Tag: critical infrastructure
574 articles

Cisco Patches Critical Unified CM Flaw Exploitable for Root Access
Cisco has patched a critical flaw in its Unified Communications Manager (Unified CM) that allowed hackers to remotely gain root access - a vulnerability that could be exploited with a simple, crafted HTTP request. This security gap could have let attackers take full control of affected devices, so it's crucial that the patch is applied ASAP.

Taiwan's Frontline Experience Fortifies Australia's Undersea Defenses
As Deputy Prime Minister Richard Marles warned, the seabed is rapidly becoming a battlefield, posing a stark threat to Australia's undersea defenses, with a whopping 99 percent of the country's internet traffic relying on just 15 vulnerable subsea cables. This alarming exposure puts everything from financial services to healthcare and communications at risk of disruption.

Hackers Target Fuel Tank Monitoring Systems with Cyberattacks
Cyber attackers are launching targeted strikes on internet-exposed fuel tank monitoring systems, allowing them to modify and manipulate critical infrastructure. These compromised systems, known as automatic tank gauges, remotely track fuel levels, temperatures, and leaks, making them a prime target for malicious actors.

UK Banks Gain Access to OpenAI's GPT-5.5 Cyber Model
UK banks are now part of an exclusive group gaining early access to OpenAI's cutting-edge GPT-5.5 Cyber model, a powerful AI tool designed to bolster their defenses against sophisticated cyber threats. This move comes as Anthropic's rival program, Project Glasswing, expands to 200 partners, leaving some UK banks to tap into OpenAI's innovative solution instead.

Anthropic Expands Vulnerability Detection Program to Critical Infrastructure Firms
Anthropic's expanded Vulnerability Detection Program is helping protect critical infrastructure firms from cyber threats, having already uncovered over 10,000 high-risk software vulnerabilities since April. The program, known as Project Glasswing, now includes 150 organizations across 15 countries.

World Cup Faces New Cyber Threats in AI-Driven Era
As the World Cup kicks off on June 11, it's not just a sporting spectacle - it's a high-stakes target for cyber threats, with billions of people, devices, and transactions converging online at once. This massive influx creates a perfect storm of vulnerability, exposing ticketing, payments, broadcasts, and infrastructure to unprecedented risk.

US Invests $2 Billion to Bolster Quantum Computing Lead
The US government has made a groundbreaking $2 billion investment in quantum computing, taking a significant stake in nine key companies to cement its lead in this critical technology. This move signals a major shift in Washington's approach, recognizing quantum computing as a vital national asset rather than a speculative bet.

Europe's Drone Defense Gap Exposes Critical Infrastructure Risks
Europe's critical infrastructure is left vulnerable due to a lack of clear governance and rules of engagement, despite having the technology to defend against drone threats. The absence of ownership and jurisdictional clarity hinders the deployment of drone defense systems where they're needed most.

Inactive User Account Enables Hackers to Control City's Water System
A simple mistake of leaving a former employee's user account active allowed hackers to take control of a city's water system, highlighting the importance of promptly disabling access for departed staff. This "zombie" account proved to be the vulnerable entry point that attackers exploited to wreak havoc on municipal operations.

Australia's North Targets Economic Security Boost with Hybrid Zone Model
Australia's north is poised for an economic security boost with a groundbreaking hybrid zone model that leverages its vast energy, critical minerals, and industrial capabilities. By unlocking the region's potential, Australia can supercharge its national power and create a brighter future.

Federal Agencies Face New Security Tests in AI Procurement
When it comes to AI procurement, federal agencies must prioritize cybersecurity over speed to avoid potentially disastrous consequences, especially when AI systems are tied to critical infrastructure. Compromising on security can have far-reaching and devastating impacts.

Ukraine Unleashes 600 Drones in Deep Strike Against Moscow Infrastructure
In a daring move, Ukraine launched a massive drone strike, deploying nearly 600 unmanned aerial vehicles to target key Russian infrastructure, including oil facilities, a microelectronics hub, and military bases, across 14 regions deep within enemy territory. The unprecedented attack, which hit sites in Moscow Oblast, Zelenograd, Ryazan, and occupied Crimea, marks a significant escalation in Ukraine's fight against Russia.

