Tag: critical infrastructure
574 articles

CISA Launches CI Fortify to Bolster Critical Infrastructure Resilience
CISA has launched CI Fortify, a groundbreaking initiative that empowers critical infrastructure providers to bolster their defenses and ensure uninterrupted delivery of essential services, even in the face of cyber threats. By investing in resilience measures now, infrastructure owners and operators can safeguard against operational gaps and maintain business continuity during periods of cyber duress.

Grain Markets Expose National Security Fault Lines
Discover how global conflicts, from World War I to today, have exposed the shocking vulnerabilities of grain markets and national security, revealing the high stakes of protecting our food supply. Maritime chokepoints like the Dardanelles and Strait of Hormuz have repeatedly put grain supplies at risk, highlighting the urgent need for secure agricultural supply chains.

Five Eyes Agencies Warn of Agentic AI Risks, Urge Cautious Adoption
As agentic AI systems increasingly power critical infrastructure and defense sectors, Five Eyes agencies are sounding the alarm on the need for careful security planning to mitigate potential risks. They're urging a slow and cautious approach to adopting this powerful technology.

Ransomware Attacks on Hospitals Target Patient Care, Spark Calls for Tougher Stance
Hospitals are under attack - literally. Last year, a staggering 460 ransomware attacks hit American hospitals and healthcare systems, causing 47 patient deaths, diverted ambulances, and canceled surgeries.

US Agencies Issue Zero Trust Guidance for OT Security
US government agencies have just released a game-changing guide to help protect critical infrastructure systems with practical, layered security strategies. The new zero-trust guidance provides a tailored approach for operational technology environments, balancing safety and uptime needs with robust security measures.

Novel Chinese Spy Group Infiltrates Critical Networks in Poland, Asia
A recent investigation by TrendAI has uncovered a concerning China-linked espionage campaign, with a novel spy group infiltrating over a dozen critical networks across Poland and Asia, leaving behind a lingering threat that's experts' biggest worry. The threat group, tracked as Shadow-Earth-053, has been actively compromising networks since December 2024.

Quad Nations Urged to Share Critical-Mineral Intel
As China tightens its grip on rare earth elements, the US and its allies are racing to secure critical mineral supplies, but there's a glaring gap in their knowledge of global mineral flows. Can the Quad nations bridge this gap by sharing intelligence and turning cooperation into action?

US Weighs Critical Infrastructure Status for Data Centers
Protecting data centers is a must, and considering them part of the country's critical infrastructure is a crucial step towards achieving that goal. This idea was recently discussed at a House Homeland Security Subcommittee hearing, where lawmakers and industry experts explored the possibility of designating data centers as a standalone critical infrastructure sector.

Australia Urged to Establish Northern Hybrid Zone to Bolster Economic Security
Australia can supercharge its economic security by creating a Northern Hybrid Zone, turning its abundant resources into a powerful engine for growth. By following the US-Philippines' 4,000-acre precedent, Australia can anchor its supply chains, concentrate infrastructure, and embed resilience.

Russia Targets Signal Users in Germany with Social Engineering Hacks
Stay vigilant, especially when it comes to trusted messaging apps like Signal - a recent wave of social-engineering attacks in Germany targeted government officials, exploiting user trust rather than any technical flaw. Signal has assured users that its encryption and infrastructure remain secure, but warns that these types of attacks can still compromise user safety.

Zero Trust Stalls at Data Movement Bottleneck
The moment data crosses a boundary, it's often assumed to be trustworthy - but that's exactly where attackers strike, exploiting this blind spot with alarming success. A recent Cyber360 survey reveals that 53% of security leaders still rely on manual processes to move sensitive data, leaving a gaping Zero Trust gap that's ripe for exploitation.

