Ukraine
UKR
Attackers compromised the Lviv municipal heating utility Lvivteploenergo and manipulated ENCO industrial controllers over Modbus. Dragos assessed with moderate confidence that FrostyGoop malware was used; the resulting OT malfunction deprived more than 600 apartment buildings of central heating for almost 48 hours during sub-zero temperatures.
Estimated severity
87 / 100
Source reliability
90 / 100
Approximate Date
22/01/2024
Targeted Company
LVIVTEPLOENERGO
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
Ukraine
UKR
No other affected countries reported
Target country
Ukraine
Affected countries
Impacted regions
Duration
2 days
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
No information
Attack types
Attributed threat actors
No information
Incident Sources
Please rotate your phone