news.mlab.sh
Back to the feed
threat-intel

This month in security with Tony Anscombe – August 2026 edition

High
Summary

This month’s security roundup highlights a concerning trend of attacks targeting critical infrastructure, including a sophisticated campaign by Iran-linked hackers against US water and power systems, alongside a separate incident involving a spoofed Wi-Fi network on a Delta Airlines flight and a large-scale crackdown on fraudulent call centers in Ukraine. These events underscore the growing need for robust defenses and vigilance against malicious actors.

This month’s security roundup focuses on several significant cybersecurity incidents.

What happened

Iranian-linked hackers launched a coordinated attack against critical infrastructure in at least 12 US states during July 2026, causing a four-day shutdown of a power plant. The attacks targeted water and wastewater systems, raising serious concerns about the vulnerability of these essential services.

Delta Airlines is investigating an incident where a passenger used an unidentified device to spoof the airline’s in-flight Wi-Fi network, potentially compromising passenger data and network security.

Ukrainian authorities have dismantled 94 fraudulent call centers operating scams that aimed to steal banking information from victims. These call centers were targeting individuals with promises of lucrative investments.

Technical details

  • **Iran-linked attacks:** The attacks against US infrastructure likely involved exploiting vulnerabilities in industrial control systems (ICS) and supervisory control and data acquisition (SCADA) systems. Specific details on the exploited vulnerabilities are currently unknown, but the attacks demonstrate a targeted approach against critical systems.
  • **Delta Airlines spoofing:** The incident with Delta Airlines suggests a potential weakness in the airline’s Wi-Fi authentication process, allowing unauthorized access to the network. The exact device used for spoofing and the extent of data compromise are still under investigation.
  • **Ukrainian call centers:** The call centers were operating under false pretenses, luring victims into fraudulent investment schemes and attempting to steal banking credentials.

Impact

The attacks on US water and power systems represent a significant risk to public safety and economic stability. The disruption of a power plant highlights the potential for cascading failures and widespread outages. The fraudulent call centers have resulted in substantial financial losses for victims and eroded trust in financial institutions.

What to do

  • **Critical Infrastructure:** Implement enhanced security measures for ICS/SCADA systems, including regular vulnerability assessments, intrusion detection systems, and strict access controls. Conduct penetration testing and red teaming exercises.
  • **Delta Airlines:** Review and strengthen Wi-Fi authentication protocols to prevent spoofing attacks. Implement network monitoring to detect anomalous activity.
  • **Call Centers:** Strengthen KYC (Know Your Customer) procedures and implement robust fraud detection systems. Increase collaboration between law enforcement and financial institutions.

Why it matters

The incidents demonstrate a growing trend of state-sponsored and criminal actors targeting critical infrastructure and exploiting vulnerabilities to achieve strategic and financial goals. These attacks necessitate a proactive and layered approach to cybersecurity, with a focus on resilience and collaboration across sectors.

Read the full article at WeLiveSecurity