threat-intel You Need Cyber Deception for OT Operational Technology (OT) systems present a significant challenge for cybersecurity due to the lack of traditional security telemetry and the difficulty in tracing attacker activity after they move from IT networks into OT environments. Cyber deception offers a solution by creating realistic decoys and traps that exp… Dark Reading · 2d ago High UKcyber deceptionot securitythreat intelligence
threat-intel Cyberattaque : des hackers font tomber des réseaux électriques ! A cyberattack attributed to Iranian-linked actors has reportedly disabled a small British power generation facility for four days, marking the first time a complete shutdown of such an installation has occurred in the UK… ZATAZ · 2d ago High IRUKUNcyberattackcritical infrastructureiran
threat-intel White House bans foreign-made equipment for power generation over cyber backdoor concerns The White House has issued an executive order banning the acquisition of foreign-made equipment for power generation above 69,000 volts, citing concerns about potential cyber backdoors and malicious access by foreign gov… The Record · 2d ago High IRRUCHcybersecuritycritical infrastructurestate-sponsored hacking
threat-intel Finland appeals court revives case against Eagle S Officers over cable breaks A Finnish appeals court has reversed a previous decision and ruled that Finland has jurisdiction to prosecute the three senior officers of the Russian-linked oil tanker Eagle S for damaging subsea cables in the Baltic Se… The Record · 3d ago High FIGEINcybersecuritycable damagerussian threat
supply-chain Trump Order Aims to Block Foreign Backdoors in US Power Grid Gear President Trump issued Executive Order 14420 to address potential vulnerabilities in the US power grid stemming from foreign-supplied equipment. The order aims to prevent sabotage, unauthorized access, and supply disrupt… SecurityWeek · 3d ago High supply chainpower gridforeign equipment
threat-intel DOJ firearms agency says hackers breached system containing investigation targets The Bureau of Alcohol, Tobacco, and Firearms (ATF), a part of the Department of Justice, suffered a cyberattack that exposed information about ongoing investigations. The attack was carried out by the Qilin ransomware ga… The Record · 3d ago High ransomwarecyberattackjustice department
vulnerability Applied Systems Engineering ASE2000 V2 Communications Test Set Applied Systems Engineering’s ASE2000 V2 Communications Test Set versions 2.25 through 2.37 are vulnerable to two separate attacks. The first stems from an improper XML External Entity Reference (CWE-611) due to a Log4Ne… CISA Advisories · 3d ago High CVE-2018-1285CVE-2026-18717log4netxml external entitycertificate validation
threat-intel FBI seizes hacking tools it says China used to attack NASA, DOE, US Senate and other critical networks The FBI has seized hacking tools believed to have been used by Chinese state actors to target critical US infrastructure, including NASA, the Department of Energy, and the US Senate. These tools were used to conduct reco… The Register · 3d ago High CVE-2019-11510CVE-2019-19781CHcyber espionagestate-sponsoredcritical infrastructure
threat-intel U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches The U.S. Treasury has imposed fresh sanctions on nearly 60 Iran-linked entities, including individuals and vessels, as part of "Operation Economic Outcast." These sanctions target a cyber group affiliated with Iran's Min… The Hacker News · 4d ago High IRUKsanctionscyber espionagecritical infrastructure
threat-intel UK government seeks powers to secretly block risky tech suppliers The UK government is seeking new powers to secretly block technology suppliers deemed to pose a national security risk, particularly to critical sectors like energy, water, and transport. These powers, modeled after thos… The Record · 5d ago High UKnational securitycybersecurityvendor risk
vulnerability Ebyte NE2-D11 A CISA advisory highlights critical vulnerabilities in Ebyte NE2-D11 devices, primarily due to a lack of consistent authentication enforcement and cleartext transmission of sensitive information. The vendor, Ebyte, has n… CISA Advisories · 5d ago High CVE-2026-73125CVE-2026-73809CVE-2026-73839CHvulnerabilityauthenticationencryption
vulnerability Siemens SIMATIC IoT2050 Advanced A vulnerability in Siemens SIMATIC IoT2050 Advanced devices running Industrial OS with Node-RED installed allows unauthenticated remote attackers to create malicious flows and execute arbitrary code on the underlying ser… CISA Advisories · 5d ago Critical CVE-2026-58115vulnerabilityindustrial control systemsnode-red
threat-intel US sanctions Iranian cyber actors as UK discloses power plant attack The U.S. has sanctioned several Iranian nationals linked to a hacking operation targeting U.S. critical infrastructure, following a recent cyberattack on a small power plant in the UK. This escalation highlights Iran's c… The Record · 5d ago High IRUNUKcyberattackcritical infrastructureiran
threat-intel Iran-linked cyberattack shut down a UK power plant A cyberattack linked to Iran has successfully taken down a UK power plant control system. The attack exploited vulnerabilities in the system, allowing attackers to gain unauthorized access and disrupt operations. This hi… The Register · 6d ago High UKIRcyberattackcritical infrastructureiran
threat-intel ⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More This week saw a surge in high-impact cyberattacks and vulnerabilities, highlighting the increasing sophistication and speed of threat actors. AI is now being weaponized to craft exploit scripts targeting Siemens PLCs, wh… The Hacker News · 6d ago High CVE-2026-19478CVE-2021-27101CVE-2023-34362UNRUvulnerabilitysupply-chainransomware
threat-intel Iran-Linked Hackers Shut Down UK Power Plant for Four Days Iranian-linked hackers successfully shut down a British power plant for four days, raising significant concerns about the escalating cyber threat landscape and the vulnerability of UK critical infrastructure. The inciden… SecurityWeek · 6d ago High UKIRUSirancyberattackcritical infrastructure
threat-intel AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure A U.S. government advisory warns of an active threat targeting critical infrastructure organizations, specifically Siemens S7 PLCs, utilizing AI-generated exploit scripts. Threat actors are leveraging internet scanning t… The Hacker News · Aug 20, 2026 High USCHplcindustrial control systemics
vulnerability Johnson Controls Simplex Incident Manager A critical vulnerability in Johnson Controls Simplex Incident Manager allows a local attacker with low privileges to extract user credentials (passwords and authentication tokens) from system memory, potentially leading… CISA Advisories · Aug 20, 2026 Critical CVE-2026-27875memory-dumpingcredential theftbuilding automation
threat-intel AI-Assisted Tool Helped Secure Satellite Communication System After 2022 Russian Hacking Atalanta has developed ‘Argo,’ an AI-assisted tool designed to proactively identify vulnerabilities in software and internet-connected systems, specifically to bolster defenses against ongoing cyber threats from Russia a… SecurityWeek · Aug 20, 2026 High RUIRaivulnerabilitycybersecurity
threat-intel Hackers Using AI to Target Siemens PLCs in Critical US Sectors US government agencies have issued a cybersecurity advisory warning critical infrastructure organizations about a growing threat of hackers using AI to target Siemens PLCs. The attackers are scanning for exposed PLCs and… SecurityWeek · Aug 20, 2026 High USicsplccybersecurity