ZCyberNews
中文

#critical-infrastructure

22 articles

From April to July 2026, ZCyberNews tracked 27 articles on critical-infrastructure, with APT33, CL-STA-1062, and CyberAv3ngers among the top threat actors observed. The most prominent vulnerability was CVE-2026-24032, carrying a CVSS score of 7.3. Affected sectors included energy, government, and utilities, while targeted regions spanned the United States, Europe, and Asia-Pacific. The severity mix comprised 15 high, 3 critical, 3 informational, and 1 medium severity reports.

EU flag and Court of Justice of the European Union building in Luxembourg
Industry News

EU sues four member states over NIS2 cybersecurity law delays

European Commission files legal referrals against Ireland, Spain, France, and Netherlands for failing to transpose NIS2 Directive for critical infrastructure cybersecurity, 20...

3 min read
Hikers walking on a forest path in Brenguļi, Latvia, representing the forestry operations disrupted by the ransomware attack on LVM.
Industry News

Latvian forestry firm still restoring systems weeks after ransomware

Latvia's LVM says 44 GB of data leaked, two-thirds of customers still locked out of systems after ransomware attack attributed to a foreign financially motivated group.

3 min read
Map of Southeast Asia with highlighted government and energy sector icons, representing CL-STA-1062 targetingHIGH
Malware

CL-STA-1062 Targets Southeast Asian Governments and Critical

Chinese-speaking threat group CL-STA-1062 compromised at least 10 Southeast Asian government and energy entities in 2025 using web shells, tunneling tools, and a new TinyRCT...

4 min readCL-STA-1062
Map of Mexico with cybersecurity icons overlay representing national cyber defense planning
Industry News

Evaluating Mexico’s New Cybersecurity Plan: Ransomware, Gaps, and the

Mexico's 2025–2030 National Cybersecurity Plan targets ransomware and organized crime, facing a critical test during the 2026 FIFA World Cup amid a history of high-profile...

3 min readRansomHub
Aerial view of sugarcane fields and a sugar mill in Queensland, Australia
Industry News

Cyberattack shuts down major Australian sugar mills, disrupting

Mackay Sugar, Australia's second-largest sugar producer, shut down Farleigh and Racecourse mills after a cyberattack halted harvesting in Queensland's Mackay region during crush...

3 min read
AI Hallucinations Exploit Human Trust in Critical InfrastructureHIGH
Industry News

AI Hallucinations Exploit Human Trust in Critical Infrastructure

AI models produce confident but incorrect outputs that have led to misconfigured firewalls and pipeline valve errors, researchers warn.

3 min read
Student Hacked Taiwan High-Speed Rail TETRA System, TriggeredHIGH
Industry News

Student Hacked Taiwan High-Speed Rail TETRA System, Triggered

A 23-year-old student used SDR gear to clone TETRA radio parameters, sending a 'General Alarm' signal that halted 4 THSR trains for 48 minutes.

3 min read
CISA, USCG Detail Cyber Hygiene Gaps Found in Critical InfrastructureHIGH
Industry News

CISA, USCG Detail Cyber Hygiene Gaps Found in Critical Infrastructure

CISA and USCG found persistent weak configurations, unpatched systems, and credential reuse during a proactive threat hunt at a US critical infrastructure org.

2 min read
CISA Details Interlock Ransomware TTPs, IOCs in Joint AdvisoryHIGH
Threat Intel

CISA Details Interlock Ransomware TTPs, IOCs in Joint Advisory

CISA and FBI released a joint advisory on Interlock ransomware, detailing TTPs, IOCs, and a shift from double extortion to data-theft-only attacks targeting healthcare and…

2 min readInterlock
Pro-Russia Hacktivists Target US Critical InfrastructureHIGH
Threat Intel

Pro-Russia Hacktivists Target US Critical Infrastructure

CISA warns pro-Russia hacktivists are conducting opportunistic attacks against US and global critical infrastructure, targeting OT and IT systems with known exploits.

2 min readPro-Russia Hacktivists
Itron Breach: Utility Firm Discloses Internal IT Network IntrusionHIGH
Industry News

Itron Breach: Utility Firm Discloses Internal IT Network Intrusion

Itron disclosed a cybersecurity incident in an SEC 8-K filing: an unauthorized third party accessed internal IT systems.

