Back to overview

TRISIS/TRITON/HATMAN ICS Malware

08.01.2018 13:27
Warning

On December 13, 2017, the security researchers at Dragos reported a new malware called "TRISIS" that targets Triconex controllers from Schneider Electric. The majority of this has been publicly available since 24.12.2017.
We would like to provide an updated timeline here:

13.12.2017: Message from Dragos, malware code name: TRISIS

14.12.2017: Message from Fireeye, malware code name: TRITON

18.12.2017: Analysis of the US-CERT, malware code name: HATMAN

24.12.2017: Publication of the decompiled code and the original samples on several websites.