or analyse a relationship
46 incidents · 67 responses 0 threat actors
Years
Records matching “cybersecurity and infrastructure security agency”
Analyse
113 results for “Cybersecurity and Infrastructure Security Agency” 46 incidents · 67 responses
APT42 (IRGC-IO) United States ·Government & politics Iranian State-Sponsored Group APT42 Compromised Campaign of US Presidential Candidate Donald J. Trump Beginning in July 2024 1 Jan 2024
Incident · Moderate severity 1 Jan 2024
APT42 (IRGC-IO) United States ·Government & politics
Iranian State-Sponsored Group APT42 Compromised Campaign of US Presidential Candidate Donald J. Trump Beginning in July 2024
Volt Typhoon fka DEV-0391 New Caledonia ·Telecom & digital Chinese APT Volt Typhoon compromised telecommunication provider of Southwest Pacific Islands of New Caledonian in December 2023 1 Dec 2023
Incident · Low severity 1 Dec 2023
Volt Typhoon fka DEV-0391 New Caledonia ·Telecom & digital
Chinese APT Volt Typhoon compromised telecommunication provider of Southwest Pacific Islands of New Caledonian in December 2023
Unknown United States ·Telecom & digital US American cloud service provider Ongoing Operations hit by ransomware attack on 26 November 2023 26 Nov 2023
Incident · Low severity 26 Nov 2023
Unknown United States ·Telecom & digital
US American cloud service provider Ongoing Operations hit by ransomware attack on 26 November 2023
IRGC Cyber-Electronic Command (IRGC-CEC) (IRGC-EWCD) United States ·Energy & utilities IRGC-linked hacker group Cyber Av3nger breached Municipal Water Authority of Aliquippa in Pennsylvania on 25 November 2023 25 Nov 2023
Incident · Low severity 25 Nov 2023
IRGC Cyber-Electronic Command (IRGC-CEC) (IRGC-EWCD) United States ·Energy & utilities
IRGC-linked hacker group Cyber Av3nger breached Municipal Water Authority of Aliquippa in Pennsylvania on 25 November 2023
Cozy Bear (SVR) United States ·Telecom & digital Russian state-sponsored threat actor Midnight Blizzard gained access to Microsoft Corporate e-mail accounts and stole data since November 2023, as discovered by Microsoft on 12 January 2024 1 Nov 2023
Incident · Low severity 1 Nov 2023
Cozy Bear (SVR) United States ·Telecom & digital
Russian state-sponsored threat actor Midnight Blizzard gained access to Microsoft Corporate e-mail accounts and stole data since November 2023, as discovered by Microsoft on 12 January 2024
(Russia) Georgia +9 ·Government & politics Russian-aligned threat actor TAG-70 targeted various governmental entities in Europe and Central Asia using Roundcube vulnerability in October 2023 1 Oct 2023
Incident · Low severity 1 Oct 2023
(Russia) Georgia +9 ·Government & politics
Russian-aligned threat actor TAG-70 targeted various governmental entities in Europe and Central Asia using Roundcube vulnerability in October 2023
Showing 49–54 of 113 Prev Page 9 / 19 Next
How to read the ledger Every row is an incident or a response. Shape tells them apart; colour and the marks below each sigil carry the rest.
Row type
Incident — a square sigil. The connected dots below carry attribution.
Response — a round sigil. The two squares below show its anchors.
Incident types
Data theft
Disruption
Hijacking
Ransomware & extortion
Response types
Official policy
Unofficial policy
Criminal proceedings
Technical disclosure
Operational action
Reading the marks
Attribution dots (incidents) — how firmly an initiator is named; both filled and joined navy when fully attributed.
none one both
Weight squares (responses) — anchors present: left = a linked incident, right = a named actor.
0 1 2
Issuer stack — one chip is a single issuer; a stack of ISO codes marks a joint or coordinated response.
EUsingle DEFRNL+5several states

An independent, interdisciplinary research consortium providing evidence-based analysis of cyber incidents and the political and legal responses to them.

A consortium of

Heidelberg University · Stiftung Wissenschaft und Politik (SWP)

© 2026 European Repository of Cyber Incidents Evidence-based analysis of cyber incidents & responses
Search