home.social

Search

16 results for “frostygoth”

  1. Just finished my first full practice test. 100/125 questions for an 80%, which is passing but below my desired threshold of 90%.Whatever. Time to learn from my mistakes and maybe sneak in another one later today.

  2. There are still some warm days to come, but #FrostMother is leaving hints on chilly nights and #LeafMother is letting us know she's around as more bits of colour appear in the foliage.. #Autumn begins, slowly, subtly but soon to gain speed.. #FoliageFriday On a smoky day in mid-week: Amur Maple Acer tataricum subsp. ginnala in the #Garden
    #nature #SeasonalRhythms #pagan #animist #Latvian #Baltic #Alberta #Canada

  3. New ICS Malware 'FrostyGoop' Targeting Critical Infrastructure

    Date: July 23, 2024

    CVE: N/A

    Vulnerability Type: Exploitation of Modbus TCP communication

    CWE: [[CWE-668]], [[CWE-20]], [[CWE-74]]

    Sources: The Hacker News, Yahoo News, Dragos

    Synopsis

    FrostyGoop is a newly identified malware designed to target Industrial Control Systems (ICS) by exploiting Modbus TCP communication protocols. This malware caused significant disruption to critical infrastructure in Lviv, Ukraine, earlier this year.

    Issue Summary

    In January 2024, FrostyGoop malware targeted an energy company in Lviv, resulting in a 48-hour loss of heating services to over 600 apartment buildings. This malware interacts directly with ICS devices using Modbus TCP over port 502, making it a serious threat to critical infrastructure.

    Technical Key Findings

    FrostyGoop, written in Golang, can read and write to ICS device registers and uses JSON-formatted configuration files to target specific IP addresses and Modbus commands. Initial access was likely gained through a vulnerability in Mikrotik routers.

    Vulnerable Products

    ENCO controllers with TCP port 502 exposed and ICS devices using Modbus TCP are particularly vulnerable to this malware.

    Impact Assessment

    The malware's ability to manipulate ICS devices can lead to significant operational disruptions, inaccurate system measurements, and potential safety hazards, affecting public safety and industrial operations.

    Patches or Workarounds

    Currently, there are no specific patches available for FrostyGoop.

    #FrostyGoop #ICS #ModbusTCP #CriticalInfrastructure #CyberAttack #EnergySector #Ukraine #Dragos #IndustrialControlSystems #Golang #MikrotikVulnerability

  4. How ICS malware sabotaged heating in Ukraine - #Dragos FrostyGoop ICS Malware Intelligence Brief covering the recent cybersecurity incident affecting the energy sector.

    In our report, we cover the OT cybersecurity weaknesses exploited by cyber adversaries and offer actionable insights on how to protect against the threat. Get the intel brief today! hubs.la/Q02HBYNT0 (you can skip the registration)

    Don’t miss our upcoming webinar for a deeper dive – register now! hubs.la/Q02HBWV80

  5. My "Introduction to ICS Malware Analysis" workshop was accepted at the SANS ICS Security Summit.

    You'll learn about ICS malware by analyzing samples modeled on FrostyGoop and CRASHOVERRIDE. No prior RE experience needed.

    It's running twice: June 8 and June 10. Hope to see you there!

    sans.org/cyber-security-traini

    #ICS #malware

  6. My "Introduction to ICS Malware Analysis" workshop was accepted at the SANS ICS Security Summit.

    You'll learn about ICS malware by analyzing samples modeled on FrostyGoop and CRASHOVERRIDE. No prior RE experience needed.

    It's running twice: June 8 and June 10. Hope to see you there!

    sans.org/cyber-security-traini

    #ICS #malware

  7. My "Introduction to ICS Malware Analysis" workshop was accepted at the SANS ICS Security Summit.

    You'll learn about ICS malware by analyzing samples modeled on FrostyGoop and CRASHOVERRIDE. No prior RE experience needed.

    It's running twice: June 8 and June 10. Hope to see you there!

    sans.org/cyber-security-traini

    #ICS #malware

  8. My "Introduction to ICS Malware Analysis" workshop was accepted at the SANS ICS Security Summit.

    You'll learn about ICS malware by analyzing samples modeled on FrostyGoop and CRASHOVERRIDE. No prior RE experience needed.

    It's running twice: June 8 and June 10. Hope to see you there!

    sans.org/cyber-security-traini

    #ICS #malware

  9. My "Introduction to ICS Malware Analysis" workshop was accepted at the SANS ICS Security Summit.

    You'll learn about ICS malware by analyzing samples modeled on FrostyGoop and CRASHOVERRIDE. No prior RE experience needed.

    It's running twice: June 8 and June 10. Hope to see you there!

    sans.org/cyber-security-traini

    #ICS #malware

  10. Let me get this straight:
    If you put a hat on Frosty the Snowman, he comes to life. When Frosty eats, does the food get turned into cells that gradually replace the snow in his body? If so, can snow people go without a hat after living through a year without melting?

    #snowman #christmasspecials #christmasspecial #frostythesnowman