Hackers continue to abuse red team drill tools, the most common of which is Cobalt Strike, and later Brute Ratel C4 (BRC4), and Geacon developed in Go language, but these tools are mainly for IT network environment come. Recently, information security company Mandiant revealed a malware called CosmicEnergy, and pointed out that the original purpose of the program may be a tool for red team drills in industrial control environments.
![[Information Security Daily]On May 26, it was reported that the tools used to simulate the red team drills were abused, and hackers used them to attack the industrial control equipment of the power grid 1 20230526](https://mlmanfsmq3vm.i.optimole.com/w:1280/h:560/q:mauto/rt:fill/g:sm/f:avif/https://urbantechstory.com/wp-content/uploads/2023/05/20230526.png)