Russian FSB Exploits Vulnerable Routers to Target Critical Infrastructure
ID: 859f2d67-73c2-5b02-8f12-b308009aee13
STIX ID: report--859f2d67-73c2-5b02-8f12-b308009aee13
Feed Name: ThreatCluster
Threat Score
A 21-agency advisory warns that Russia's FSB Center 16 is exploiting misconfigured routers and weak SNMP passwords to infiltrate critical infrastructure (defense, energy, healthcare, finance), leveraging known Cisco vulnerabilities (CVE-2018-0171, CVE-2008-4128); the activity is linked to a failed December 2025 attack on Poland's power grid and has prompted UK/EU sanctions against 24 related individuals and entities.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
