home.social

#infrastructuredefense — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #infrastructuredefense, aggregated by home.social.

  1. According to Dragos, Volt Typhoon continues active operations inside U.S. utilities, shifting toward direct OT interaction and sensor data theft in 2025.

    Notable elements:
    • Pre-positioning in ICS environments
    • Exploitation of Ivanti & Trimble Cityworks vulnerabilities
    • GIS data harvesting for infrastructure mapping
    • Access broker activity attributed to SYLVANITE
    • Long-term persistence objectives
    CEO Rob Lee stated some compromised sites may never be identified.

    Technical question:
    If adversaries maintain low-and-slow OT access, how should defenders adapt detection engineering?
    – Network baselining?
    – Sensor telemetry validation?
    – Asset-level anomaly detection?
    – Zero trust for OT?

    Drop your technical analysis below.
    Follow @technadu for advanced threat coverage.

    #ICSsecurity #OTsecurity #ThreatHunting #DetectionEngineering #VoltTyphoon #InfrastructureDefense #CyberResilience #EnergyGrid #WaterUtilities #NationalSecurity #BlueTeam #CyberThreatIntel

  2. According to Dragos, Volt Typhoon continues active operations inside U.S. utilities, shifting toward direct OT interaction and sensor data theft in 2025.

    Notable elements:
    • Pre-positioning in ICS environments
    • Exploitation of Ivanti & Trimble Cityworks vulnerabilities
    • GIS data harvesting for infrastructure mapping
    • Access broker activity attributed to SYLVANITE
    • Long-term persistence objectives
    CEO Rob Lee stated some compromised sites may never be identified.

    Technical question:
    If adversaries maintain low-and-slow OT access, how should defenders adapt detection engineering?
    – Network baselining?
    – Sensor telemetry validation?
    – Asset-level anomaly detection?
    – Zero trust for OT?

    Drop your technical analysis below.
    Follow @technadu for advanced threat coverage.

    #ICSsecurity #OTsecurity #ThreatHunting #DetectionEngineering #VoltTyphoon #InfrastructureDefense #CyberResilience #EnergyGrid #WaterUtilities #NationalSecurity #BlueTeam #CyberThreatIntel

  3. According to Dragos, Volt Typhoon continues active operations inside U.S. utilities, shifting toward direct OT interaction and sensor data theft in 2025.

    Notable elements:
    • Pre-positioning in ICS environments
    • Exploitation of Ivanti & Trimble Cityworks vulnerabilities
    • GIS data harvesting for infrastructure mapping
    • Access broker activity attributed to SYLVANITE
    • Long-term persistence objectives
    CEO Rob Lee stated some compromised sites may never be identified.

    Technical question:
    If adversaries maintain low-and-slow OT access, how should defenders adapt detection engineering?
    – Network baselining?
    – Sensor telemetry validation?
    – Asset-level anomaly detection?
    – Zero trust for OT?

    Drop your technical analysis below.
    Follow @technadu for advanced threat coverage.

    #ICSsecurity #OTsecurity #ThreatHunting #DetectionEngineering #VoltTyphoon #InfrastructureDefense #CyberResilience #EnergyGrid #WaterUtilities #NationalSecurity #BlueTeam #CyberThreatIntel

  4. According to Dragos, Volt Typhoon continues active operations inside U.S. utilities, shifting toward direct OT interaction and sensor data theft in 2025.

    Notable elements:
    • Pre-positioning in ICS environments
    • Exploitation of Ivanti & Trimble Cityworks vulnerabilities
    • GIS data harvesting for infrastructure mapping
    • Access broker activity attributed to SYLVANITE
    • Long-term persistence objectives
    CEO Rob Lee stated some compromised sites may never be identified.

    Technical question:
    If adversaries maintain low-and-slow OT access, how should defenders adapt detection engineering?
    – Network baselining?
    – Sensor telemetry validation?
    – Asset-level anomaly detection?
    – Zero trust for OT?

    Drop your technical analysis below.
    Follow @technadu for advanced threat coverage.

    #ICSsecurity #OTsecurity #ThreatHunting #DetectionEngineering #VoltTyphoon #InfrastructureDefense #CyberResilience #EnergyGrid #WaterUtilities #NationalSecurity #BlueTeam #CyberThreatIntel