More

    Pro-Russian hackers tricked into attacking decoy target




    • TwoNet breached a fake Dutch water facility using default credentials
    • The target was a Forescout honeypot designed to study attacker behavior
    • Hackers increasingly target critical infrastructure, often aiming for ransom

    A relatively young pro-Russian hacktivist group called TwoNet recently breached a Dutch water facility organization. They logged into the Human-Machine interface (HMI) using weak, default credentials, and exploited a vulnerability to deface the website.

    They then deleted connected programmable logic controllers (PLC) as data sources, which disabled real-time updates, and changed PLC setpoints through the HMI. Once that was done, they modified system settings to disable logs and alarms. After successfully striking the critical infrastructure organization, they took to their Telegram channel to advertise their win, gain a little credibility and hopefully, some notoriety.


    https://cdn.mos.cms.futurecdn.net/pVCXKrhThqmUjYVSZBjV5Z-2560-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img