2 min read
Iran Conflict Spills Over: Cyber Threats to Critical InfrastructureHIGH
Threat Intel

Iran Conflict Spills Over: Cyber Threats to Critical Infrastructure

ESET warns of increased Iranian cyber activity targeting energy, water, and transportation sectors globally as Middle East conflict escalates.

2 min readAPT33
Cyberattackers Weaponize Voltage Fluctuations Against Power GridsHIGH
Industry News

Cyberattackers Weaponize Voltage Fluctuations Against Power Grids

Dark Reading reports attackers are manipulating voltage to destabilize power grids — a growing cyber-physical threat vector targeting electricity infrastructure with no patch…

2 min readSandworm
Locked Shields 2026: 41 Nations Train in Largest Cyber Defense
Industry News

Locked Shields 2026: 41 Nations Train in Largest Cyber Defense

Locked Shields 2026 involved 41 nations in the largest live-fire cyber defense exercise, testing response to critical infrastructure attacks including power grid and telecom…

2 min read
Siemens SINEC NMS Authentication Bypass CVE-2026-24032 Gets 7.3 CVSSHIGH
Vulnerabilities

Siemens SINEC NMS Authentication Bypass CVE-2026-24032 Gets 7.3 CVSS

ZDI disclosed CVE-2026-24032, a 7.3-CVSS authentication bypass in Siemens SINEC NMS that requires no authentication to exploit. Affects industrial network management systems.

CVE-2026-24032
3 min read
Lotus Wiper Strikes Venezuelan Energy Sector in Destructive CampaignCRITICAL
Malware

Lotus Wiper Strikes Venezuelan Energy Sector in Destructive Campaign

Kaspersky discovered Lotus Wiper, a novel file wiper targeting Venezuela's energy and utilities sector since late 2025.

2 min readLotus Wiper
UK Cyber Agency Handles Four Major Incidents WeeklyHIGH
Industry News

UK Cyber Agency Handles Four Major Incidents Weekly

The UK's NCSC reports handling four nationally significant cyber incidents per week, with most now attributed to hostile foreign states like China and Russia, up from two per week…

2 min read
U.S. Coast Guard Mandate Offers Blueprint for OT SecurityINFORMATIONAL
Industry News

U.S. Coast Guard Mandate Offers Blueprint for OT Security

New U.S. Coast Guard cybersecurity rules under the Maritime Transportation Security Act mandate third-party audits, OT-specific security plans, and dedicated personnel, providing a regulatory model for critical infrastructure.

3 min read
Critical PDF Zero-Day Exploited for Months, Infrastructure Espionage RevealedCRITICAL
Threat Intel

Critical PDF Zero-Day Exploited for Months, Infrastructure Espionage Revealed

A critical zero-day vulnerability in widely used PDF software has been actively exploited for months. Concurrently, state-sponsored actors have been targeting fiber optic infrastructure for espionage.

3 min read
Iranian CyberAv3ngers Escalate Attacks on US Water, Industrial InfrastructureHIGH
Threat Intel

Iranian CyberAv3ngers Escalate Attacks on US Water, Industrial Infrastructure

The Iran-backed threat actor CyberAv3ngers, linked to the IRGC, has evolved from hacktivism to conducting disruptive cyber operations against US water utilities and programmable logic controllers (PLCs).

3 min readCyberAv3ngers
Iran-Linked Hackers Target ICS/SCADA Systems in Critical InfrastructureHIGH
Threat Intel

Iran-Linked Hackers Target ICS/SCADA Systems in Critical Infrastructure

US Gov Warns Iran-Linked Actors Are Manipulating PLCs and SCADA Systems to Disrupt Critical Infrastructure

3 min read
Thousands of US Industrial PLCs Exposed to Iranian State-Sponsored Threat ActorsHIGH
Threat Intel

Thousands of US Industrial PLCs Exposed to Iranian State-Sponsored Threat Actors

Nearly 4,000 Rockwell Automation PLCs in the US are directly exposed online, creating a significant attack surface for Iranian state-sponsored hackers targeting critical infrastructure.

4 min readIranian state-sponsored actors

Stay Updated

Get the latest cybersecurity news delivered to your inbox.