RSS feed source: US Computer Emergency Readiness Team

Summary

The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) are releasing this joint advisory to disseminate known tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) associated with threat actors deploying the LummaC2 information stealer (infostealer) malware. LummaC2 malware is able to infiltrate victim computer networks and exfiltrate sensitive information, threatening vulnerable individuals’ and organizations’ computer networks across multiple U.S. critical infrastructure sectors. According to FBI information and trusted third-party reporting, this activity has been observed as recently as May 2025. The IOCs included in this advisory were associated with LummaC2 malware infections from November 2023 through May 2025.

The FBI and CISA encourage organizations to implement the recommendations in the Mitigations section of this advisory to reduce the likelihood and impact of LummaC2 malware.

Download the PDF version of this report:

AA25-141B Threat Actors Deploy LummaC2 Malware to Exfiltrate Sensitive Data from Organizations (PDF, 1.28 MB )

For a downloadable copy of IOCs, see:

AA25-141B STIX XML (XML, 146.54 KB ) AA25-141B STIX JSON (JSON, 300.90 KB ) Technical Details

Note: This advisory uses the MITRE ATT&CK® Matrix for Enterprise framework, version 17. See the MITRE ATT&CK Tactics and Techniques section of this advisory for threat actor activity mapped to MITRE ATT&CK

Click this link to continue reading the article on the source website.

RSS feed source: US Computer Emergency Readiness Team

In-depth analysis

May 20, 2025

Colorado State University’s hurricane forecast estimates the 2025 hurricane season will exceed the 1991–2020 average, with an estimate of 17 named storms, compared with a historical average of 14 storms. Meteorologists expect 13–18 named storms, including 3–6 storms with direct impacts on the United States, during this year’s Atlantic hurricane season, according to reports from AccuWeather in April.

The potential for a stronger hurricane season suggests heightened risk for weather-related production outages in the U.S. oil industry, including potential refinery outages along the U.S. Gulf Coast. Last year, five hurricanes made landfall in the United States, shutting in some upstream crude oil and natural gas production temporarily and disrupting petroleum product supply chains in Florida.

What is hurricane season?

The National Oceanic and Atmospheric Administration’s (NOAA) National Hurricane Center defines the

Click this link to continue reading the article on the source website.

RSS feed source: US Computer Emergency Readiness Team

In-brief analysis

May 19, 2025

We expect U.S. hydropower generation will increase by 7.5% in 2025 but will remain 2.4% below the 10-year average in our May Short-Term Energy Outlook (STEO). Hydropower generation in 2024 fell to 241 billion kilowatthours (BkWh), the lowest since at least 2010; in 2025, we expect generation will be 259.1 BkWh. This amount of generation would represent 6% of the electricity generation in the country.

About half of the hydropower generating capacity in the country is in the western states of Washington, Oregon, and California, so we closely monitor precipitation patterns in this region to inform our hydropower outlook.

Precipitation conditions have been mixed across the western United States since October. According to the WestWide Drought Tracker, more precipitation than normal has fallen in northern California, Oregon, and the eastern half

Click this link to continue reading the article on the source website.