#critical-infrastructure

[ follow ]
Information security
fromThe Hacker News
14 hours ago

Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT Systems

ZionSiphon malware targets Israeli water treatment systems, showcasing a trend in politically motivated attacks on critical infrastructure.
#cybersecurity
fromTechCrunch
5 days ago
Russo-Ukrainian War

Sweden blames Russian hackers for attempting 'destructive' cyberattack on thermal plant | TechCrunch

Information security
fromSecuritymagazine
6 days ago

Pro-Iranian Actor Claims L.A. Metro Cyberattack

L.A. Metro is recovering from a cyberattack attributed to the pro-Iranian group Ababil of Minab, which claims significant data destruction and exfiltration.
Privacy professionals
fromFortune
1 week ago

First they went after medtech, then Kash Patel. Iranian hackers' next target is likely 'low-hanging fruit' in water, energy, and tourism, experts say | Fortune

Iran-linked hackers are targeting high-profile figures and critical infrastructure in the U.S. and Israel to sow disruption.
Information security
fromNextgov.com
5 days ago

Expect more cybersecurity executive orders soon, national cyber director says

President Trump is expected to sign more cybersecurity executive orders soon, following the release of the national cyber strategy.
Russo-Ukrainian War
fromTechCrunch
5 days ago

Sweden blames Russian hackers for attempting 'destructive' cyberattack on thermal plant | TechCrunch

Russian-linked hackers attempted to disrupt a Swedish thermal power plant, highlighting increasing risks of hybrid attacks beyond cyberspace.
Europe politics
fromwww.thelocal.se
5 days ago

Pro-Russian group attempted to attack Swedish heating plant

A pro-Russian activist group attempted a destructive attack on a heating facility in Sweden, highlighting a shift in Russia's tactics against critical infrastructure.
Privacy professionals
fromFortune
1 week ago

First they went after medtech, then Kash Patel. Iranian hackers' next target is likely 'low-hanging fruit' in water, energy, and tourism, experts say | Fortune

Iran-linked hackers are targeting high-profile figures and critical infrastructure in the U.S. and Israel to sow disruption.
#cyberattack
Europe news
fromSecurityWeek
5 days ago

Sweden Blames Pro-Russian Group for Cyberattack Last Year on Its Energy Infrastructure

A pro-Russian group linked to Russian intelligence was behind a failed cyberattack on a Swedish heating plant, part of broader attacks on European infrastructure.
fromTechRepublic
1 month ago
Information security

Iran-Linked Hacktivists Hit Stryker, Knocking Employees Offline Across Multiple Countries

Information security
fromSecuritymagazine
1 month ago

Suspected Iranian Cyberattack Targets U.S. Medtech Company Stryker

Stryker experienced a global cyberattack involving destructive wiper malware that disabled Windows systems across the company, disrupting healthcare equipment supply chains worldwide.
Europe news
fromSecurityWeek
5 days ago

Sweden Blames Pro-Russian Group for Cyberattack Last Year on Its Energy Infrastructure

A pro-Russian group linked to Russian intelligence was behind a failed cyberattack on a Swedish heating plant, part of broader attacks on European infrastructure.
fromTechRepublic
1 month ago
Information security

Iran-Linked Hacktivists Hit Stryker, Knocking Employees Offline Across Multiple Countries

Information security
fromSecuritymagazine
1 month ago

Suspected Iranian Cyberattack Targets U.S. Medtech Company Stryker

Stryker experienced a global cyberattack involving destructive wiper malware that disabled Windows systems across the company, disrupting healthcare equipment supply chains worldwide.
Europe news
fromIndependent
6 days ago

'He ate him without salt': Blockaded port boss berated by minister over his family firm's support for fuel protesters

Oil depot chief contacted by Culture Minister amid fuel protests blocking access to critical infrastructure.
#ai-safety
fromEntrepreneur
1 week ago
Artificial intelligence

Anthropic Warns Its New AI Could Enable 'Weapons We Can't Even Envision.' Skeptics Aren't Buying It.

fromEntrepreneur
1 week ago
Artificial intelligence

Anthropic Warns Its New AI Could Enable 'Weapons We Can't Even Envision.' Skeptics Aren't Buying It.

