Feds: Pro-Russia Hacktivists Target US Critical Infrastructure
ID: f39bc471-fc7b-5323-9cf5-daf2e7163a41
STIX ID: report--f39bc471-fc7b-5323-9cf5-daf2e7163a41
Feed Name: Dark Reading
Date Published: 2025-12-10
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
The US government (FBI/CISA/NSA) advisory warns that pro‑Russia hacktivist groups — including CARR, Z‑Pentest, NoName057(16), and Sector16 — are actively exploiting internet‑facing VNC on operational technology (OT) and industrial control system (ICS) devices to brute‑force credentials, access HMIs, capture screens, modify settings, disable alarms, and disrupt operations in water/wastewater, food/agriculture, and energy sectors; the advisory highlights ties between some actors and the GRU, a recent DOJ indictment, and recommends reducing internet exposure, stronger authentication, asset management, and control‑system security controls as mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
