The Cybersecurity and Infrastructure Security Agency, FBI and Department of Energy yesterday urged the energy sector and other critical infrastructure organizations to take certain actions to reduce cyber risks from state-sponsored Russian actors targeting the global energy sector. The FBI also alerted global critical infrastructure industrial control systems that a research institution controlled by the Russian government continues to target the global energy sector utilizing malware known as TRITON.

John Riggi, AHA鈥檚 national advisor for cybersecurity and risk, said, 鈥淏oth of the alerts relate the threats emanating from the same Russian research institute supporting the Russian military. As noted in the alert, TRITON was first used in 2017 to target a foreign petrochemical facility. This attack represented a notable shift in industrial control system targeting as the first attack designed to allow physical damage, environmental impact, and loss of life in the event of a plant鈥檚 running in an unsafe condition. Hospitals鈥 and health systems鈥 cybersecurity teams are encouraged to share these alerts with their facilities鈥 teams and all third parties providing operational technology services.鈥

For more information on these or other cyber and risk issues, contact Riggi at jriggi@aha.org.

Related News Articles

Headline
The FBI, Cybersecurity and Infrastructure Security Agency and Australian Cyber Security Centre June 4 released an advisory on updated actions and tactics used鈥
Headline
The National Security Agency, Cybersecurity and Infrastructure Security Agency and international partners May 22 released guidance on securing data used for鈥
Headline
The FBI, along with the National Security Agency and other international cybersecurity agencies, this week released a joint agency advisory on cyber operations鈥
Headline
The FBI's Internet Crime Complaint Center released an alert May 7 warning of cyber actors exploiting vulnerabilities in end-of-life routers. Routers dated 2010鈥
Headline
The FBI鈥檚 Internet Criminal Complaint Center May 15 released an alert warning of a malicious text and voice messaging campaign involving impersonators鈥
Headline
In his latest AHA Cyber Intel blog, John Riggi, AHA national advisor for cybersecurity and risk, examines the state of cyber and physical threats in 2025 as鈥