#ransomware
Information security
fromTheregister
1 week ago

Criminal wannabes even more dangerous than the pros

Ransomware is a significant current threat, targeting critical infrastructure and healthcare, causing immediate harm and financial losses.
Information security
fromSecurityWeek
1 week ago

Medusa Ransomware Fast to Exploit Vulnerabilities, Breached Systems

Medusa ransomware group rapidly exploits vulnerabilities, impacting critical sectors and employing double extortion tactics since June 2021.
Information security
fromSecuritymagazine
3 weeks ago

Security Leaders Share Thoughts on Foster City Cyberattack

Foster City declared a state of emergency due to a ransomware attack, highlighting vulnerabilities in municipal IT infrastructure and the need for better funding and security.
SF politics
fromSecuritymagazine
1 week ago

New Trump Administration Budget Cuts $707M from CISA Funding

The 2027 budget includes significant funding shifts for DHS, with cuts to CISA aimed at refocusing its mission on critical infrastructure defense.
#cisa
fromTheregister
2 weeks ago
US politics

Trump wants to slash $707M from CISA's budget

CISA faces a proposed $707 million budget cut, risking national cybersecurity and critical infrastructure management.
fromSecurityWeek
2 months ago
US politics

CISA Navigates DHS Shutdown With Reduced Staff

CISA operations continue during the DHS shutdown at reduced capacity, requiring 888 of 2,341 staff to work without pay while projects are curtailed.
US politics
fromTheregister
2 weeks ago

Trump wants to slash $707M from CISA's budget

CISA faces a proposed $707 million budget cut, risking national cybersecurity and critical infrastructure management.
fromwww.dw.com
3 weeks ago

Nationwide raids after Berlin arson attack cut power to many

Today's searches show that we pursue every lead with the highest priority. Anyone who attacks our critical infrastructure attacks the security of our entire city. We will not accept that.
Germany news
fromThe Cipher Brief
1 month ago

GPS Denied: Time to Upgrade

On February 28, ships navigating the Strait of Hormuz started appearing on tracking screens in places they couldn't possibly be. They appeared to be sitting on airport runways, parked on Iranian land, and clustered at nuclear power plants. More than 1,100 commercial vessels had their navigation systems scrambled in a single day following US-Israeli airstrikes on Iran, bringing a waterway that handles a fifth of the world's oil exports to a halt.
Science
fromNextgov.com
1 month ago

Stryker hack could set stage for more pro-Iran cyber sabotage

The reported wiper attack ... may represent a similar dynamic, an early signal of activity that could expand beyond a single target. Organizations need to assume that attackers will gain a foothold and focus on proactively shutting down the attack paths adversaries rely on to escalate privileges, move laterally and expand their impact.
Information security
US news
fromMail Online
1 month ago

New Jersey drone scare explodes again as police files reveal truth

Newly released documents reveal New Jersey police documented dozens of incidents involving large unidentified drones operating near critical infrastructure, military facilities, and restricted airspace throughout 2024.
#cyberattacks
Information security
fromSecuritymagazine
1 month ago

Iran Conflict and Cybersecurity: What to Expect in the Next 30 Days

U.S. cyber defenders should expect retaliatory cyberattacks from Iranian state actors and hacktivists targeting critical infrastructure, financial services, healthcare, and media outlets within the next 30 days.
Information security
fromNextgov.com
1 month ago

Iran-linked hacktivists could target governments, experts warn

Iranian regime-aligned hacktivists may escalate cyberattacks against U.S. state and local government targets, financial services, and energy sectors in retaliation for military operations.
fromDataBreaches.Net
1 month ago
Privacy technologies

Top NATO allies believe cyberattacks on hospitals are an act of war. They're still struggling to fight back. - DataBreaches.Net

Information security
fromSecuritymagazine
1 month ago

Iran Conflict and Cybersecurity: What to Expect in the Next 30 Days

U.S. cyber defenders should expect retaliatory cyberattacks from Iranian state actors and hacktivists targeting critical infrastructure, financial services, healthcare, and media outlets within the next 30 days.
Information security
fromNextgov.com
1 month ago

Iran-linked hacktivists could target governments, experts warn

Iranian regime-aligned hacktivists may escalate cyberattacks against U.S. state and local government targets, financial services, and energy sectors in retaliation for military operations.
fromDataBreaches.Net
1 month ago
Privacy technologies

Top NATO allies believe cyberattacks on hospitals are an act of war. They're still struggling to fight back. - DataBreaches.Net

Venture
fromComputerWeekly.com
1 month ago

Ericsson, Future Technologies scale wireless infrastructure for industrial AI | Computer Weekly