Australia's Urea Reliance Exposes Food, Transport Systems to Gulf Risks
Australia's heavy reliance on urea imports, particularly from the Middle East, puts its food and transport systems at risk of disruption, making it vulnerable to shocks in the Gulf region. A urea shortage can have far-reaching consequences, from reduced crop yields to higher food prices, highlighting the urgent need for a more stable supply chain.
AI Shifts to Real-Time Cyber Defense Against Machine-Speed Threats
The threat landscape has drastically changed: with AI, the window to exploit software flaws has shrunk from hours or days to mere minutes, forcing security leaders to revolutionize their cyber defense strategies. Traditional security processes simply can't keep up with machine-speed threats, making AI-powered real-time defense a critical game-changer.

Malware Targets Israeli Water Systems with Precision Attacks
A newly discovered malware strain called ZionSiphon is threatening Israeli water systems with precision attacks, leaving experts concerned about the vulnerability of critical infrastructure. This sophisticated code can infiltrate and manipulate the machines that control pumps and filters, putting a city's taps at risk.

Global Mineral Supply Chain Coordination Failure Spurs Investment Delays
We know what we need to do about critical minerals, but we're stuck - and the cost of our collective inaction is already clear in delayed investments and ongoing dependence. The real challenge isn't a lack of knowledge, but a failure to coordinate and act together.

Iran-Backed Hackers Intensify US Infrastructure Cyberattacks
Pro-Iran hackers are stepping up their game, targeting US infrastructure with increasing frequency, as seen in the recent breach of the Los Angeles Metro. The federal government is sounding the alarm, warning that critical systems remain vulnerable to these escalating cyberattacks.

Iran's Military Research Unveils Decade-Long Drone Development Push
Years ago, open-source data revealed Iran's secret plan to develop strike drones, which are now wreaking havoc across the Gulf and threatening shipping lanes. The signs were there - and now, ASPI's Critical Tech Tracker is shining a light on the decade-long research push that led to this crisis.

NIST Refocuses CVE Analysis Amid Vulnerability Surge
The National Institute of Standards and Technology (NIST) has adjusted its approach to vulnerability analysis, now prioritizing critical software, government systems, and actively exploited vulnerabilities amid a surge in reported threats. This strategic refocus aims to optimize its National Vulnerability Database's impact in a threat landscape that's outpacing its capacity.

Transportation Sector Grapples with Rising Cyber Risks from Connected Vehicles
As modern trucks transform into data centers on wheels, loaded with sensors and connectivity, they also become vulnerable to cyber threats - turning transportation into a pressing cybersecurity issue. With their expanding attack surfaces, the transportation sector is racing against time to tackle the fast-evolving risks of connected vehicles.

Venice Flood Defenses Breached by Hackers
Imagine a city's defenses against its greatest threat - water - being breached not by a natural disaster, but by an unknown cyber attacker. In a chilling turn of events, hackers have infiltrated Venice's hydraulic pump system, claiming they can wield the power to create floods at will.

Vulnerabilities Surge as Velocity Gap Widens in AI-Driven Development
The alarming truth: while alert volume grew by 52% year-over-year, prioritized critical risks exploded by nearly 400% in just 90 days, leaving defenders scrambling to keep up with a tsunami of high-impact problems. A new dataset from OX Security reveals this velocity gap in AI-driven development, where the noise is rising - but it's the critical risks that should give defenders pause.

Fraud Enters New Era, Demanding Proactive Hunt
As traditional fraud markers become obsolete, it's clear that a new approach is needed - one that treats digital identity as critical infrastructure and leverages a layered, real-time defense strategy to stay one step ahead of sophisticated crime rings. We must move beyond outdated tactics and adopt a proactive, systemic approach to fraud defense.

OT Cybersecurity Sector Fears AI Exclusion
As artificial intelligence revolutionizes software security, the operational technology cybersecurity sector is sounding the alarm: will experts who safeguard factories, grids, and industrial sites be left behind? Pure-play OT security firms are pushing for a seat at the table, fearing they may be sidelined by the latest AI-driven initiatives.

CISA Warns of Iranian Cyber Actors Targeting US Infrastructure
The Cybersecurity and Infrastructure Security Agency (CISA) has sounded the alarm: Iranian-linked cyber actors are targeting US critical infrastructure, posing a threat to public safety, services, and commerce. American organizations must take immediate action to assess their risk and bolster defenses.