or analyse a relationship
46 incidents · 67 responses 0 threat actors
Years
Records matching “cybersecurity and infrastructure security agency”
Analyse
113 results for “Cybersecurity and Infrastructure Security Agency” 46 incidents · 67 responses
Storm-0558 United States +2 ·Civil society & individuals Chinese threat actor Storm-0558 gained access to email accounts of about 25 organisations, including government agencies, starting on 15 May 2023 15 May 2023
Incident · Low severity 15 May 2023
Storm-0558 United States +2 ·Civil society & individuals
Chinese threat actor Storm-0558 gained access to email accounts of about 25 organisations, including government agencies, starting on 15 May 2023
Bl00dy Ransomware Gang United States ·Government & politics Bl00dy ransomware gang gained access to unspecified US education facilities through a vulnerability in the PaperCut print management MF/NG servers in early May 2023 1 May 2023
Incident · Moderate severity 1 May 2023
Bl00dy Ransomware Gang United States ·Government & politics
Bl00dy ransomware gang gained access to unspecified US education facilities through a vulnerability in the PaperCut print management MF/NG servers in early May 2023
Unknown Norway ·Government & politics Unknown threat actor exploited zero-day vulnerability in Ivanti Endpoint Manager Mobile to compromise ICT platform used by Norwegian ministries in July 2023 1 Apr 2023
Incident · Low severity 1 Apr 2023
Unknown Norway ·Government & politics
Unknown threat actor exploited zero-day vulnerability in Ivanti Endpoint Manager Mobile to compromise ICT platform used by Norwegian ministries in July 2023
USCybersecurity and Infrastructure Security Agency Blacksuit (Royal) ransomware operators US CISA and FBI Publish Royal Ransomware Advisory, 2 March 2023; updated 13 November 2023 Technical disclosure 2 Mar 2023
Technical disclosure 2 Mar 2023
USCybersecurity and Infrastructure Security Agency Blacksuit (Royal) ransomware operators
US CISA and FBI Publish Royal Ransomware Advisory, 2 March 2023; updated 13 November 2023
USKR2 statesjoint India USA and Republic of Korea Released a Joint Cybersecurity Advisory to Provide Information on Ransomware Activity Used by North Korean State-Sponsored Cyber Actors on 9 February 2023 Technical disclosure 9 Feb 2023
Technical disclosure 9 Feb 2023
USKR2 states India
USA and Republic of Korea Released a Joint Cybersecurity Advisory to Provide Information on Ransomware Activity Used by North Korean State-Sponsored Cyber Actors on 9 February 2023
USCybersecurity and Infrastructure Security Agency US CISA Assists in ESXiArgs Ransomware Recovery with Advisory and Recovery Script, 7 February 2023 Technical disclosure 7 Feb 2023
Technical disclosure 7 Feb 2023
USCybersecurity and Infrastructure Security Agency
US CISA Assists in ESXiArgs Ransomware Recovery with Advisory and Recovery Script, 7 February 2023
Showing 61–66 of 113 Prev Page 11 / 19 Next
How to read the ledger Every row is an incident or a response. Shape tells them apart; colour and the marks below each sigil carry the rest.
Row type
Incident — a square sigil. The connected dots below carry attribution.
Response — a round sigil. The two squares below show its anchors.
Incident types
Data theft
Disruption
Hijacking
Ransomware & extortion
Response types
Official policy
Unofficial policy
Criminal proceedings
Technical disclosure
Operational action
Reading the marks
Attribution dots (incidents) — how firmly an initiator is named; both filled and joined navy when fully attributed.
none one both
Weight squares (responses) — anchors present: left = a linked incident, right = a named actor.
0 1 2
Issuer stack — one chip is a single issuer; a stack of ISO codes marks a joint or coordinated response.
EUsingle DEFRNL+5several states

An independent, interdisciplinary research consortium providing evidence-based analysis of cyber incidents and the political and legal responses to them.

A consortium of

Heidelberg University · Stiftung Wissenschaft und Politik (SWP)

© 2026 European Repository of Cyber Incidents Evidence-based analysis of cyber incidents & responses
Search