or analyse a relationship
46 incidents · 67 responses 0 threat actors
Years
Records matching “cybersecurity and infrastructure security agency”
Analyse
113 results for “Cybersecurity and Infrastructure Security Agency” 46 incidents · 67 responses
JPUS2 statesjoint BlackTech (China) US and Japanese Authorities Released Joint Advisory on China-linked cyber actor BlackTech, 27 September 2023 Technical disclosure 27 Sep 2023
Technical disclosure 27 Sep 2023
JPUS2 states BlackTech (China)
US and Japanese Authorities Released Joint Advisory on China-linked cyber actor BlackTech, 27 September 2023
USCybersecurity and Infrastructure Security Agency QakBot—also known as Qbot, Quackbot, Pin… US CISA and FBI Published a Joint Advisory on QakBot on 30 August 2023 Technical disclosure 30 Aug 2023
Technical disclosure 30 Aug 2023
USCybersecurity and Infrastructure Security Agency QakBot—also known as Qbot, Quackbot, Pin…
US CISA and FBI Published a Joint Advisory on QakBot on 30 August 2023
USCybersecurity and Infrastructure Security Agency Advanced persistent threat (APT) actors US CISA and FBI Released Joint Cybersecurity Advisory to Detect APT Activity Targeting Outlook Online on 12 July 2023 Technical disclosure 12 Jul 2023
Technical disclosure 12 Jul 2023
USCybersecurity and Infrastructure Security Agency Advanced persistent threat (APT) actors
US CISA and FBI Released Joint Cybersecurity Advisory to Detect APT Activity Targeting Outlook Online on 12 July 2023
Unknown United States ·Critical infrastructure Unknown threat actor gained access to non-production environment of unnamed critical infrastructure organisation using a zero-day vulnerability in the NetScaler Application Delivery Controller and stole data in June 2023 1 Jun 2023
Incident · Low severity 1 Jun 2023
Unknown United States ·Critical infrastructure
Unknown threat actor gained access to non-production environment of unnamed critical infrastructure organisation using a zero-day vulnerability in the NetScaler Application Delivery Controller and stole data in June 2023
Daixin Team United States ·Health Daixin Ransomware Group encrypted data from US healthcare facility CRHS and leaked data in June 2023 18 May 2023
Incident · Moderate severity 18 May 2023
Daixin Team United States ·Health
Daixin Ransomware Group encrypted data from US healthcare facility CRHS and leaked data in June 2023
AUUS2 statesjoint BianLian (Russian Federation) US and Australia Published a Joint Advisory in Response to Russia-Based BianLian Ransomware Group, 16 May 2023; updated 20 November 2024 Technical disclosure 16 May 2023
Technical disclosure 16 May 2023
AUUS2 states BianLian (Russian Federation)
US and Australia Published a Joint Advisory in Response to Russia-Based BianLian Ransomware Group, 16 May 2023; updated 20 November 2024
Showing 55–60 of 113 Prev Page 10 / 19 Next
How to read the ledger Every row is an incident or a response. Shape tells them apart; colour and the marks below each sigil carry the rest.
Row type
Incident — a square sigil. The connected dots below carry attribution.
Response — a round sigil. The two squares below show its anchors.
Incident types
Data theft
Disruption
Hijacking
Ransomware & extortion
Response types
Official policy
Unofficial policy
Criminal proceedings
Technical disclosure
Operational action
Reading the marks
Attribution dots (incidents) — how firmly an initiator is named; both filled and joined navy when fully attributed.
none one both
Weight squares (responses) — anchors present: left = a linked incident, right = a named actor.
0 1 2
Issuer stack — one chip is a single issuer; a stack of ISO codes marks a joint or coordinated response.
EUsingle DEFRNL+5several states

An independent, interdisciplinary research consortium providing evidence-based analysis of cyber incidents and the political and legal responses to them.

A consortium of

Heidelberg University · Stiftung Wissenschaft und Politik (SWP)

© 2026 European Repository of Cyber Incidents Evidence-based analysis of cyber incidents & responses
Search