{
	"id": "7a9374e6-ed15-4526-a971-c192f73fc022",
	"created_at": "2026-04-06T00:21:57.062005Z",
	"updated_at": "2026-04-10T03:20:44.236294Z",
	"deleted_at": null,
	"sha1_hash": "168600de5800e8019df902c4da5dcff9caf74863",
	"title": "E\u0026E News: The inside story of the world's most dangerous malware",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 182346,
	"plain_text": "E\u0026E News: The inside story of the world's most dangerous\r\nmalware\r\nBy Blake Sobczak\r\nPublished: 2019-03-07 · Archived: 2026-04-05 22:00:19 UTC\r\nClaudine Hellmuth/E\u0026E News(illustration); Kremlin/Wikipedia(Putin); Xiquinho Silva/Flickr(St Basil\r\nCathedral); FireEye (logo, hacker code graphics); perlshaper/Wikipedia(globe)\r\nENERGYWIRE | On Aug. 4, 2017, at 7:43 p.m., two emergency shutdown systems sprang into action as\r\ndarkness settled over the sprawling refinery along Saudi Arabia's Red Sea coast.\r\nThe systems brought part of the Petro Rabigh complex offline in a last-gasp effort to prevent a gas release and\r\ndeadly explosion. But as safety devices took extraordinary steps, control room engineers working the weekend\r\nshift spotted nothing out of the ordinary, either on their computer screens or out on the plant floor.\r\nThe reasons for the sudden shutdown were still buried under zeros and ones, nestled deep within the code of the\r\ncompromised Schneider Electric safety equipment.\r\nInvestigators soon discovered a dangerous hacking tool that would usher in a new chapter in the global cyber arms\r\nrace, much like the Stuxnet worm that damaged Iranian nuclear centrifuges at the start of the decade. The\r\ndiscovery of the Triton malware, named for the Triconex line of safety systems it triggered, echoed from the\r\nancient Saudi city of Rabigh to a research institute in Moscow, and from California to Tokyo.\r\n...\r\nhttps://www.eenews.net/stories/1060123327/\r\nPage 1 of 2\n\nSource: https://www.eenews.net/stories/1060123327/\r\nhttps://www.eenews.net/stories/1060123327/\r\nPage 2 of 2",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"Malpedia"
	],
	"references": [
		"https://www.eenews.net/stories/1060123327/"
	],
	"report_names": [
		"1060123327"
	],
	"threat_actors": [],
	"ts_created_at": 1775434917,
	"ts_updated_at": 1775791244,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/168600de5800e8019df902c4da5dcff9caf74863.pdf",
		"text": "https://archive.orkl.eu/168600de5800e8019df902c4da5dcff9caf74863.txt",
		"img": "https://archive.orkl.eu/168600de5800e8019df902c4da5dcff9caf74863.jpg"
	}
}