Threat Intelligence Brief
Curated summary with source attribution
Source: oilprice.com
Threat Risk: High
Victim: Kudankulam Nuclear Power Plant (KKNPP)
Incident: Exfiltration and dark web publication of 19,000 sensitive files from a third-party server.
Impact: Potential exploitation of support systems and identification of supply chain vulnerabilities.
Attacker: World Leaks (formerly Hunters International)
Analysis: The breach occurred via a third-party server managed by Yotta and owned by Reliance Infrastructure, bypassing the plant’s air-gapped core systems. While the reactor controls remain isolated, the leaked documents provide a roadmap of support systems and vendor vulnerabilities. This incident reflects a targeted extortion campaign by World Leaks against high-value Indian industrial targets.
Recommendations: Audit and secure third-party data center configurations and access controls; Implement strict zero-trust architectures for vendor-managed infrastructure; Conduct comprehensive supply chain risk assessments for critical infrastructure dependencies
Source: OilPrice.com
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source