or analyse a relationship
46 incidents · 67 responses 0 threat actors
Years
Records matching “cybersecurity and infrastructure security agency”
Analyse
113 results for “Cybersecurity and Infrastructure Security Agency” 46 incidents · 67 responses
Volt Typhoon fka DEV-0391 United States +1 ·Government & politics Chinese state-sponsored hacking group Volt Typhoon gained access to critical infrastructure organisations on Guam and US mainland beginning in mid-2021 1 Jan 2021
Incident · Low severity 1 Jan 2021
Volt Typhoon fka DEV-0391 United States +1 ·Government & politics
Chinese state-sponsored hacking group Volt Typhoon gained access to critical infrastructure organisations on Guam and US mainland beginning in mid-2021
Unknown Russian State-Sponsored Threat Actors United States ·Defence & military Russian State-Sponsored Threat Actors Compromised US Cleared Defense Contractors from January 2020 to February 2022 1 Jan 2020
Incident · Moderate severity 1 Jan 2020
Unknown Russian State-Sponsored Threat Actors United States ·Defence & military
Russian State-Sponsored Threat Actors Compromised US Cleared Defense Contractors from January 2020 to February 2022
Fox Kitten (Danesh Novin Sahand) United States ·Government & politics Pioneer Kitten, an Iran-linked hacking group, gained access to a city's local infrastructure that would be used to record the voting results of the US 2020 election 1 Jan 2020
Incident · Low severity 1 Jan 2020
Fox Kitten (Danesh Novin Sahand) United States ·Government & politics
Pioneer Kitten, an Iran-linked hacking group, gained access to a city's local infrastructure that would be used to record the voting results of the US 2020 election
Turla (FSB Centre 16, Unit 71330) United States ·Health Russia's FSB 16th Centre aka Turla Breached Multiple Sectors in the United States from 2018 Onwards 1 Jan 2018
Incident 1 Jan 2018
Turla (FSB Centre 16, Unit 71330) United States ·Health
Russia's FSB 16th Centre aka Turla Breached Multiple Sectors in the United States from 2018 Onwards
Unknown United States ·Government & politics Unknown threat actor leaked data from US state government organisation
Incident · Low severity
Unknown United States ·Government & politics
Unknown threat actor leaked data from US state government organisation
Showing 109–113 of 113 Prev Page 19 / 19 Next
How to read the ledger Every row is an incident or a response. Shape tells them apart; colour and the marks below each sigil carry the rest.
Row type
Incident — a square sigil. The connected dots below carry attribution.
Response — a round sigil. The two squares below show its anchors.
Incident types
Data theft
Disruption
Hijacking
Ransomware & extortion
Response types
Official policy
Unofficial policy
Criminal proceedings
Technical disclosure
Operational action
Reading the marks
Attribution dots (incidents) — how firmly an initiator is named; both filled and joined navy when fully attributed.
none one both
Weight squares (responses) — anchors present: left = a linked incident, right = a named actor.
0 1 2
Issuer stack — one chip is a single issuer; a stack of ISO codes marks a joint or coordinated response.
EUsingle DEFRNL+5several states

An independent, interdisciplinary research consortium providing evidence-based analysis of cyber incidents and the political and legal responses to them.

A consortium of

Heidelberg University · Stiftung Wissenschaft und Politik (SWP)

© 2026 European Repository of Cyber Incidents Evidence-based analysis of cyber incidents & responses
Search