vulnerability Schneider Electric EasyLogic T150 and Saitel DP This advisory details a vulnerability (CVE-2026-6865) affecting Schneider Electric’s EasyLogic T150 and Saitel DP Remote Terminal Units & Controllers. The vulnerability, a CWE-22 ‘Path Traversal’ flaw, allows an attacker… CISA Advisories · Jun 18, 2026 High CVE-2026-6865FRpath traversalfirmwareremote terminal unit
vulnerability Schneider Electric Easergy, EcoStruxture, PowerLogic, and Saitel Products Schneider Electric has identified a vulnerability (CVE-2026-4827) in several of its industrial automation products, including Easergy, EcoStruxture, PowerLogic, and Saitel systems. The vulnerability, a CWE-331 Insufficie… CISA Advisories · Jun 18, 2026 High CVE-2026-4827upsindustrial controlsession management
threat-intel Hostile states behind three-quarters of attacks on Britain's critical infrastructure, cyber chief warns This article reports that the UK’s cyber chief, Richard Horne, has shifted the government’s approach to cybersecurity, framing it as a ‘contest’ against hostile state actors rather than a ‘risk’ to be managed. He reveale… The Record · Jun 17, 2026 High CHUKstate-sponsoredcritical infrastructurecyber conflict
threat-intel AI Use by the US Government This article details the widespread and largely undocumented use of Artificial Intelligence (AI) by the US government under both the Trump and Biden administrations. The Office of Management and Budget (OMB) revealed a m… Schneier on Security · Jun 17, 2026 Medium USaigovernmentautomation
threat-intel Protecting legacy OT systems against modern cyberthreats The article highlights a growing and increasingly serious cybersecurity threat to manufacturing operations, particularly due to the convergence of IT and OT systems. Despite a long history of neglecting OT security, rans… WeLiveSecurity · Jun 17, 2026 High UKot securitylegacy systemsransomware
vulnerability Rockwell Automation RSLinx Rockwell Automation has issued a security advisory regarding a vulnerability in its RSLinx Classic software. The flaw, a stack-based buffer overflow (CVE-2020-13573), allows for remote code execution and could lead to de… CISA Advisories · Jun 16, 2026 High CVE-2020-13573WObuffer overflowremote code executioncve-2020-13573
threat-intel Who Runs the Ransomware Group ‘The Gentlemen?’ The Gentlemen, a prolific ransomware group, is being led by a Russian individual known as Zeta88/Hastalamuerte. Extensive investigation by Check Point and Intel 471 has revealed that this administrator, whose real identi… Krebs on Security · Jun 10, 2026 High RUransomwarerandsomware-as-a-servicerussian cybercrime
vulnerability Schneider Electric Modicon Network Managed Switches Schneider Electric has identified a vulnerability (CVE-2024-3596) in its Modicon Network Managed Switches due to a misconfigured RADIUS protocol. Specifically, disabling the RADIUS Server Message Authenticator option mak… CISA Advisories · Jun 9, 2026 High CVE-2024-3596WOradiuscvesecurity
vulnerability Schneider Electric EcoStruxure Panel Server Schneider Electric has identified a vulnerability in its EcoStruxure Panel Server product line, specifically versions prior to 002.006.000. This vulnerability, classified as CWE-1188, allows for potential unauthorized au… CISA Advisories · Jun 9, 2026 High CVE-2026-6866FRcwe-1188firmwareauthentication
vulnerability Siemens KACO Blueplanet Inverters This advisory from CISA details vulnerabilities within Siemens KACO Blueplanet Inverters, a series of industrial inverters used in energy systems. The vulnerabilities, specifically a CRC16-based algorithm for generating… CISA Advisories · Jun 9, 2026 High CVE-2025-40946CVE-2026-41125WOindustrial control systemsvulnerabilityauthentication
threat-intel Iran Signed a Ceasefire — Its Hackers Didn't This Dark Reading article discusses the ongoing cyber warfare between Iran and the United States, highlighting a significant loophole in international conflict rules. Following a ceasefire extension, U.S. agencies warned… Dark Reading · Jun 8, 2026 High IRUSIScyberwarfarecritical infrastructureiran
threat-intel Anthropic Urges Industry Coordination to Allow for a ‘Pause’ in AI Development if Risks Grow Anthropic is advocating for a global pause in the development of advanced AI systems due to concerns about rapidly increasing capabilities and the potential for losing control. The company proposes coordinated action amo… SecurityWeek · Jun 8, 2026 High CAartificial intelligenceai safetycybersecurity
threat-intel Exposed Fuel Tank Gauges Under Attack in the US Internet-exposed fuel tank gauges in the United States are being targeted by cyberattacks, posing a significant risk to gas stations and industrial facilities. The Cybersecurity and Infrastructure Security Agency (CISA)… Dark Reading · Jun 5, 2026 High USCAAUindustrial control systemscybersecuritytank gauges
threat-intel Over 900 US gas station tank gauge systems exposed to attacks Over 900 US gas station tank gauge systems are vulnerable to ongoing attacks due to internet exposure and security flaws. Threat actors are exploiting these systems to potentially alter settings and cause operational dis… BleepingComputer · Jun 5, 2026 High USatgindustrial control systemscybersecurity
threat-intel EU unveils tech sovereignty package to cut reliance on US, Chinese suppliers The European Commission has unveiled a comprehensive tech sovereignty package designed to reduce the EU’s reliance on foreign technology suppliers, particularly the US and China. This initiative includes legislation focu… The Record · Jun 5, 2026 Medium EUUSCHtech sovereigntyeuropean unionsemiconductors
threat-intel In Other News: Anthropic Maps AI Threats, Unpatched Comodo Flaw, Palantir Chief Eyed for CISA This week’s cybersecurity news highlights a range of threats, including AI-powered attacks targeting computing power, ongoing Grandoreiro banking trojan campaigns, and a self-propagating ransomware group utilizing obfusc… SecurityWeek · Jun 5, 2026 High IRUSairansomwaresupply chain
vulnerability Hitachi Energy RTU500 This advisory details vulnerabilities within Hitachi Energy’s RTU500 product, specifically CMU Firmware versions 12.7.1 through 13.8.1. These vulnerabilities, primarily CWE-476 (NULL Pointer Dereference) and CWE-190 (Int… CISA Advisories · Jun 4, 2026 Medium CVE-2025-69421CVE-2026-24515CVE-2026-25210WOcwe-476cwe-190denial-of-service
vulnerability Hitachi Energy MACH HiDraw A buffer overflow vulnerability has been identified in Hitachi Energy’s MACH HiDraw product versions up to 9.22. Exploitation of this flaw could lead to denial-of-service attacks and potential arbitrary code execution, i… CISA Advisories · Jun 4, 2026 High CVE-2026-7310USbuffer overflowxml parserindustrial control systems
vulnerability B&R PPT30 Operating System A vulnerability, CVE-2025-11482, has been identified in B&R PPT30 Operating System versions prior to 1.8.0, specifically within the OPC-UA Server. An unauthenticated network-based attacker could exploit this flaw to perm… CISA Advisories · Jun 4, 2026 High CVE-2025-11482WOopcuafirmwarenetwork-based
vulnerability Hitachi Energy ITT600 Explorer Hitachi Energy has identified vulnerabilities in its ITT600 Explorer product, specifically versions prior to 2.1 SP6, which could lead to Denial of Service (DoS) attacks. The vulnerabilities stem from a stack overflow in… CISA Advisories · Jun 4, 2026 High CVE-2024-8176CVE-2025-59375SWiec61850denial of servicelibexpat