Tag: operational technology
124 articles

US Cyber Defenses Targeted in 100-Plus Water System Attacks
In a shocking revelation, over 100 US water and wastewater systems were targeted by malicious cyber attacks in just one month, with hackers commonly exploiting programmable logic controllers connected to cellular modems. This alarming trend highlights the vulnerability of critical infrastructure to cyber threats.

US Water Systems Targeted in Surge of Cyberattacks
In a shocking revelation, over 100 internet-exposed US water systems were hit with cyberattacks in just one month, highlighting a systemic risk that demands immediate attention. This alarming surge in targeted attacks has raised serious concerns about the security of America's water sector.

US Warns of AI-Powered Attacks on Siemens PLCs
The US government has issued a stark warning: hackers are harnessing the power of artificial intelligence to launch targeted attacks on vulnerable Siemens PLCs, critical infrastructure devices used in water, energy, and manufacturing sectors. This is no hypothetical threat - it's a very real and active danger.

Iranian Hackers Expose UK Power Plant Vulnerability
Can a UK power plant vulnerability leave millions in the dark? Iranian hackers recently caused a four-day blackout at an unnamed UK facility, raising concerns about the potential for a larger, more critical attack.

AI-Generated Scripts Target Siemens PLCs in US Critical Infrastructure
The US government has issued a warning about an active threat targeting critical infrastructure organizations, where hackers are using artificial intelligence to create exploit scripts that target industrial programmable logic controllers, specifically Siemens S7 Series PLCs. This AI-assisted attack has the potential to affect a wide range of industries and is not limited to Siemens PLCs.

US Agencies Warn Siemens PLC Operators of AI-Driven Attacks
US agencies are sounding the alarm: hackers are now using artificial intelligence to launch targeted attacks on Siemens PLC operators, making it easier for them to breach industrial systems. This emerging threat has prompted a joint warning from CISA, the FBI, and partner agencies.

Feds Warn of AI-Generated Code Threat to Critical Infrastructure Controllers
The feds have issued a dire warning: AI-generated code is being used to actively threaten critical infrastructure controllers, putting industries like water, energy, and manufacturing at risk. This is a very real and present danger, not just a hypothetical threat.

US Agencies Warn of AI-Driven Attacks on Siemens PLCs
US agencies have sounded the alarm on a growing threat: hackers are using artificial intelligence to launch automated attacks on critical infrastructure, including factories, power plants, and water systems, by targeting Siemens PLCs. This active threat has prompted a joint warning from the NSA, CISA, FBI, Department of Energy, and Environmental Protection Agency.

Russian Hackers Breach Polish Power Plant via Private APN
In a chilling cyberattack, Russian hackers infiltrated a Polish power plant by breaching a wind farm's VPN and firewall, then exploited a cellular router to gain control of the plant's systems. The attackers forced a combined heat and power plant into a controlled shutdown, overriding its operations with a password-protected lock.

Thousands of U.S. Water System Controllers Remain Exposed Online
A recent scan revealed over 4,000 vulnerable water system controllers exposed to the public internet, including 22 in cities that have already faced cyberattacks on their water and wastewater systems. This alarming discovery highlights the urgent need for increased security measures to protect these critical systems.

FBI, EPA Warn Water Sector of Rising Cyberattacks
Water and wastewater utilities in at least seven states have come under cyberattack, with internet-facing programmable logic controllers (PLCs) compromised, causing operations disruptions, pressure loss, and flooding. The FBI and EPA have sounded the alarm, warning of the growing threat to the water sector.

Rockwell PLCs Exposed in Water Utilities Hit by Cyberattacks
A recent scan revealed 4,407 Rockwell Automation programmable logic controllers (PLCs) exposed to the public internet, including 2,844 in the United States, leaving critical water utilities vulnerable to cyberattacks. Many of these exposed PLCs are concentrated in areas that have already reported recent cyber incidents, raising serious security concerns.

