MIT TRACE

MIT CTL Logo
Back to Main Dashboard

FrostyGoop attack on Lvivteploenergo cuts heating for almost 48 hours

Attackers compromised the Lviv municipal heating utility Lvivteploenergo and manipulated ENCO industrial controllers over Modbus. Dragos assessed with moderate confidence that FrostyGoop malware was used; the resulting OT malfunction deprived more than 600 apartment buildings of central heating for almost 48 hours during sub-zero temperatures.

87

Estimated severity

87 / 100

90

Source reliability

90 / 100

Approximate Date

22/01/2024

Targeted Company

LVIVTEPLOENERGO

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

Ukraine

UKR

Other Affected Countries

No other affected countries reported

Target country

Ukraine

Affected countries

Ukraine

Impacted regions

Lviv · Ukraine

Operational Impact

Duration

2 days

Financial impact (USD M)

No information

Impact types

OT or ICS disruptionService unavailability

Affected sectors

Energy & Utilities

Affected departments

No information

Attack Profile

Attack types

ICS/OT compromiseMalware

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.