Statue of Triton, son of Neptune, Nicola Salvi's Trevi Fountain, Italy. Photo: DeAgostini/Getty Images

The attackers who launched TRITON, a notorious industrial-system-focused malware only known to have been used once, have struck a second target, according to researchers at FireEye presenting at the Kaspersky Lab SAS Summit in Singapore.

Why it matters: FireEye was the first to discover TRITON, which startled researchers by amassing an uncommon amount of control over industrial systems. Due to a mistake in the attack, it inadvertently led to a plant shutdown and nearly caused a deadly explosion. While no one expected TRITON to be a one-time affair, its resurgence is jarring.

Background: The victim of the first attack was not identified by FireEye, but a harrowing account of the attack in E&E News revealed it to be the Petro Rabigh refinery in the Red Sea.

  • FireEye later attributed the design of components of the TRITON malware to a research institute in Moscow.

Details: The new victim, also not identified by FireEye, revealed the use of hacking tools not seen in the first attack.

  • The tools appear to date from as far back as 2014, though FireEye has never seen them in use in the past.
  • FireEye reported indicators and recommended techniques defenders can use to identify and thwart future TRITON attacks.
  • "[W]e strongly encourage industrial control system (ICS) asset owners to leverage the indicators, TTPs [tactics, techniques and procedures], and detections," FireEye wrote in its official report.

Go deeper

Updated 2 hours ago - Politics & Policy

Coronavirus dashboard

Illustration: Sarah Grillo/Axios

  1. Global: Total confirmed cases as of 10 p.m. EST: 32,135,220 — Total deaths: 981,660 — Total recoveries: 22,149,441Map.
  2. U.S.: Total confirmed cases as of 10 p.m EST: 6,975,980 — Total deaths: 202,738 — Total recoveries: 2,710,183 — Total tests: 98,481,026Map.
  3. Politics: House Democrats prepare new $2.4 trillion coronavirus relief package.
  4. Health: Cases are surging again in 22 states — New York will conduct its own review of coronavirus vaccine.
  5. Business: America is closing out its strongest quarter of economic growth.
  6. Technology: 2020 tech solutions may be sapping our resolve to beat the pandemic.
  7. Sports: Pac-12 will play this fall despite ongoing pandemic — Here's what college basketball will look like this season.
  8. Science: Global coronavirus vaccine initiative launches without U.S. or China — During COVID-19 shutdown, a common sparrow changed its song.
5 hours ago - Sports

Pac-12 will play football this fall, reversing course

A view of Levi's Stadium during the 2019 Pac-12 Championship football game. Photo: Alika Jenner/Getty Images

The Pac-12, which includes universities in Arizona, California, Colorado, Oregon, Utah and Washington state, will play football starting Nov. 6, reversing its earlier decision to postpone the season because of the coronavirus pandemic.

Why it matters: The conference's about-face follows a similar move by the Big Ten last week and comes as President Trump has publicly pressured sports to resume despite the ongoing pandemic. The Pac-12 will play a seven-game conference football season, according to ESPN.

Dave Lawler, author of World
6 hours ago - World

Global coronavirus vaccine initiative launches without U.S. or China

Data: Gavi, The Vaccine Alliance; Map: Naema Ahmed/Axios

A global initiative to ensure equitable distribution of coronavirus vaccines now includes most of the world — but not the U.S., China or Russia.

Why it matters: Assuming one or more vaccines ultimately gain approval, there will be a period of months or even years in which supply lags far behind global demand. The COVAX initiative is an attempt to ensure doses go where they're most needed, rather than simply to countries that can produce or buy them at scale.

Get Axios AM in your inbox

Catch up on coronavirus stories and special reports, curated by Mike Allen everyday

Please enter a valid email.

Subscription failed
Thank you for subscribing!