ICS Malware Fuxnet Disrupts Russian Infrastructure

January 27, 2025

INCIDENT

ICS malware Fuxnet allegedly used by Ukrainian Blackjack group to disrupt industrial sensors and other systems belonging to a Moscow infrastructure firm.

BlackJack claimed to have significantly impacted Moscollector’s IOT sensor gateway network deployed throughout underground utility corridors, providing telecommunications, district heating, water, and sewage services throughout Moscow. Claroty analyzed a Fuxnet malware sample from the attack adding credibility to BlackJack’s claims. Fuxnet has the capability of sending spurious commands over RS-485/MBus protocols and bricking sensor gateways by destroying their flash memory chips.

Incident Date

April 9, 2024

Location

Russia

Estimated Cost


No cost values disclosed.

Victims

Type of Malware

Threat Source