Back to articles

Tag archive

#industrialcontrolsystems

U
Aug 2, 2026

US Water Systems in 7 States Hit by Cyberattacks Targeting PLCs

Federal authorities, including the FBI and EPA, are investigating a wave of cyberattacks against water and wastewater facilities in at least seven U.S. states. The attacks, suspected to be linked to Iranian actors, target internet-exposed Rockwell Automation PLCs, causing operational disruptions like loss of water pressure and forcing utilities to switch to manual operations.

Aug 2, 20264 min read0 reactions0 comments
F
Aug 1, 2026

FCC Issues Final Rule to Secure Emergency Alert System (EAS)

The Federal Communications Commission (FCC) has issued a final rule, effective September 29, 2026, requiring U.S. broadcasters to implement specific cybersecurity measures for the Emergency Alert System (EAS). The rule mandates patching, strong passwords, and firewalls to prevent hijacking and the broadcast of false alerts.

Aug 1, 20263 min read0 reactions0 comments
U
Aug 1, 2026

US Water Systems Targeted in Attacks on Rockwell PLCs

The FBI and CISA have issued an urgent joint advisory following a series of cyberattacks targeting the U.S. Water and Wastewater Systems (WWS) sector. Malicious actors are exploiting internet-exposed Rockwell Automation MicroLogix PLCs in at least seven states, leading to significant operational disruptions. Attackers have been observed locking out operators by changing passwords and altering IP addresses, causing loss of pressure, flooding, and forcing utilities to issue boil water notices. The agencies urge all critical infrastructure operators to immediately remove OT assets from the public internet, implement network segmentation, and enforce strong access controls. The coordinated nature of the attacks across more than 30 systems suggests a concerted effort exploiting a common vulnerability or service provider.

Aug 1, 20264 min read0 reactions0 comments
M
Jul 30, 2026

Minnesota Water Systems Targeted in Coordinated OT Cyberattack

A widespread, coordinated cyberattack targeted the operational technology (OT) of over 30 community water systems across Minnesota, forcing some facilities into manual mode and one offline. The incident, which occurred on July 26-27, is being investigated by state and federal agencies, with security researchers noting similarities to the Iranian-affiliated threat group CyberAv3ngers. The attacks highlight the vulnerability of critical infrastructure with internet-exposed control systems.

Jul 30, 20265 min read0 reactions0 comments
C
Jul 30, 2026

CI Fortify Guide Released for Critical Infrastructure OT Resilience

Cybersecurity agencies from the Five Eyes nations (U.S., U.K., Australia, Canada, New Zealand) have jointly released the "CI Fortify" guide. The document provides critical infrastructure operators with practical advice on how to isolate their most vital Operational Technology (OT) systems from IT and other networks. The goal is to ensure that essential services can be maintained even during a major cyberattack by enabling isolated, resilient operations.

Jul 30, 20263 min read0 reactions0 comments
S
Jul 30, 2026

SonicWall Report: Manufacturing Cybersecurity at a Breaking Point

A new report from SonicWall finds the manufacturing sector is at a 'breaking point' due to increasingly targeted and precise cyberattacks. While the overall volume of attacks has decreased, threats exploiting IT/OT convergence, legacy IoT devices, and SCADA systems are growing in sophistication and impact. A single five-year-old vulnerability in Hikvision cameras (CVE-2021-36260) was responsible for 43 million attack attempts in H1 2026, highlighting the risk of unpatched legacy systems on the factory floor.

Jul 30, 20264 min read0 reactions0 comments
D
Jul 29, 2026

Dassault Systèmes Fixes Critical 3DEXPERIENCE RCE Flaw

Dassault Systèmes has patched a critical "Deserialization of Untrusted Data" vulnerability in its 3DEXPERIENCE platform. The flaw, affecting the Station Launcher App in releases R2023x through R2026x, could allow a remote, unauthenticated attacker to achieve remote code execution. Given the platform's deep integration into engineering and manufacturing, a compromise could lead to intellectual property theft or production disruption. Users are urged to apply the patches immediately.

Jul 29, 20263 min read0 reactions0 comments
C
Jul 29, 2026

CISA Publishes CI Fortify Guidance for OT Isolation

CISA and international partners from the UK, Australia, and Canada have released new guidance, "CI Fortify – Advice for Isolating Vital Systems." It urges critical infrastructure (CI) operators to develop and practice plans for physically isolating operational technology (OT) from enterprise IT networks during a cyber crisis. The framework emphasizes identifying vital systems, mapping dependencies, and using physical separation or strong cryptography to protect essential services like water and energy from cyberattacks.

Jul 29, 20264 min read0 reactions0 comments