Iranian Cyber Group Handala Claims Cal Water Hack
ID: 4884a0f6-a8de-59b7-8f8a-37a5c045fc82
STIX ID: report--4884a0f6-a8de-59b7-8f8a-37a5c045fc82
Feed Name: Security Boulevard
Threat Score
**Executive summary:** Iran-linked threat actor Handala claims to have hacked Cal Water’s Chico District and published ~5 GB of data, including customer billing records and administrative credentials for the RTKBase GNSS platform; intelligence suggests the RTKBase instance may have been used to pivot into billing systems, exposing PII, credentials, and potential access to operational infrastructure, although OT disruption has not been confirmed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
