or analyse a relationship
46 incidents · 67 responses 0 threat actors
Years
Records matching “cybersecurity and infrastructure security agency”
Analyse
113 results for “Cybersecurity and Infrastructure Security Agency” 46 incidents · 67 responses
Russian Intelligence Services United States ·Defence & military Russian Intelligence Services Targeted Commercial Messaging Application Users Globally in March 2026 1 Mar 2026
Incident · Low severity 1 Mar 2026
Russian Intelligence Services United States ·Defence & military
Russian Intelligence Services Targeted Commercial Messaging Application Users Globally in March 2026
USFederal Bureau of Investigation PRC intelligence apparatus (China) FBI Deputy Assistant Director Warned About Persistent Threats from Salt Typhoon Group on 19 February 2026 Unofficial policy 19 Feb 2026
Unofficial policy 19 Feb 2026
USFederal Bureau of Investigation PRC intelligence apparatus (China)
FBI Deputy Assistant Director Warned About Persistent Threats from Salt Typhoon Group on 19 February 2026
(China) United States ·Government & politics Chinese Threat Actors Suspected of Breaching Federal Bureau Of Investigation Networks In The United States On 17 February 2026 17 Feb 2026
Incident · Moderate severity 17 Feb 2026
(China) United States ·Government & politics
Chinese Threat Actors Suspected of Breaching Federal Bureau Of Investigation Networks In The United States On 17 February 2026
USCybersecurity and Infrastructure Security Agency Poland US CISA and DOE Published Advisory in Support of Polish CERT's Report on Malicious Cyber Activity Targeting Poland's Energy Sector on 10 February 2026 Technical disclosure 10 Feb 2026
Technical disclosure 10 Feb 2026
USCybersecurity and Infrastructure Security Agency Poland
US CISA and DOE Published Advisory in Support of Polish CERT's Report on Malicious Cyber Activity Targeting Poland's Energy Sector on 10 February 2026
Threat Actor 888 Europe (region) ·International organizations An Unknown Hacker Using the Alias 888 Stole Sensitive Data From European Space Agency On 18 December 2025 18 Dec 2025
Incident · Low severity 18 Dec 2025
Threat Actor 888 Europe (region) ·International organizations
An Unknown Hacker Using the Alias 888 Stole Sensitive Data From European Space Agency On 18 December 2025
CAUS2 statesjoint United States United States and Canada Assessed China State-Sponsored Threat Actors Are Using BRICKSTORM Malware for Long-term Persistence on Victim Systems, 4 December 2025 Technical disclosure 4 Dec 2025
Technical disclosure 4 Dec 2025
CAUS2 states United States
United States and Canada Assessed China State-Sponsored Threat Actors Are Using BRICKSTORM Malware for Long-term Persistence on Victim Systems, 4 December 2025
Showing 13–18 of 113 Prev Page 3 / 19 Next
How to read the ledger Every row is an incident or a response. Shape tells them apart; colour and the marks below each sigil carry the rest.
Row type
Incident — a square sigil. The connected dots below carry attribution.
Response — a round sigil. The two squares below show its anchors.
Incident types
Data theft
Disruption
Hijacking
Ransomware & extortion
Response types
Official policy
Unofficial policy
Criminal proceedings
Technical disclosure
Operational action
Reading the marks
Attribution dots (incidents) — how firmly an initiator is named; both filled and joined navy when fully attributed.
none one both
Weight squares (responses) — anchors present: left = a linked incident, right = a named actor.
0 1 2
Issuer stack — one chip is a single issuer; a stack of ISO codes marks a joint or coordinated response.
EUsingle DEFRNL+5several states

An independent, interdisciplinary research consortium providing evidence-based analysis of cyber incidents and the political and legal responses to them.

A consortium of

Heidelberg University · Stiftung Wissenschaft und Politik (SWP)

© 2026 European Repository of Cyber Incidents Evidence-based analysis of cyber incidents & responses
Search