Another firm sheds light on espionage group hitting energy sector

Share this article:

Symantec has released its own analysis of a cyber espionage group targeting industrial organizations in Europe and North America.

This week, the security firm confirmed with SCMagazine.com that the attack group, dubbed “Dragonfly,” was the same perpetrator discussed at length by F-Secure earlier this month. At the time, F-Secure said that data-stealing malware called “Havex” was used against the energy sector this spring and delivered via watering hole tactics – where industrial control system (ICS) vendor websites were compromised.

Symantec's new findings revealed that 24 percent of malware infections struck U.S. organizations, and that one of the compromised sites led to 250 unique downloads of malicious software. The second vendor site hosted trojanized software for at least six weeks in June and July of last year, Symantec found, while the third targeted site hosted malware for ten days in April of this year.

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters

TOP COMMENTS

More in News

Hackers grab email addresses of CurrentC pilot participants

Hackers grab email addresses of CurrentC pilot participants

Although the hack didn't breach the mobile payment app itself, consumer confidence may be shaken.

Operators disable firewall features to increase network performance, survey finds

Operators disable firewall features to increase network performance, ...

McAfee found that 60 percent of 504 surveyed IT professionals prioritize security as the primary driver of network design.

PCI publishes guidance on security awareness programs

PCI publishes guidance on security awareness programs

The guidance, developed by a PCI Special Interest Group, will help merchants educate staff on protecting cardholder data.