Topic · 3 articles
Critical Infrastructure
Utilities, transport, and logistics, where the IT file share is the soft target.
Spans Threat Brief and Sector Spotlight.

The gap in ransomware protection: Stadler Rail’s data theft never encrypted a thing
Attackers reportedly used compromised credentials to reach a data-exchange platform Stadler Rail shares with a supplier, took technical documents, and demanded 10 million Swiss francs. Nothing was encrypted, which is why ransomware protection built around encryption events would not have seen it, and why data theft protection has to run at the storage layer.
6 min read

Nichirei and the second clock: shipments came back, the files did not
A ransomware crew claims it took internal files from Japanese frozen-food and logistics company Nichirei and reportedly posted samples as proof. Deliveries were restored within about a week. The company was still notifying people whose personal information may have been exposed.
5 min read

Critical infrastructure’s quiet exposure: the IT file share
Utilities invest heavily in OT security while the IT side (engineering diagrams, SCADA documentation, customer data on ordinary file servers) remains the softer target attackers actually take.
5 min read
See data-layer defense in your environment
In a 30-minute demo we’ll show Active Defense stopping an attack inline, immutable recovery, and surgical rollback — mapped to your data and your threats.
