Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Moxa, Inc

Moxa, Inc Vendor Cyber Rating & Cyber Score

moxaa.com

Headquaters of Moxa


Moxa, Inc A.I CyberSecurity Scoring

Moxa, Inc
Company Information
Website:http://www.moxaa.com
Employees number:5
Number of followers:0
NAICS:7225
Industry Type:Restaurants
Homepage:moxaa.com
Moxa, Inc Risk Score (AI oriented)
Between 750 and 799
logo
Moxa, IncRestaurants
Updated:
09/03/2026
794/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Moxa, Inc Global Score (TPRM)
xxxx
logo
Moxa, IncRestaurants
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Moxa, Inc
Moxa, IncFair
Current Score
794Baa (FAIR)
01000
1 incidents
-11 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
795Before Incident
MAY 2026
795Before Incident
APRIL 2026
795Before Incident
MARCH 2026
794Before Incident
FEBRUARY 2026
794Before Incident
JANUARY 2026
794Before Incident
DECEMBER 2025
805Before Incident
Vulnerability
29 Dec 2025Moxa, Inc
Fortinet, Moxa and CERT Polska: Poland’s energy control systems were breached through exposed VPN access

Coordinated Cyberattacks Target Poland’s Critical Infrastructure in December 2025

794After Incident
CRITICAL-11
FORCERMOX1770408103
Coordinated Cyberattacks Target Poland’s Critical Infrastructure in December 2025 On 29 December 2025, a series of destructive cyberattacks struck Poland’s energy and industrial sectors, orchestrated by a Russia-linked threat actor tracked as Static Tundra (also known as Berserk Bear, Ghost Blizzard, and Dragonfly). Poland’s CERT Polska confirmed the attacks targeted renewable energy facilities, a heat and power (CHP) plant, and a private manufacturing company, though no disruptions to energy generation or distribution occurred. ### Initial Access & Tactics The attackers exploited internet-exposed FortiGate VPN devices used as perimeter firewalls and VPN concentrators without multi-factor authentication (MFA). In all cases, compromised credentials allowed initial access, with attackers leveraging stolen configurations in some instances. ### Renewable Energy Sector Disruptions At least 30 wind and solar farms were hit, with attackers focusing on substation control systems interfacing with distribution operators. Compromised equipment included: - RTU controllers, protection relays, and HMI computers - Hitachi Energy, Mikronika, and Moxa devices in industrial automation environments Destructive actions corrupted firmware, file deletions, and factory resets led to lost communication between facilities and operators, though power generation continued uninterrupted. ### Heat & Power Plant Sabotage Attempt A CHP plant supplying heat to nearly half a million customers was targeted in a prolonged intrusion dating back months. Attackers conducted: - Internal reconnaissance and credential theft (including Active Directory admin access) - Lateral movement across servers and workstations - Deployment of DynoWiper malware via Group Policy Objects (GPOs) An EDR platform blocked the wiper’s execution, limiting damage. Evidence suggests preparations began earlier in 2025, indicating a long-term operation. ### Manufacturing Company Attack A private manufacturing firm was also targeted opportunistically. Attackers: - Gained access via a Fortinet device with a publicly leaked configuration - Modified settings to maintain persistence despite credential changes - Deployed LazyWiper, a PowerShell-based wiper distributed via GPOs, designed to destroy business-critical data CERT Polska noted the wiper’s file-overwriting function may have been generated by an LLM. ### Impact & Attribution While the attacks disrupted monitoring and control systems, they failed to halt energy production. All incidents were linked to the same threat actor, with tactics aligning with known Russian cyberespionage and sabotage operations. The use of wiper malware, stolen credentials, and prolonged reconnaissance underscores the highly targeted and destructive nature of the campaign.
INCIDENT DETAILS -
TYPE
Destructive CyberattackSabotageCyberespionage
MOTIVATION
SabotageCyberespionageDisruption of critical infrastructure
IMPACT
Data Compromised: Business-critical data, industrial control system configurationsRTU controllersProtection relaysHMI computersIndustrial automation devices (Hitachi Energy, Mikronika, Moxa)Active Directory serversWorkstationsDowntime: Lost communication between facilities and operatorsOperational Impact: Disrupted monitoring and control systems in renewable energy facilities and a CHP plant
DATA BREACH
Industrial control system configurationsBusiness-critical dataSensitivity Of Data: High (industrial control systems, business operations)Data Encryption: Data corruption via wiper malware
NOVEMBER 2025
805Before Incident
OCTOBER 2025
805Before Incident
SEPTEMBER 2025
805Before Incident
AUGUST 2025
805Before Incident
JULY 2025
805Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Moxa, Inc ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Moxa, Inc's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Moxa, Inc's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Moxa, Inc ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Moxa, Inc's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?
Moxa, Inc Cyber Scoring History | Rankiteo