Considerations for Critical Infrastructure Operators Working With Third-Party ICS Integrators auto_post, september 25, 2026 De gezamenlijke waarschuwing van CISA en de FBI en het gemelde datalek uit maart–april 2025 laten zien dat het probleem niet langer hypothetisch is. Conclusie: eigenaren en operators van kritieke infrastructuur moeten directe maatregelen nemen — vastleggen welke data integratoren mogen zien, toegang beperken volgens het 'least privilege'-principe, en zorgen… Continue Reading
Nederlandse energiebedrijven zetten zich schrap post, september 19, 2026september 21, 2026 Bewapende beveiligers en dronenetten om de energie-infrastructuur te beschermen. Vandaag op de voorpagina van Het Financieele Dagblad schrijven Eva Rooijers en ik over hoe Nederlandse energiebedrijven zich schrap zetten voor fysieke aanvallen. Hoogspanningsstations, energiecentrales en andere vitale infrastructuur zijn makkelijke doelwitten; de fysieke beveiliging loopt ver achter. Terwijl de dreiging… Continue Reading
Iraanse hackers legden Britse energiecentrale 4 dagen plat post, augustus 23, 2026augustus 24, 2026 Iraanse hackers hebben vorige maand een energiecentrale in het Verenigd Koninkrijk vier dagen platgelegd met een cyberaanval. Dat meldt de Britse krant The Telegraph. Volgens de krant is het de eerste keer dat hackers die gelinkt worden aan het Iraanse regime een energiefaciliteit in het VK wisten te raken. Om welke energiecentrale… Continue Reading
Hackers breached a small Polish energy plant via private APN last year post, augustus 10, 2026augustus 17, 2026 Hackers used a dedicated mobile gateway to compromise a second facility during the destructive cyberattacks that hit Poland’s energy sector last year. The second target was a small combined heat-and-power (CHP) plant that supplies heat to around 50,000 residents, resulting in the steam turbine and the water treatment system being shut… Continue Reading
Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities post, augustus 6, 2026augustus 17, 2026 Forescout found 22 internet-facing Rockwell Automation programmable logic controllers (PLCs) in cities hit by recent cyberattacks on US water utilities. Nineteen used the same mobile carrier network. Its August 3 scan counted 4,407 exposed Rockwell controllers worldwide, including 2,844 in the United States, but Forescout could not confirm any were… Continue Reading
CISA Urges Water and Wastewater Systems Sector to Protect OT Against Activity Targeting PLCs post, juli 30, 2026juli 31, 2026 CISA is currently observing a significant increase in cyber threat actors targeting programmable logic controllers (PLCs) in the Water and Wastewater Systems (WWS) Sector. CISA urges critical infrastructure owners, operators, and integrators to remove publicly exposed PLCs and other operational technology (OT) from the internet as soon as possible. Threat… Continue Reading
Hackers disrupt over 30 Minnesota water utilities in coordinated OT attack post, juli 29, 2026juli 31, 2026 The Minnesota IT Services (MNIT) agency activated its cybersecurity incident response capabilities across the entire state after hackers targeted more than 30 community water systems in “a coordinated cyberattack.” The attacks occurred on Sunday and Monday, July 26 and 27, and targeted operational technology (OT) systems at local water utilities. Continue Reading
Iranian-Affiliated Cyber Actors Exploit Programmable Logic Controllers Across US Critical Infrastructure post, juli 22, 2026juli 27, 2026 The authoring agencies urgently warn U.S. organizations of ongoing Iranian-affiliated cyber targeting of internet-connected operational technology (OT) devices, including programmable logic controllers (PLCs). These actions disrupted PLCs across several U.S. critical infrastructure sectors through malicious project file interactions and manipulation of data on human machine interface (HMI) and supervisory control… Continue Reading
Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT Systems post, april 20, 2026 Cybersecurity researchers have flagged a new malware called ZionSiphon that appears to be specifically designed to target Israeli water treatment and desalination systems. The malware has been codenamed ZionSiphon by Darktrace, highlighting its ability to set up persistence, tamper with local configuration files, and scan for operational technology (OT)-relevant services on the… Continue Reading
Hackers claim control over Venice San Marco anti-flood pumps post, april 12, 2026april 13, 2026 Hackers breached Venice ’s San Marco flood system, claiming control of pumps and the ability to disable defenses and flood coastal areas. The technologies that govern the physical world are the quiet infrastructure of modern life. From energy grids to water systems, from factories to flood defenses, operational technology (OT)… Continue Reading