Ericsson and Future Technologies Venture expand collaboration to deploy enterprise wireless and private 5G networks across North American industrial and critical infrastructure sectors to support AI-driven operations.
Artificial intelligence
fromwww.theguardian.com
1 month ago

Datacenters are becoming a target in warfare for the first time

Iran deliberately targeted commercial datacenters in the Persian Gulf, marking the first known instance of a country at war striking commercial datacenters, causing widespread service disruptions across the UAE and Bahrain.
Information security
fromThe Hacker News
1 month ago

CISA Flags SolarWinds, Ivanti, and Workspace One Vulnerabilities as Actively Exploited

CISA added three actively exploited vulnerabilities to its KEV catalog, including critical flaws in SolarWinds Web Help Desk, Omnissa Workspace One UEM, and Ivanti Endpoint Manager, with federal agencies required to patch by mid-to-late March 2026.
fromFortune
1 month ago

The Persian Gulf's 'saltwater kingdoms' rely so much on desalination that damage to the infrastructure could force evacuations | Fortune

In Kuwait, about 90% of drinking water comes from desalination, along with roughly 86% in Oman and about 70% in Saudi Arabia. The technology removes salt from seawater - most commonly by pushing it through ultrafine membranes in a process known as reverse osmosis - to produce the freshwater that sustains cities, hotels, industry and some agriculture across one of the world's driest regions.
World news
World news
fromwww.theguardian.com
1 month ago

It means missile defence on data centres': drone strikes raises doubts over Gulf as AI superpower

Iranian drones struck Amazon Web Services datacentres in the UAE and Bahrain, causing widespread civilian disruption and marking the first deliberate targeting of commercial datacentres by armed forces during active conflict.
Tech industry
fromBusiness Insider
1 month ago

Big Tech's new reality: Data centers are a war target

Drone strikes on Amazon data centers in the Middle East mark the first direct military targeting of Big Tech infrastructure, establishing data centers as critical warfare targets.
Information security
fromSecurityWeek
1 month ago

Iranian APT Hacked US Airport, Bank, Software Company

Iranian APT MuddyWater compromised networks across US aerospace, defense, banking, and NGO sectors, deploying new backdoors Dindoor and Fakeset amid regional military tensions.
#cyber-attacks
Information security
fromComputerWeekly.com
1 month ago

Iranian hacktivists muster their forces but state APTs lay low | Computer Weekly

Pro-Iran hacktivist groups have intensified cyber attacks across Middle Eastern infrastructure, including breaches at Saudi energy facilities and GPS spoofing attacks affecting over 1,000 Persian Gulf ships during escalating regional conflict.
Information security
fromComputerWeekly.com
1 month ago

Iranian hacktivists muster their forces but state APTs lay low | Computer Weekly

Pro-Iran hacktivist groups have intensified cyber attacks across Middle Eastern infrastructure, including breaches at Saudi energy facilities and GPS spoofing attacks affecting over 1,000 Persian Gulf ships during escalating regional conflict.
World news
fromIntelligencer
1 month ago

The Future of War Is Drones Bombing Data Centers

Iranian drone strikes on data centers in the UAE and Bahrain demonstrate a new warfare strategy targeting critical digital infrastructure, causing cascading internet outages across multiple regions and affecting major global companies.
SF politics
fromIrish Independent
1 month ago

Dail to vote on designating building projects as 'critical' before they are fast tracked through planning process

The Dáil will vote on designating building projects as 'critical' before the Government fast-tracks them through the planning process.
fromDataBreaches.Net
1 month ago

Wisconsin k-12 district hit by weeklong outage - DataBreaches.Net

A reported "cyber incident" left the Denmark School District in the Village of Denmark, Wisconsin, without internet access for five school days, forcing teachers and students to rely on paper-based workarounds, according to a local news report.
Information security
Privacy professionals
fromDataBreaches.Net
1 month ago

Shutdown Stalls Compliance Plans for Cyber Breach Reporting Rule - DataBreaches.Net

A partial government shutdown delays the DHS cybersecurity incident reporting rule, leaving companies uncertain about compliance requirements and enforcement timelines.
Information security
fromSecurityWeek
1 month ago

In Other News: ATT&CK Advisory Council, Russian Cyberattacks Aid Missile Strikes, Predator Bypasses iOS Indicators

Predator spyware suppresses iOS indicators through kernel-level access, Russian cyberattacks on Ukraine's energy grid gather intelligence for missile targeting, and Treasury launches AI cybersecurity initiative for financial services.
fromTheregister
1 month ago

