Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
SIGA - Multi Level OT Resilience

SIGA - Multi Level OT Resilience Vendor Cyber Rating & Cyber Score

sigasec.com

SIGA provides a Process-Oriented OT Cybersecurity with real-time decision- making capabilities for managing critical Incident Response (IR) phases of an OT cyberattack – including Detection, Containment and Cyber-attack Forensics. Unlike other solutions, SIGA detects all expressions of a cyber- attack based on its unfiltered view of all Levels of Cyber OT, including Level Zero visibility. Founded in 2014, SIGA has global customers in multiple sectors including Oil & Gas, Power Utilities, Data Centers and Water.


SMLOR A.I CyberSecurity Scoring

SMLOR
Company Information
Website:http://www.sigasec.com
Employees number:31
Number of followers:2,703
NAICS:5112
Industry Type:Software Development
Homepage:sigasec.com
SMLOR Risk Score (AI oriented)
Between 700 and 749
logo
SMLORSoftware Development
Updated:
26/06/2026
744/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
SMLOR Global Score (TPRM)
xxxx
logo
SMLORSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

SMLOR
SMLORModerate
Current Score
744Ba (MODERATE)
01000
1 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
744Before Incident
JUNE 2026
744Before Incident
MAY 2026
744Before Incident
APRIL 2026
743Before Incident
MARCH 2026
743Before Incident
FEBRUARY 2026
743Before Incident
JANUARY 2026
743Before Incident
DECEMBER 2025
743Before Incident
NOVEMBER 2025
742Before Incident
OCTOBER 2025
742Before Incident
SEPTEMBER 2025
750Before Incident
AUGUST 2025
741Before Incident
JANUARY 2024
751Before Incident
Cyber Attack
01 Jan 2024SMLOR
Bremanger Dam, Muleshoe Water System, Unitronics and Polish Water Treatment Plants: Hackers Exploit Weak Credentials and Internet-Facing PLCs to Breach Water Utilities

State-Backed Hackers Target Water Utilities in U.S. and Europe, Exploiting Basic Security Flaws

732After Incident
CRITICAL-19
UNISIGEMVTEA1782484008
State-Backed Hackers Target Water Utilities in U.S. and Europe, Exploiting Basic Security Flaws Since 2024, water and wastewater infrastructure across the U.S. and Europe has faced a surge in cyberattacks by nation-state actors, marking a shift from opportunistic breaches to deliberate strategic targeting. Iran, Russia, and China have exploited weak security in critical systems, using them as leverage in geopolitical conflicts rather than causing immediate mass disruption. Key Incidents and Tactics - Iran-linked CyberAv3ngers exploited default credentials on Unitronics Vision Series PLCs in U.S. water systems, with attacks confirmed by CISA in December 2024 and ongoing through 2026. The group targeted exposed industrial control ports (e.g., TCP/44818, TCP/2222) and used Dropbear SSH for remote access. - Russia-associated actors, including the Cyber Army of Russia Reborn (linked to Sandworm), caused a 30–45-minute water tank overflow in Muleshoe, Texas, in January 2024. In April 2025, they breached a dam in Bremanger, Norway, opening floodgates for four hours, and compromised five Polish water treatment plants, where they altered chemical dosing parameters. - China’s Volt Typhoon adopted a stealthier approach, embedding itself in U.S. water and wastewater IT networks for long-term access, positioning for potential future conflicts. The group leveraged living-off-the-land tools like wmic, ntdsutil.exe, and PowerShell to evade detection. Common Vulnerabilities Attackers relied on preventable security gaps, including: - Internet-exposed PLCs and HMIs. - Default or weak passwords and shared operator accounts. - Poor IT/OT network segmentation. - Unsecured remote access tools. Impact and Response With 170,000 water systems in the U.S. alone many underfunded and operating on outdated technology the sector remains highly vulnerable. Federal agencies (CISA, FBI, NSA, EPA) have issued repeated warnings, emphasizing the need for basic hardening measures: removing PLCs from public internet access, enforcing multi-factor authentication, and improving OT monitoring. Indicators of compromise (IoCs) linked to these campaigns include specific IP addresses (e.g., 135.136.1[.]133), targeted network ports (TCP/502, TCP/22), and tools like Dropbear SSH and ntds.dit. Iranian actors left defacement messages on compromised HMIs, declaring Israeli-made equipment a "legal target."
INCIDENT DETAILS -
TYPE
Cyber EspionageSabotageUnauthorized Access
MOTIVATION
Geopolitical leverageStrategic positioning for future conflictsDisruption of critical infrastructure
IMPACT
Water and wastewater treatment systemsPLCs (Unitronics Vision Series)DamsChemical dosing systems30–45 minutes (Muleshoe, Texas)4 hours (Bremanger, Norway)Water tank overflowFloodgate manipulationAltered chemical dosing parameters

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for SMLOR ?
?
What was SMLOR's A.I Rankiteo Cyber Score in June 2026 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in May 2026 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in April 2026 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in March 2026 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in February 2026 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in January 2026 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in December 2025 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in November 2025 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in October 2025 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in September 2025 ?
?
What was SMLOR's A.I Rankiteo Cyber Score in August 2025 ?
?
What is the average per-incident point impact on SMLOR's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with SMLOR ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view SMLOR's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?