Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

Tariff threats, wars will slow but not collapse global luxury sales in 2025, new study shows

June 19, 2025

Our song of the summer predictions for 2025

June 19, 2025

Tech tips for tracking pets

June 19, 2025
Facebook X (Twitter) Instagram
Trending
  • Tariff threats, wars will slow but not collapse global luxury sales in 2025, new study shows
  • Our song of the summer predictions for 2025
  • Tech tips for tracking pets
  • South Korea’s last circus, Dongchoon, marks centennial
  • Billionaire Jorge Pérez Plans To Beat Trump’s Immigration Crackdown
  • AP lifestyles reporter discusses chair yoga
  • A Minnesota man cuts short his biking trip in Iran as conflict with Israel breaks out
  • Owners’ anxiety can rub off on pets
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Friday, June 20
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » China’s Volt Typhoon Hackers Dwelled in US Electric Grid for 300 Days
Cybersecurity

China’s Volt Typhoon Hackers Dwelled in US Electric Grid for 300 Days

adminBy adminMarch 12, 2025No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 48


ICS/OT security firm Dragos on Wednesday published a case study describing an intrusion attributed to the notorious Chinese threat actor Volt Typhoon into the US electric grid.

The target was Littleton Electric Light and Water Departments (LELWD), a small public power utility in Massachusetts that serves Littleton and Boxborough. The utility had been in the process of implementing Dragos operational technology (OT) security solutions when the intrusion was detected, which led to an expedited deployment.

The case study published by Dragos focuses on the benefits of its solutions, including how they can be used to detect such intrusions and protect OT organizations against threats. 

However, the industrial cybersecurity firm has shared some additional details with SecurityWeek. 

Dragos said the LELWD breach was discovered in November 2023, just before Thanksgiving, and an investigation showed that the hackers had been in the organization’s network since February 2023, for more than 300 days. 

The existence of Volt Typhoon came to light in May 2023, when Microsoft reported that the group, which the tech giant linked to the Chinese government, had been targeting US critical infrastructure in espionage operations. The threat actor has since made many headlines due to its sophistication, its botnets, and its use of zero-days.

Dragos reported one year ago that Volt Typhoon, which the company tracks as Voltzite, had been collecting sensitive OT data from hacked organizations. The security firm warned that while it had not been observed hacking ICS and causing disruption, Volt Typhoon could pose a serious threat to such systems.

In the case of the LELWD power utility, the hackers were seen collecting data on OT systems, Dragos told SecurityWeek. 

Advertisement. Scroll to continue reading.

“The significance of the discovery of this attack is that it highlights that the adversary not only aimed to maintain persistent access to the victim’s environment for a long tenure, but also were aiming to exfiltrate specific data related to OT operating procedures and spatial layout data relating to energy grid operations,” Dragos said. 

“This information can be pivotal for helping the adversary know exactly where to attack when, or if, they decide to utilize a Stage 2 capability in the future,” it added. 

Stage 2 in the ICS Cyber Kill Chain means that hackers can develop and test specific and meaningful attacks on industrial control systems. Volt Typhoon is one of the several active threat groups tracked by Dragos that have such capabilities. 

Dragos also told SecurityWeek that Volt Typhoon was in many cases — outside of the LELWD hack — observed exfiltrating geographic information system (GIS) data containing critical information about the spatial layout of energy systems. 

“Exfiltrated data and persistent access to OT systems could be employed as a means for actions on objectives in the future,” the security firm explained. 

Related: Nine Threat Groups Active in OT Operations in 2024

Related: Organizations Still Not Patching OT Due to Disruption Concerns

Related: Details Disclosed for SCADA Flaws That Could Facilitate Industrial Attacks



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

O2 Service Vulnerability Exposed User Location

May 20, 2025

Madhu Gottumukkala Officially Announced as CISA Deputy Director

May 20, 2025

BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software

May 19, 2025

Printer Company Procolored Served Infected Software for Months

May 19, 2025

UK Legal Aid Agency Finds Data Breach Following Cyberattack

May 19, 2025

480,000 Catholic Health Patients Impacted by Serviceaide Data Leak

May 19, 2025
Add A Comment
Leave A Reply Cancel Reply

Don't Miss
Billionaires

Billionaire Jorge Pérez Plans To Beat Trump’s Immigration Crackdown

June 18, 2025

Jorge Pérez made his fortune selling luxury condos in South Florida. Now the wealthy immigrant…

Indian Creek Property Near Jeff Bezos Just Sold For Over $100 Million

June 17, 2025

How Much Is Barron Trump Worth?

June 17, 2025

Trump Just Disclosed Earning $57.4 Million From World Liberty Financial—Here’s What We Know

June 16, 2025
Our Picks

Tariff threats, wars will slow but not collapse global luxury sales in 2025, new study shows

June 19, 2025

Our song of the summer predictions for 2025

June 19, 2025

Tech tips for tracking pets

June 19, 2025

South Korea’s last circus, Dongchoon, marks centennial

June 18, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

After Klarna, Zoom’s CEO also uses an AI avatar on quarterly call

May 23, 2025

Anthropic CEO claims AI models hallucinate less than humans

May 22, 2025

Anthropic’s latest flagship AI sure seems to love using the ‘cyclone’ emoji

May 22, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.