Open Source Endowment aims to raise big pile of money

Free open source software is fundamentally broken. In 2023, Denis Pushkarev, maintainer of the widely used core-js library, vented his frustration with the fact that users of his software seldom offer financial support, highlighting the disconnect between widespread dependency on open source and inadequate financial compensation for developers maintaining critical infrastructure.
Miscellaneous
Information security
fromTechCrunch
1 month ago

Cisco says hackers have been exploiting a critical bug to break into big customer networks since 2023 | TechCrunch

Cisco discovered a critical vulnerability in Catalyst SD-WAN products exploited since 2023, allowing remote attackers maximum-level network access and persistent hidden infiltration of enterprise and government networks.
Information security
fromComputerWeekly.com
1 month ago

Cisco Catalyst SD-WAN users targeted in series of cyber attacks | Computer Weekly

UK and Five Eyes agencies warn of active threat campaigns targeting Cisco Catalyst SD-WAN products, requiring immediate investigation and patching of critical authentication bypass vulnerabilities.
Mental health
fromSecuritymagazine
2 months ago

Security Insights Delivered Through Podcasts

Security professionals face significant mental-health risks and team burnout, requiring leaders to integrate empathetic practices and psychological safety into security operations.
fromTheregister
2 months ago

China-linked crew embedded in US energy networks

In its yearly cybersecurity report, Dragos said state-sponsored crews haven't let up on their attempts to compromise America's critical infrastructure, with three new OT-focused threat groups joining the fray. This brings the total number worldwide to 26, and of these, 11 were active in 2025. Additionally, an existing group that Dragos tracks as Voltzite and is "highly correlated" with Volt Typhoon, according to Dragos CEO Robert M. Lee, kept up its intrusion activities last year.
Information security
Information security
fromSecurityWeek
2 months ago

3 Threat Groups Started Targeting ICS/OT in 2025: Dragos

Three new threat groups—Sylvanite, Azurite, and Pyroxene—began targeting ICS and OT in 2025, expanding threats to critical infrastructure globally.
fromTheregister
2 months ago

Misconfigured AI could shut down a G20 nation, says Gartner

Unlike traditional software bugs that might crash a server or scramble a database, errors in AI-driven control systems can spill into the physical world, triggering equipment failures, forcing shutdowns, or destabilizing entire supply chains, Gartner warns. "The next great infrastructure failure may not be caused by hackers or natural disasters but rather by a well-intentioned engineer, a flawed update script, or a misplaced decimal," cautioned Wam Voster, VP Analyst at Gartner.
Artificial intelligence
Information security
fromThe Hacker News
2 months ago

ThreatsDay Bulletin: AI Prompt RCE, Claude 0-Click, RenEngine Loader, Auto 0-Days & 25+ Stories

Attackers increasingly exploit trusted tools, simple entry points, and overlooked exposures to maintain persistent, value-driven access across cybercrime and espionage.
Miscellaneous
fromwww.dw.com
2 months ago

EU ups drone cooperation amid hybrid threats

EU adopts a comprehensive counter-drone strategy to strengthen detection, coordination, industry capacity, and civil-military cooperation to protect critical infrastructure and borders.
#cyber-espionage
Information security
fromTechCrunch
2 months ago

China's Salt Typhoon hackers broke into Norwegian companies | TechCrunch

Chinese-backed hacking group Salt Typhoon breached multiple Norwegian organizations, exploiting vulnerable network devices to conduct espionage.
Information security
fromTechzine Global
2 months ago

BICS and Anapaya deliver new secure SCION networks worldwide

BICS and Anapaya will deploy SCION worldwide to give organizations direct control over data traffic and enable secure, compliant cross-border connectivity.
#cyberwarfare
Information security
fromNextgov.com
2 months ago

NIST releases a new draft cybersecurity framework for systems that never stop moving

Transportation cybersecurity lags behind other critical infrastructure sectors, creating evacuation and public-safety risks as transit systems become more digitalized.
Germany news
fromThe Local Germany
2 months ago

Germany to strenghten critical infrastructure as Russia fears spike

Germany will require about 1,700 essential service providers to strengthen security, conduct risk assessments, and promptly report incidents to protect critical infrastructure from sabotage.
Information security
fromNextgov.com
2 months ago

