Move Over, APTs: Cybercriminals Now Target Critical Infrastructure Too
ID: 1ca3b27e-16d0-5c85-9a01-7dee47cf4c31
STIX ID: report--1ca3b27e-16d0-5c85-9a01-7dee47cf4c31
Feed Name: Dark Reading
Date Published: 2024-01-11
Date Updated: 2026-04-21
Author: Tara Seals, Managing Editor, News, Dark Reading
Forescout Research reports a widespread exploitation campaign abusing CVE-2023-27881 in Zyxel firewalls that has targeted critical infrastructure in Europe and beyond; while some incidents were linked to the Sandworm APT, much of the activity represents a separate opportunistic mass-exploitation crimewave against unpatched devices, posing sustained risk to power and utility operators.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
