Curated Cyber Threat Intelligence

Threat Feed

Daily intelligence on vulnerabilities, threat actors and geopolitical context — distilled from primary sources.

scheduleUpdated 2026-09-04 · 02:17 UTC
articleTotal: 1172 reports

Filtered Reports

7 / 7 results
Active filter:tag: #energy✕ clear
Clop Ransomware Gang Exploits CVE-2026-12569 in PTC Windchill Attackshighperson_alertThreat Actor
person_alertThreat Actor

Clop Ransomware Gang Exploits CVE-2026-12569 in PTC Windchill Attacks

Clop is a financially motivated ransomware gang known for mass exploitation campaigns targeting zero-day and n-day vulnerabilities in enterprise software.

Shell14 Aug · 09:55 UTC
Polish energy plant breached via private APN in coordinated OT attackhighpublicGeopolitical
publicGeopolitical

Polish energy plant breached via private APN in coordinated OT attack

The December 2025 incident represents a sophisticated multi-site campaign against Polish critical infrastructure, attributed by Polish authorities to the Russian Electrum threat group.

BleepingComputer10 Aug · 21:07 UTC
December 2025 Poland Energy Sector Campaign via Private APNhighperson_alertThreat Actor
person_alertThreat Actor

December 2025 Poland Energy Sector Campaign via Private APN

No specific threat actor has been publicly attributed to this campaign. The December 2025 attacks targeted Poland's energy infrastructure with purely destructive intent, representing a coordinated operation against multiple facilities including wind…

CERT.PL (Poland)8 Aug · 15:00 UTC
Origin Energy breach exposes 2M Australian customer recordshighpublicGeopolitical
publicGeopolitical

Origin Energy breach exposes 2M Australian customer records

The breach of Origin Energy, Australia's largest energy retailer with $8.5 billion in annual revenue and cross-border holdings in UK renewable energy, underscores the persistent targeting of critical infrastructure providers in the Indo-Pacific regio…

Origin Energy23 Jul · 18:14 UTC
CL-STA-1062 deploys TinyRCT backdoor against Southeast Asian governmenthighperson_alertThreat Actor
person_alertThreat Actor

CL-STA-1062 deploys TinyRCT backdoor against Southeast Asian government

CL-STA-1062 is a Chinese-speaking APT actor conducting targeted cyber espionage operations against government entities and critical infrastructure in Southeast Asia.

Palo Alto Networks26 Jun · 14:21 UTC
Japanese utility loses drive with 10.9M customer recordshighpublicGeopolitical
publicGeopolitical

Japanese utility loses drive with 10.9M customer records

The incident at Kyushu Electric Power Co., Inc. represents a physical security failure rather than a cyber intrusion, but underscores the vulnerability of critical infrastructure operators to data exposure.

Kyushu Electric Power Co., Inc.11 Jun · 21:14 UTC
900+ US fuel tank monitoring systems exposed online, vulnerable to attackhighbug_reportVulnerability
bug_reportVulnerability

900+ US fuel tank monitoring systems exposed online, vulnerable to attack

Over 900 automatic tank gauge (ATG) systems in the United States used to monitor fuel and chemical storage tanks in critical infrastructure. Specific vendors and product versions not disclosed.

BleepingComputer5 Jun · 12:50 UTC