Assessment of Reported Malware Infection at Nuclear Facility
ID: 25e70ff4-cd03-5134-96d8-b5fcd0c0d98c
STIX ID: report--25e70ff4-cd03-5134-96d8-b5fcd0c0d98c
Feed Name: Dragos Blog
Threat Score
Dragos investigated a malware intrusion at India’s Kudankulam Nuclear Power Plant (NPCIL) that involved DTrack RAT samples acting as payloads or droppers. The samples contained hard-coded private IPs and a username referencing KKNPP, indicating a targeted intrusion against the administrative network; researchers found no ICS-specific components or evidence of OT/control system compromise or operational impact.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
