FireEye links Russian research lab to Triton ICS malware attacks
#1
Quote:FireEye: Clues link Russia's Central Scientific Research Institute of Chemistry and Mechanics research lab to Triton-related activity.

In a report published today, FireEye says that following further research into incidents where the Triton malware was deployed, it can now assess with "high confidence" that the Central Scientific Research Institute of Chemistry and Mechanics (CNIIHM; ЦНИИХМ), a government-owned technical research institution located in Moscow, was involved in these attacks.

FireEye's report does not link the Triton malware itself to CNIIHM, but the secondary malware strains used by TEMP.Veles and deployed during the incidents where Triton was deployed.
Clues in these secondary malware strains used to aid the deployment of the main Triton payloads contained enough artifacts that allowed researchers to identify their source.

Source: https://www.zdnet.com/article/fireeye-li...e-attacks/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Microsoft Edge 148.0.3967.70
Version 148.0.3967...harlan4096 — 07:12
Vivaldi 7.9 Build 3970.67
Vivaldi 7.9 Build ...harlan4096 — 07:09
AdGuard Browser Extension 5.4.3.1
AdGuard Browser Ex...harlan4096 — 07:08
AV-Comparatives - Business Security Test...
Business Security ...harlan4096 — 07:07
Random YouTube Vidoes
Shakira-DAI DAI (Vid...Kool — 05:40

[-]
Birthdays
Today's Birthdays
avatar (45)mediumog
Upcoming Birthdays
avatar (28)akiratoriyama
avatar (48)Jerrycix
avatar (40)awedoli
avatar (82)WinRARHowTo
avatar (39)axuben
avatar (40)ihijudu
avatar (49)contjrat
avatar (50)Mirzojap
avatar (36)idilysaju
avatar (40)GregoryRog
avatar (40)odukoromu
avatar (46)Joanna4589

[-]
Online Staff
harlan4096's profile harlan4096
Administrator

>