Iran Targets US Gas Stations with Tank Reader Hacks
US gas stations have been targeted by Iranian hackers, who manipulated fuel level readings at vulnerable sites, sparking concerns of a potentially catastrophic cyber attack. The breach highlights the alarming threat of kinetic cyber attacks, with experts warning of the devastating consequences.

Australia's Supply Chains Face Structural Resilience Test
Australia's supply chains, once optimized for efficiency, are now facing a harsh reality: a world where disruption is the new norm, and resilience is the ultimate test. The intricate link between fuel and fertiliser - a coupled system that drives farming productivity - is buckling under the pressure, threatening economic and social stability.

AI Hallucinations Expose Security Risks in Critical Infrastructure
Imagine a highly confident but fundamentally flawed advisor - that's what many AI models have become, with a staggering 36 out of 40 tested models more likely to provide incorrect answers with conviction than correct ones when faced with tough questions. This unsettling trend highlights a critical vulnerability in AI systems, particularly in high-stakes industries.

UAE Deploys 'Cope Cages' to Shield Energy Sites from Iranian Drone Threats
The UAE is taking bold steps to safeguard its energy sites from Iranian drone threats, with recent images revealing the deployment of metal "cope cages" around oil tanks near Dubai International Airport. This innovative defense strategy is the UAE's latest move to bolster its air defenses, which have already intercepted over 2,000 UAVs fired by Iran.

Russia Targets Polish Water Utilities in Hybrid Warfare Campaign
Poland's Internal Security Agency has uncovered a concerning trend: five cyber intrusions into water utilities have been linked to a pro-Russian hybrid campaign, part of a broader Kremlin strategy to target NATO's eastern flank.

Department of Energy Drives Modernization Push Amid Rising Threats
The Department of Energy is putting modernization at the forefront of its agenda, recognizing its critical role in driving technological leadership, securing critical infrastructure, and bolstering national energy resilience. By making modernization its top priority, the department aims to tackle rising threats and achieve key national objectives.

Vulnerabilities in TETRA Radio System Expose Global Security Risks
A single misstep in a radio system can send critical infrastructure crashing down - as Taiwan's bullet train system learned the hard way when a university student's clever hack with a radio and online kit brought the entire network to a standstill for nearly an hour. The incident highlights the urgent need for robust defenses to safeguard our global security.

Australia's Infrastructure Failures Erode National Security
Australia's broken promises on infrastructure are compromising its national security, with crucial projects like the Inland Rail - a game-changing freight line from Melbourne to Brisbane - stalled due to flawed assumptions, politics, and the passage of time. This has left the nation's supply chain resilience, regional industry, and agricultural competitiveness hanging in the balance.

US Crackdown Targets 'Laptop Farms' Aiding North Korea's Illicit IT Schemes
The US has cracked down on "laptop farms" helping North Korea's illicit IT schemes, sentencing two US nationals to 18 months in prison for enabling North Korean IT workers to remotely work at nearly 70 American companies. This move is part of a federal initiative to shut down North Korea's revenue generation schemes.

Palo Alto Networks Zero-Day Exploited in Wild, Firm Warns
Palo Alto Networks has warned of a critical zero-day vulnerability, CVE-2026-0300, being exploited in the wild, allowing unauthenticated attackers to execute code with root privileges on certain firewalls. This flaw affects a limited number of customers with exposed User-ID Authentication Portals.

CISA Launches Framework to Fortify Critical Infrastructure Against Cyber-Attacks
The US Cybersecurity and Infrastructure Security Agency (CISA) has launched CI Fortify, a vital planning framework designed to shield critical infrastructure sectors like water, energy, and transportation from devastating cyber-attacks. This timely guidance helps organizations safeguard their networks and essential services from threat actors seeking to disrupt and degrade infrastructure.

CISA Urges Infrastructure Operators to Plan for Extended Isolation
To stay ahead of potential disruptions, critical infrastructure operators must plan for extended isolation - and CISA's CI Fortify initiative is here to help, offering targeted assessments and operational planning to keep essential services running smoothly.