Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Darktrace AI stops Emotet trojan cyber-attack

Security

Darktrace AI stops Emotet trojan cyber-attack

Cambridge based Darktrace announced today that its Autonomous Response technology, Antigena, successfully took action to halt a recent cyber-attack targeting a construction supply enterprise in Saudi Arabia.

Image copyright Shutterstock

The company, which has been in business for over 50 years and has over 35 branches, was infiltrated by attackers in the early hours of the morning. Darktrace's Self-Learning AI spotted that a company device was compromised by Emotet, an infamous trojan that rapidly spreads malware from device to device, exfiltrating sensitive financial information. Emotet, which had defeated static security controls in the organisation, is often the pre-cursor to ransomware if left uninterrupted.

Advertisement
Tritax 300x250

Within minutes, Darktrace AI took action to successfully block malicious communications occurring between the infected device and an unusual host.

Self-Learning AI formed a constantly evolving understanding of both IT and operational technologies at the Saudi Arabian construction giant, allowing it to identify the subtle, emerging signs of Emotet. Within seconds, the algorithms took targeted action to interrupt the encroaching attack. This allowed the organisation to continue normal business operations without disruption and investigate the incident further.

The attack occurred amidst rising global cyber tensions and follows warnings from the Five Eyes urging companies to bolster defenses – particularly operators of critical national infrastructure or organisations that are critical to global supply chains.

"Since its emergence in 2014 the Emotet trojan has undergone multiple iterations and recently made a comeback globally," commented Max Heinemeyer, Director of Threat Hunting at Darktrace. "Emotet is particularly dangerous because this type of botnet can quickly escalate into something like ransomware if not stopped. Business leaders should know there is technology out there that can stop these attacks in their tracks, before sensitive data leaves the organization and before any ransom is demanded."
 

Advertisement
ODU RT

 

 

Advertisement
Babcock LB
Spaceflux awarded UK Government space surveillance and tracking contracts

Defence Security Space

Spaceflux awarded UK Government space surveillance and tracking contracts

20 November 2025

UK-based specialist in space domain awareness (SDA) and space intelligence, Spaceflux Ltd, has won all three major multimillion-pound, multiyear UK government contracts to provide advanced space surveillance and tracking (SST) data across multiple orbital regimes.

Smiths Detection

Aerospace Security

Smiths Detection's IONSCAN 600 achieves ECAC/EU G1 approval

20 November 2025

Smiths Detection today announced that its IONSCAN 600 explosives trace detector (ETD) has achieved ECAC/EU G1 approval, ensuring that all ECAC-approved units equipped with the new Control Parameter (CP) set are fully compliant with the latest G1 standards for passengers/cargo.

QinetiQ and Forcys partner on Australian maritime security

Defence Security

QinetiQ and Forcys partner on Australian maritime security

20 November 2025

QinetiQ and Forcys have signed a Memorandum of Understanding (MoU) to strengthen Australia’s sovereign capability in maritime assurance, ensuring undersea and autonomous systems are safe, reliable and ready for operation.

Report reveals UK

Security

Report reveals UK's most prevalent fraud types and cybercrimes

20 November 2025

In response to the growing trend of criminals utilising AI to perpetrate scams, there has been a significant surge in fraud cases across the UK, resulting in total losses exceeding £4 billion across various fraudulent activities.

Advertisement
Tritax 300x250
Bristow selects Airbus H160 from Milestone

Aerospace Security

Bristow selects Airbus H160 from Milestone

18 November 2025

Bristow will introduce up to five Airbus H160s into its fleet for offshore energy missions across Africa, leased from Milestone Aviation Group.

Smith Myers

Aerospace Defence Security

Smith Myers' Artemis MPDLS integrated with Trakka Mission System

17 November 2025

Smith Myers and Trakka Systems have successfully integrated the Artemis Mobile Phone Detection & Location System (MPDLS) with the Trakka TM-100 Mapping System and TC line of EO/IR camera systems.

Advertisement
ODU RT