threat-intel New York Awards $9 Million to Strengthen Cybersecurity at 153 Water Systems New York is investing $9 million to bolster cybersecurity at 153 water and wastewater systems, following a coordinated cyberattack targeting over 30 community water systems in Minnesota and subsequent incidents in at lea… SecurityWeek · Aug 4, 2026 Medium IRSOUNcyberattackindustrial control systemswater infrastructure
threat-intel CISA Urges Water Sector to Protect OT After Coordinated Attacks on PLCs The CISA is urging water and wastewater systems to rapidly secure their operational technology (OT), specifically programmable logic controllers (PLCs), following a coordinated cyberattack in Minnesota that disrupted aut… SecurityWeek · Jul 30, 2026 High IRplcotcyberattack
vulnerability Rockwell Automation CompactLogix 5380 ControlLogix 5580 / 1756-EN4TR Communications Module A vulnerability exists in Rockwell Automation's CompactLogix, ControlLogix, and GuardLogix communication modules (specifically the 1756-EN4TR module) due to improper certificate revocation handling. An attacker could exp… CISA Advisories · Jul 30, 2026 High CVE-2026-9636certificate revocationcip securityindustrial control systems
threat-intel Open Source Software: Security Principles and Practices The CISA released guidance on securing open source software (OSS) usage across various systems, including critical infrastructure. This guidance focuses on a comprehensive approach to OSS risk management, covering everyt… CISA Advisories · Jul 30, 2026 Info open sourceossvulnerability
threat-intel CISA Urges Water and Wastewater Systems Sector to Protect OT Against Activity Targeting PLCs The CISA is warning the Water and Wastewater Systems sector about a significant increase in cyberattacks targeting Programmable Logic Controllers (PLCs). Threat actors are modifying passwords to lock out operators and di… CISA Advisories · Jul 30, 2026 High plccybersecurityoperational technology
threat-intel o6 Automation open62541 Multiple vulnerabilities have been identified in o6 Automation open62541, a control system software, potentially allowing for denial of service, arbitrary code execution, and information disclosure. These vulnerabilities… CISA Advisories · Jul 30, 2026 Critical CVE-2026-63362CVE-2026-65423CVE-2026-63035vulnerabilitycontrol-systemcisa
vulnerability Siemens Mendix Runtime A gap in Siemens Mendix Runtime documentation regarding access rules for the System.User entity has been identified, potentially leading developers to apply overly permissive access rules, exposing sensitive user data an… CISA Advisories · Jul 28, 2026 Critical CVE-2026-7891mendixaccess-controlindustrial-control-systems
vulnerability MikroTik RouterOS and Cloud Hosted Router A critical vulnerability (CVE-2026-16347) exists in MikroTik RouterOS and Cloud Hosted Router, allowing attackers to rapidly guess passwords and gain unauthorized access by repeatedly attempting logins. No fix is current… CISA Advisories · Jul 28, 2026 Critical CVE-2026-16347vulnerabilitypassword-crackingapi
vulnerability Siemens SIMATIC S7-PLCSIM Advanced A vulnerability in Siemens SIMATIC S7-PLCSIM Advanced could allow an unauthenticated attacker to cause a denial-of-service condition by overwhelming the application with high-volume multicast network traffic. Siemens is… CISA Advisories · Jul 28, 2026 High CVE-2026-54429DEindustrial control systemscve-2026-54429denial of service
vulnerability igloohome Smart Lock Mobile Application A vulnerability in the igloohome Smart Lock Mobile Application (Android 3.2.3) allows an unauthorized actor to access backend services. This could enable access to sensitive functionality and potentially compromise the s… CISA Advisories · Jul 28, 2026 Medium CVE-2026-16581vulnerabilitycwe-540smart lock
vulnerability Arista patches actively exploited VeloCloud bug as CISA puts admins on the clock Arista Networks has patched a vulnerability in its VeloCloud software that was being actively exploited. The CISA (Cybersecurity and Infrastructure Security Agency) issued an advisory urging administrators to address the… The Register · Jul 28, 2026 High CVE-2026-16812patchvulnerabilitynetwork
vulnerability Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day Arista Networks has released patches for a critical zero-day vulnerability in its VeloCloud Orchestrator, which has been actively exploited in the wild. The flaw allows remote access to privileged functionality, and no s… SecurityWeek · Jul 28, 2026 Critical CVE-2026-16812CVE-2025-68686CVE-2022-42475zero-daypatchvulnerability
vulnerability Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw A maximum-severity command injection vulnerability (CVE-2026-16812) in Arista VeloCloud Orchestrator (VCO) has been actively exploited in the wild, allowing remote code execution and potential access to VeloCloud Edge de… The Hacker News · Jul 28, 2026 Critical CVE-2026-16812CVE-2025-68686CVE-2026-16723command injectionvcocisa
vulnerability Johnson Controls XAAP Android A vulnerability exists in the Johnson Controls XAAP Android application, version 1.53 and earlier. Attackers with physical access to a device could potentially read sensitive data stored locally without encryption. This… CISA Advisories · Jul 23, 2026 High CVE-2026-34490vulnerabilityandroidcleartext storage
vulnerability MZ Automation lib60870 A vulnerability in MZ Automation lib60870, version 2.4.0 and earlier, allows for a denial-of-service attack through an out-of-bounds read. This affects critical infrastructure sectors like chemical, energy, and water/was… CISA Advisories · Jul 23, 2026 Medium CVE-2026-16002GEout-of-boundsdenial of servicecisa
vulnerability MZ Automation libIEC61850 MZ Automation libIEC61850 versions 1.0.0 through 1.6.1 are vulnerable to several stack and heap-based buffer overflows, potentially allowing an unauthenticated attacker to crash critical IEC 61850 services or execute arb… CISA Advisories · Jul 23, 2026 High CVE-2026-50039CVE-2026-49035CVE-2026-50103iec61850buffer overflowindustrial control systems
threat-intel Extension of CISA 2015 info-sharing protections passes as part of House’s defense bill The House of Representatives passed a bill extending the 2015 Cybersecurity and Information Sharing Act (CISA 2015) for another decade as part of a larger defense bill. This extension provides legal protections for the p… The Record · Jul 22, 2026 Medium cisacybersecurityinformation sharing
vulnerability Rockwell Automation FactoryTalk Services Platform Rockwell Automation has issued a security advisory regarding a vulnerability in its FactoryTalk Services Platform (FTSP) version 6.60. An attacker could impersonate an authorized user by bypassing JWT signature validatio… CISA Advisories · Jul 21, 2026 High CVE-2026-10714vulnerabilityftpcisa
vulnerability Rockwell Automation 1734 POINT I/O Rockwell Automation’s 1734 POINT I/O module is vulnerable to a denial-of-service attack due to improper handling of crafted CIP messages, potentially causing a system fault and requiring a restart. CISA urges organizatio… CISA Advisories · Jul 21, 2026 Medium CVE-2026-10573USvulnerabilitydenial-of-servicecontrol systems
vulnerability Rockwell Automation 1718-AENTR/1719-AENTR Rockwell Automation has issued a security advisory regarding a denial-of-service vulnerability in its 1718-AENTR and 1719-AENTR products. Exploitation could lead to a denial-of-service condition, requiring a power cycle… CISA Advisories · Jul 21, 2026 High CVE-2026-9140USdenial-of-servicecontrol systemsrockwell automation