DHS Guidance on Cybersecurity Reveals Emergent Threats to Critical Infrastructure and Industry

Author photo: Larry O'Brien
ByLarry O'Brien
Category:
ARC Report Abstract

Overview

DHS Guidance on Cybersecurity reveals the threat of coordinated cyberattacks on critical infrastructure and manufacturing in the US by hostile nation states is increasing.  Just a few months ago, the US Department of Homeland Security identified major hacking groups responsible for recent industry and critical infrastructure attacks as having Russian state sponsorship.  End users in the manufacturing sector, process industries, power generation and T&D, nuclear, water & wastewater, and even building management and smart cities sectors should be up to date on the guidance surrounding this threat, which has so far claimed over 100 victims across these sectors. 

Dragonfly 2.0:  Gain Access, Move Laterally

DHS Guidance on Cybersecurity - Compromised Utility ICS HMI Illustrates that Attackers Have an In-depth Understanding of Industrial Control Systems lodhsss.PNGDHS made headlines back in March when it called out cyber threats to our critical infrastructure conducted by the Russian government.  DHS indicated that since at least March of 2016, Russian government cyber actors have been targeting US critical infrastructure cybersecurity in the energy, nuclear, commercial facilities, water, aviation, and critical manufacturing sectors.  Back in March, the DHS pointed to the Symantec report on Dragonfly, which provides an excellent summary of the Dragonfly 2.0 campaign against the energy and critical infrastructure sectors.  According to DHS, this campaign comprises “two distinct categories of victims: staging and intended targets.” Initial victims are typically peripheral organizations, such as trusted third-party suppliers with less secure networks, referred to as “staging targets.” Threat actors then use staging target networks as “pivot points and malware repositories” to target final intended victims.  

ARC Advisory Group clients can view the complete report at ARC Main Client Portal or at ARC Office 365 Client Portal

If you would like to buy this report or obtain information about how to become a client, please Contact Us 

Keywords: DHS, Cybersecurity, Process Safety, Cyberattacks, Risk Management, Dragonfly 2.0, ARC Advisory Group.

Engage with ARC Advisory Group

Representative End User Clients
Representative Automation Clients
Representative Software Clients