Tag: industrial control systems
159 articles

ICS Threats Decline, But Biometrics Sector Remains Vulnerable
The threat landscape for industrial control systems (ICS) is showing a welcome decline, with only 19.15% of ICS computers encountering blocked malicious objects in Q2 2026 - the lowest level since 2022. However, amidst this positive trend, one sector remains alarmingly vulnerable: biometrics.

Boston Scientific Disrupts Global Operations After Cyber Incident
Boston Scientific's global operations have been significantly disrupted due to a cyber incident, affecting access to key systems and applications, including order processing and shipping. The incident has caused a major network outage, impacting the company's ability to operate normally worldwide.

US Cyber Defenses Targeted in 100-Plus Water System Attacks
In a shocking revelation, over 100 US water and wastewater systems were targeted by malicious cyber attacks in just one month, with hackers commonly exploiting programmable logic controllers connected to cellular modems. This alarming trend highlights the vulnerability of critical infrastructure to cyber threats.

US Water Systems Targeted in Surge of Cyberattacks
In a shocking revelation, over 100 internet-exposed US water systems were hit with cyberattacks in just one month, highlighting a systemic risk that demands immediate attention. This alarming surge in targeted attacks has raised serious concerns about the security of America's water sector.

Iran-linked hackers disrupt UK power plant operations
A recent cyberattack linked to Iran caused a small UK power plant to shut down, but fortunately, the incident was contained and posed no risk to the broader energy system. The UK government assured that the country's energy infrastructure is highly resilient and that they're working closely with the sector to protect it.

US Warns of AI-Powered Attacks on Siemens PLCs
The US government has issued a stark warning: hackers are harnessing the power of artificial intelligence to launch targeted attacks on vulnerable Siemens PLCs, critical infrastructure devices used in water, energy, and manufacturing sectors. This is no hypothetical threat - it's a very real and active danger.

Iranian Hackers Expose UK Power Plant Vulnerability
Can a UK power plant vulnerability leave millions in the dark? Iranian hackers recently caused a four-day blackout at an unnamed UK facility, raising concerns about the potential for a larger, more critical attack.

AI-Generated Scripts Target Siemens PLCs in US Critical Infrastructure
The US government has issued a warning about an active threat targeting critical infrastructure organizations, where hackers are using artificial intelligence to create exploit scripts that target industrial programmable logic controllers, specifically Siemens S7 Series PLCs. This AI-assisted attack has the potential to affect a wide range of industries and is not limited to Siemens PLCs.

US Agencies Warn Siemens PLC Operators of AI-Driven Attacks
US agencies are sounding the alarm: hackers are now using artificial intelligence to launch targeted attacks on Siemens PLC operators, making it easier for them to breach industrial systems. This emerging threat has prompted a joint warning from CISA, the FBI, and partner agencies.

US Agencies Warn of AI-Fueled Attacks Targeting Industrial Controls
Threat actors are now using AI to supercharge their attacks on industrial control systems, dramatically lowering the bar for technical expertise and development time. This alarming evolution puts critical facilities like water, energy, and food production at risk.

Feds Warn of AI-Generated Code Threat to Critical Infrastructure Controllers
The feds have issued a dire warning: AI-generated code is being used to actively threaten critical infrastructure controllers, putting industries like water, energy, and manufacturing at risk. This is a very real and present danger, not just a hypothetical threat.

US Agencies Warn of AI-Driven Attacks on Siemens PLCs
US agencies have sounded the alarm on a growing threat: hackers are using artificial intelligence to launch automated attacks on critical infrastructure, including factories, power plants, and water systems, by targeting Siemens PLCs. This active threat has prompted a joint warning from the NSA, CISA, FBI, Department of Energy, and Environmental Protection Agency.

Russian Hackers Breach Polish Power Plant via Private APN
In a chilling cyberattack, Russian hackers infiltrated a Polish power plant by breaching a wind farm's VPN and firewall, then exploited a cellular router to gain control of the plant's systems. The attackers forced a combined heat and power plant into a controlled shutdown, overriding its operations with a password-protected lock.

Hackers Exploit Private Cellular Network to Breach Polish Power Plant Controls
In a chilling breach, hackers infiltrated a Polish power plant's controls, putting the heat supply of 50,000 residents at risk, by exploiting a vulnerable private cellular network used to connect remote equipment. The intruder's route began at a nearby wind farm, where a poorly secured VPN and lack of multi-factor authentication created an easy entry point.

UK Manufacturers Lag in Cyber Incident Response Planning
UK manufacturers are leaving themselves exposed, with almost a third having experienced a cyber incident in the past year, resulting in reduced production capacity, operational delays, and supply chain disruptions. The alarming reality is that many factories are flying blind, unable to see and respond to cyber threats.

Hackers Exploit Private APN to Breach Polish Energy Plant
In a groundbreaking cyberattack, hackers exploited a private APN to breach a Polish energy plant, marking the first observed instance of this attack vector in a real-world scenario. CERT Polska tracked the intrusion to a compromised FortiGate VPN/firewall at a wind farm, which served as a springboard for the attack.

Ex-NSA Chief Warns of Water System Cyber Risks
Retired General and ex-NSA chief Paul Nakasone warns that water systems are vulnerable to cyber threats, urging stricter defenses and cautioning that PLCs should be kept offline. He calls for higher standards and new partnerships to protect critical infrastructure.

Thousands of U.S. Water System Controllers Remain Exposed Online
A recent scan revealed over 4,000 vulnerable water system controllers exposed to the public internet, including 22 in cities that have already faced cyberattacks on their water and wastewater systems. This alarming discovery highlights the urgent need for increased security measures to protect these critical systems.

FBI, EPA Warn Water Sector of Rising Cyberattacks
Water and wastewater utilities in at least seven states have come under cyberattack, with internet-facing programmable logic controllers (PLCs) compromised, causing operations disruptions, pressure loss, and flooding. The FBI and EPA have sounded the alarm, warning of the growing threat to the water sector.

Rockwell PLCs Exposed in Water Utilities Hit by Cyberattacks
A recent scan revealed 4,407 Rockwell Automation programmable logic controllers (PLCs) exposed to the public internet, including 2,844 in the United States, leaving critical water utilities vulnerable to cyberattacks. Many of these exposed PLCs are concentrated in areas that have already reported recent cyber incidents, raising serious security concerns.

CISA Warns of Targeted Cyberattacks on US Water Utilities
CISA is sounding the alarm: if your water utility's programmable logic controllers are exposed to the internet, you're a prime target for cyberattacks - so take action now and remove them from public exposure to safeguard your operations.

IPMI Vulnerability Exposes 24,650 Server Management Interfaces
A recent security researcher found that over 30% of server management interface passwords can be easily cracked using common wordlists and factory default patterns, exposing a massive 24,650 interfaces to potential threats. This startling vulnerability, CVE-2013-4786, allows hackers to gain unauthorized access to sensitive server management hardware.

Iranian Hackers Expand Target Scope in US Industrial Control Systems
US cybersecurity authorities have issued a critical warning: Iranian hackers are now targeting a wider range of industrial control systems, including those from Schneider Electric and Siemens, beyond their previously known focus on Rockwell Automation/Allen-Bradley devices. This expanded threat alert urges companies to bolster their defenses against increasingly aggressive and opportunistic cyber attacks.

CISA Warns of Iranian Hackers Targeting Industrial Control Systems
The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about Iranian hackers targeting Industrial Control Systems, specifically programmable logic controllers (PLCs) used in critical infrastructure organizations. This alert comes after the FBI observed malicious activity, including data manipulation and operational disruption, at a US-based facility.