Building government resilience in an era of AI-driven cyberattacks

Governments must rapidly transform defenses to counter escalating, stealthy AI-driven cyberattacks and prepare for destructive operations targeting critical infrastructure.
fromSecurityWeek
2 months ago

Indurex Emerges From Stealth to Close Security Gap in Cyber-Physical Systems

The Indurex platform ingests and correlates data from multiple sources across the cyber-physical stack, with a strong focus on industrial historians, instrumentation and asset management systems (IAMS), alarm management, and OT network and endpoint data. The platform, which can be integrated with third-party OT security solutions, is designed to unify cyber, process, and safety context into a single operational view, using adaptive risk scoring to highlight issues and prioritize response actions.
Information security
Information security
fromSecuritymagazine
2 months ago

Grid Protection in Severe Weather: What Security Leaders Need to Know

A major winter storm severely strained U.S. power systems, creating disruptions that cybercriminals exploited by targeting existing infrastructure weaknesses.
Information security
fromArs Technica
2 months ago

Wiper malware targeted Poland energy grid, but failed to knock out electricity

Poland's electric grid was targeted by wiper malware likely deployed by Russia-aligned Sandworm, aiming to disrupt communications between renewables and power operators but failing.
Information security
fromArs Technica
6 years ago

New clues show how Russia's grid hackers aimed for physical destruction

Russian hackers aimed to cause lasting physical destruction to Ukrainian power-grid equipment by using malware designed to damage hardware during recovery, not a brief outage.
World news
fromWIRED
3 months ago

US Hackers Reportedly Caused a Blackout in Venezuela

The U.S. conducted a cyberattack that caused a Venezuelan power blackout and disabled air-defense radar during Operation Absolute Resolve.
fromThe Hacker News
3 months ago

China-Linked APT Exploits Sitecore Zero-Day in Attacks on American Critical Infrastructure

Cisco Talos, which is tracking the activity under the name UAT-8837, assessed it to be a China-nexus advanced persistent threat (APT) actor with medium confidence based on tactical overlaps with other campaigns mounted by threat actors from the region. The cybersecurity company noted that the threat actor is "primarily tasked with obtaining initial access to high-value organizations," based on the tactics, techniques, and procedures (TTPs) and post-compromise activity observed.
Information security
fromFortune
3 months ago

AI will infiltrate the industrial workforce in 2026-let's apply it to training the next generation, not replacing them | Fortune

A silent crisis is shaking the very foundations of modern society. The industrial workforce responsible for building the global economy is at risk of crumbling. The people charged with keeping our power grids online, factories humming, utilities reliable, and supply chains moving uninterrupted are retiring at a fast clip. Sure, this may seem like the natural cycle of things as mass retirement opens the door to at least 3.8 million jobs.
Artificial intelligence
Berlin
fromwww.dw.com
3 months ago

Berlin blackouts cast light on infrastructure in Germany DW 01/10/2026

A January arson-caused blackout in southwestern Berlin revealed failures in emergency response, communication, and preparedness, leaving thousands, including vulnerable residents, without adequate support.
Information security
fromAxios
3 months ago

Maduro raid had telltale signs of a cyber-enabled blackout

U.S. Cyber Command and Space Command supported a targeted operation in Venezuela that produced selective, immediate blackouts to facilitate an action against the president.
fromTechzine Global
3 months ago

Cybersecurity in 2026 demands managing human behavior and agentic AI

In organizations with mature processes, this demonstrably leads to a 30 to 50 percent reduction in mean time to respond. This is not an optimization, but a necessary adjustment. The question is no longer whether AI agents will be deployed, but how far their autonomy extends. Security teams must explicitly determine which decisions can be automated and where human oversight remains mandatory. If these frameworks are lacking, the risks only increase.
Artificial intelligence
UK politics
fromTheregister
3 months ago

UK urged to cut out US Big Tech for sake of digi sovereignty

The UK relies heavily on US tech companies for critical digital infrastructure, risking national digital sovereignty and requiring the Cybersecurity and Resilience Bill to reduce dependency.
fromTheregister
3 months ago

UK government unveils 210M plan for cybersecurity overhaul

The funding will establish a Government Cyber Unit, led by the UK's CISO and overseen by the Department for Science, Innovation and Technology (DSIT), to improve risk identification, incident response, and recovery capabilities. The unit will also create a dedicated Government Cyber Profession, elevating cybersecurity from its current placement under the broader Government Security Profession.
UK politics
[ Load more ]