Iran-Linked Hackers Disrupt US Critical Infrastructure via PLC Attacks
Briefly

Iran-Linked Hackers Disrupt US Critical Infrastructure via PLC Attacks
""As a result of this activity, organizations from multiple U.S. critical infrastructure sectors experienced disruptions through malicious interactions with the project files and the manipulation of data displayed on human machine interface (HMI) and supervisory control and data acquisition (SCADA) displays.""
""Due to the widespread use of these PLCs and the potential for additional targeting of other branded OT devices across critical infrastructure, the authoring agencies recommend U.S. organizations urgently review the tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) in this advisory for indications of current or historical activity on their networks.""
Iran-linked cyberattacks have recently disrupted several critical infrastructure organizations in the U.S., affecting operational technology devices. Federal agencies, including the FBI and CISA, issued a warning about these attacks targeting internet-exposed programmable logic controllers (PLCs), particularly those from Rockwell Automation. The disruptions involved malicious interactions with project files and data manipulation on human machine interface and supervisory control displays. Agencies recommend that organizations review tactics and indicators of compromise to mitigate risks associated with these threats.
Read at SecurityWeek
Unable to calculate read time
[
|
]