Threat Intelligence Brief
Curated summary with source attribution
Source: thehindu.com
Threat Risk: High
Victim: Kudankulam Nuclear Power Plant
Incident: Ransomware attack and data breach via a third-party infrastructure provider.
Impact: Exposure of 14.3 GB of sensitive nuclear plant operational data on the Dark Web.
Attacker: Unidentified ransomware group (associated with World Leaks)
Analysis: This incident highlights a classic supply chain attack where threat actors targeted a corporate partner, Reliance Infrastructure Ltd, to gain access to critical infrastructure data. The breach resulted in the theft of over 14 GB of operational data from the Kudankulam Nuclear Power Plant. The subsequent leak on the World Leaks site underscores the risk posed by ransomware groups when payment demands are refused.
Recommendations: Strengthen third-party risk management and implement zero-trust architecture for vendor access.; Conduct regular audits of data sharing agreements with corporate partners managing critical infrastructure.; Implement robust data encryption and loss prevention (DLP) strategies for sensitive operational files.
Source: The Hindu
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source