Senate Intel Chair Urges Treasury to Bolster OT Security with Tax Code Tweaks
The US is under attack, with recent breaches hitting community water systems in Minnesota and Iran-backed threats targeting critical infrastructure, prompting Sen. Tom Cotton to urge the Treasury Department to take action. He’s calling on Treasury Secretary Scott Bessent to use tax code tweaks to boost investment in operational technology security.

CISA Warns of Targeted Cyberattacks on US Water Utilities
CISA is sounding the alarm: if your water utility's programmable logic controllers are exposed to the internet, you're a prime target for cyberattacks - so take action now and remove them from public exposure to safeguard your operations.

Iran-linked CyberAv3ngers targets US water systems
A coordinated cyberattack recently hit over 30 community water systems in Minnesota, prompting a swift response from state officials to ensure public health and safety. The Minnesota Department of Health is working closely with affected facilities to mitigate the impact and prevent any disruptions to drinking water supplies.

US, Australia Urge Critical Infrastructure to Isolate Vital Systems During Cyberattacks
Stay ahead of cyber threats: the US and Australia are urging critical infrastructure operators to isolate vital systems during cyberattacks to minimize damage and protect essential services. A new advisory provides practical guidance on how to plan for and execute a safe disconnection from vulnerable networks.

Iranian Hackers Expand Target Scope in US Industrial Control Systems
US cybersecurity authorities have issued a critical warning: Iranian hackers are now targeting a wider range of industrial control systems, including those from Schneider Electric and Siemens, beyond their previously known focus on Rockwell Automation/Allen-Bradley devices. This expanded threat alert urges companies to bolster their defenses against increasingly aggressive and opportunistic cyber attacks.

Cloud Tenants Can Disrupt Power Grids With GPU Workloads
Researchers at Zhejiang University have made a startling discovery: ordinary GPU workloads in the cloud can be manipulated to disrupt power grids, and they've backed it up with measurements and simulations. By exploiting the link between a GPU's power draw and its computing activity, malicious cloud tenants can unwittingly - or intentionally - cause power grid instability.

Siemens ROX II Zero-Days Expose Critical Infrastructure Risks
Our research team, in close collaboration with Siemens, uncovered a critical vulnerability chain of three zero-day exploits in Siemens ROX II operational-technology switches, posing significant risks to critical infrastructure security. This chained exploit could allow attackers to escalate from basic reconnaissance to full root-level control.

Pentagon CIO Ramps Up Cybersecurity, Tech Modernization for Warfighters
The Pentagon's CIO is turbocharging cybersecurity and tech modernization to empower warfighters, with a focus on four key pillars to drive transformation. This initiative has already seen rapid adoption, with 1.3 million users on board with GenAI.mil.

Malicious Activity on Industrial Systems Declines to 3-Year Low
Malicious activity on industrial systems has hit a 3-year low, with only 19.6% of ICS computers encountering malicious objects in Q1 2026 - a significant drop of 1.4 times from Q2 2023. However, beneath the calm surface, localized spikes of threats persist, warranting close attention.

Accenture Bolsters Industrial Cybersecurity with $4.18B Acquisition Spree
As Robert M. Lee aptly puts it, our critical infrastructure, from energy and water systems to manufacturing plants, is crying out for robust cybersecurity that can stay one step ahead of evolving threats - and failing to deliver it could have disastrous societal consequences. Accenture is answering the call with a whopping $4.18 billion investment to bolster industrial cybersecurity.

Experts Cast Doubt on Handala's US Water Hacking Claims
Experts are debunking Handala's claims of being able to shut off water in US cities, with no evidence to back up the group's bold assertions. According to Sean Malone, Chief Information Security Officer at BeyondTrust, the breach appears to be limited to non-critical systems, with no impact on water treatment or distribution.

Operational Technology Cybersecurity Gaps Persist Despite Growing Maturity
Many industrial organizations are bolstering their operational technology security, but a significant gap remains: 23% of respondents only have visibility into half of their OT environment. This blind spot leaves them vulnerable to ransomware, nation-state actors, and other cyber threats.