfolio includes fall protection systems, horizontal and vertical lifelines, anchor points, guardrails, ladders, access solutions, and confined space safety systems. Guided by the belief that there is no protection without
I vores nyhedsrum kan du læse alle vores pressemeddelelser, tilgå materiale i form af billeder og dokumenter samt finde vores kontaktoplysninger.
Besøg vores nyhedsrum
