Products · Indian oil and gas

Sanket

Cyber risk intelligence for India's energy system

Executive brief, India energy surface map, browser posture check, and IT handoff for the digital systems around refineries, pipelines, terminals, LPG, retail, and policy workflows.

Threat posture 74 Elevated
Operating thesis

Cyber risk is now an executive energy-security question.

Sanket converts public threat signals into decisions a CMD, secretary, CISO, or asset owner can act on without waiting for a post-incident technical memo.

Executive brief Board-ready

Top risk, affected surface, operating consequence, decision owner, and first control action in one view.

India map Energy system

West coast import gates, eastern refineries, trunk pipelines, LNG terminals, policy workflows, and retail trust surfaces.

Evidence boundary Public-source only

No claim about live PSU systems. Browser checks remain local and do not inspect LAN, VPN, EDR, routers, DNS, or OT assets.

01 Executive brief

Risk posture, priority pathway, control order, and sector consequence.

02 Browser posture

25 local checks translated into executive, CMD, CISO, admin, and evidence views.

03 IT handoff

Findings, evidence, remediation text, JSON export, and scope boundary.

India energy surface

Where cyber pressure becomes operating risk

Map the digital surfaces that matter to energy security: import gates, refineries, pipelines, LNG, retail/LPG, upstream production, and policy data flows.

Map mode 82 Priority
India energy cyber-risk surface Stylised map showing risk zones across Indian oil, gas, retail, and policy infrastructure. West coast import gate North demand and policy East coast refining South LNG and retail Policy data

Executive brief

Tracked risk signals

Public inputs only. Each signal is translated into a decision, owner, and operating consequence.

Priority decision Process control

OEM support path into dual-homed engineering context - broker every OEM session through recorded jump hosts.

Critical

OEM remote-access concentration

Vendor support paths can become a high-leverage bridge into plant context.

Critical

Plant SOC and enterprise SOC handoff

Watch the handoff gap between OT detection, corporate identity, and escalation.

High

Policy-document lures

Oil-and-gas decoys and cybersecurity-guideline lures hit executive and policy workflows.

High

Retail and consumer fraud surface

Dealer portals, loyalty flows, LPG subsidy messages, and fuel-discount scams convert cyber events into public-trust events quickly.

Critical

Frontier cyber-AI gap

AI-assisted vulnerability discovery shortens defender timelines.

Watch

Refinery-sim telemetry

Public telemetry showed sustained hits against simulated refinery-sector sensors, including common industrial protocols.

Evidence tracker

Public-source events feeding v0

  1. Anthropic announces Project Glasswing and Claude Mythos Preview. Flag: frontier cyber-AI capability. Use: compress patch and compensating-control timelines. Source
  2. Public reporting says unauthorized users accessed Mythos through a third-party environment. Flag: control-plane risk around powerful defensive/offensive cyber models. Source
  3. Seqrite reports SideCopy lures using HPCL-themed cybersecurity-guideline documents. Flag: policy-document lure. Use: harden mailbox, file-share, and executive-document workflows. Source
  4. Oil India Duliajan ransomware incident becomes the key public Indian oil-and-gas precedent. Flag: ransomware business-continuity stress. Use: rehearse recovery and executive communications. Source
  5. CyberPeace / Autobot refinery-sector simulated sensors record roughly 3.6 lakh attack events. Flag: protocol pressure. Use: model common exposed-service and industrial-protocol attack paths. Source

Scenario timelines

Oil and gas cyber pathways

Switch between dated pathways. The score is derived from scenario context and the public signal spine, not editable pretend-control variables.

v0.2 Public data only
Active timeline

Baseline watch

Known Indian oil-and-gas incidents, public lures, AI capability shifts, and refinery-sim telemetry create the standing watch picture.

  1. Oil India ransomware becomes the core Indian sector precedent.
  2. HPCL-themed cybersecurity-guideline lures show policy-document targeting.
  3. Frontier cyber-AI capability shortens patch and compensating-control timelines.
Danger index 74 Elevated

Process-control, OEM support, and pipeline-SCADA handoffs are the first places to look.

Likely pathway
  1. Targeted phishing or credential reuse lands in the corporate estate.
  2. VPN/session abuse reaches vendor or engineering support access.
  3. Dual-homed workstation or OEM laptop bridges into plant context.
  4. Detection gap appears between plant SOC and corporate SOC.

Action queue

What moves first

  1. Issue OEM remote-access governance order.Jump-host brokering, session recording, time-bound credentials, and access inventory across CII-designated assets.
  2. Convene MD-level classified threat brief.Move the threat picture from CISO desk to CMD agenda before budgets are frozen.
  3. Run cross-PSU adversary-emulation tabletop.One refinery-and-pipeline scenario, all CMDs present, debrief chaired at ministry level.

Browser posture check

Run the local security check

Click once. 25 local checks. No data leaves the device, and permission state is read without camera, microphone, location, notification, or storage prompts. Results are structured as executive, CISO, IT-admin, and evidence views.

Browser score -- Not run

Run the check to produce a local browser-side posture report.

Run the check to see the plain-English verdict.

Network edge Not checked

Run the check to see what the public edge can infer from this connection.

History No baseline

This browser will compare the next run with recent local results.

Priority action Waiting

The first action will be generated from the scan, not fixed copy.

Role brief Not ready

Run once, then switch between executive, CMD, CISO, IT-admin, and evidence views.

Now Waiting

Run the check to generate the first concrete step.

Today Waiting

The next step will be based on this browser, public edge, and findings.

This week Waiting

Sanket will point to the next browser-only layer before any native collector path.

Executive output

Priority findings and first actions

  • No report yet. Run the check to generate executive-level guidance.

CMD brief

Decision view

  • No CMD brief yet. Run the check to generate the decision view.

CISO brief

Control view

  • No CISO brief yet. Run the check to generate the control view.

IT admin

Work queue

  • No work queue yet. Run the check to generate admin tasks.

Evidence handoff

Technical fixes and evidence

  • No IT report yet. Run the check to build the handoff.
Run the check to generate a browser-side JSON log.

Permission prompts can test this browser and this site. They still cannot inspect routers, EDR, internal DNS, VPN split tunneling, open ports, or OT assets. That requires a signed local collector with written authorization.

Live

Browser + edge

Run the browser check, capture the public edge, save local history, and export role briefs.

Next

Managed-browser policy

Turn scan findings into Chrome/Edge policy guidance for permissions, WebRTC, device APIs, and privacy controls.

Next

Evidence upload

Let IT paste or upload approved exports from EDR, DNS, MDM, firewall, or vulnerability tools for Sanket to normalize.

Later

Browser extension

Add optional deeper browser/tab/header checks through a Chrome or Edge extension, without a full native endpoint collector.

Source spine

Public evidence behind v0