Industrial Control Systems

ICS news

  

Global ransomware activity rises modestly in May as Qilin, The Gentlemen, and DragonForce lead attacks

Ransomware activity edged higher in May 2026, with researchers at Comparitech recording 661 attacks worldwide, a 3% increase… The post

  

EU Council to examine cybersecurity package focused on ENISA, NIS2 simplification, and supply chain security

EU telecommunications ministers are set to review progress on a proposed cybersecurity package at the Transport, Telecommunications and… The post

   

xOT: a kibővített OT biztonság új fogalma

A Dragos vezérigazgatója, Robert M. Lee június 2-án közzétett blogbejegyzésében egy új iparági fogalmat vezetett be: az xOT-ot (Extended Operational

  

Privilege escalation PLCnext-en keresztül

A Nozomi Networks Labs kutatói súlyos biztonsági réseket azonosítottak a Phoenix Contact PLCnext AXC F 3152 ipari vezérlő webes felületén,

  

Owl Cyber Defense, Trihedral integrate data diode technology with VTScada to strengthen OT data security

Owl Cyber Defense Solutions, a U.S. manufacturer of hardware-enforced data diode and cross-domain solutions, and Trihedral Engineering Limited,… The post

  

CISA and partners urge operators to secure automatic tank gauge systems against ongoing cyber threats

Following last month’s investigation into a series of cyber intrusions targeting automatic tank gauge (ATG) systems used to… The post

  

Trump signs executive order advancing AI innovation, cybersecurity modernization, and frontier AI protections

U.S. President Donald J. Trump signed an executive order aimed at strengthening the cybersecurity posture of government and… The post

  

Industrial cyber risk demands new governance approaches as operational environments become more interconnected

Growing connectivity across industrial operations, supply chains and public infrastructure is changing the way cyber risk spreads, making… The post

  

CISA advances ChemLock information request to support security consultations, onsite assessments, risk reduction activities

The U.S. Department of Homeland Security (DHS), through the Cybersecurity and Infrastructure Security Agency (CISA), moved forward with… The post

  

Engineering and Network Security: The Missing Link in Cyber-Physical Risk Management

Although control systems increasingly employ standard IT networking technologies, control systems differ fundamentally in that they directly monitor and control

  

Asimily rolls out Segmentation Orchestration to automate network policy enforcement for connected devices

Asimily launched Segmentation Orchestration, a capability designed to help organizations identify and classify connected devices, map and monitor… The post

  

DHS opens public comment period as CISA begins review of state and local cybersecurity grant program

The U.S. Department of Homeland Security (DHS), through the Cybersecurity and Infrastructure Security Agency (CISA), has launched a… The post

  

HSCC publishes AI Cyber Governance guide to help healthcare providers manage emerging AI threats

The Health Sector Coordinating Council, through its Cybersecurity Working Group, has published a guide addressing the unique cybersecurity… The post

  

Privilege-escalation flaws in Phoenix Contact PLCnext controllers could enable attackers to gain root access

Researchers from Nozomi Networks Labs disclosed a privilege-escalation vulnerability chain affecting a Phoenix Contact PLCnext industrial controller, demonstrating… The post

  

Dragos acquires Phosphorus to expand cybersecurity protection across the xOT environment

Industrial cybersecurity firm Dragos announced on Monday that it has acquired Phosphorus, extending the Dragos Platform to protect… The post

  

Xage integrates with NVIDIA DOCA security to deliver visibility, governance, and control across agentic AI environments

Xage Security announced support for new and enhanced NVIDIA DOCA security capabilities and NVIDIA Vera BlueField-4 STX, also… The post

  

The Gentlemen ransomware combines advanced encryption with self-propagation, targeting critical sectors

Microsoft Threat Intelligence detailed a growing RaaS (ransomware-as-a-service) operation known as The Gentlemen, tracked by Microsoft as Storm-2697,… The post

  

ENISA NIS360 report finds cybersecurity maturity rising across critical sectors, but progress remains uneven

The EU Agency for Cybersecurity (ENISA) has published its latest NIS360 report, recognizing that cybersecurity maturity across high-criticality… The post

  

SANS finds funding gaps and staffing shortages are slowing government cybersecurity modernization

A new SANS Institute survey highlighted persistent resource gaps facing public sector cybersecurity programs, finding that only one… The post

  

Darktrace identifies rising cyber exposure tied to AI-driven manufacturing operations

New data from Darktrace identified that manufacturers are rapidly embedding AI into production scheduling, quality inspection, logistics optimization… The post

  

Gambit links Iran-linked Black Shadow group to destructive cyber campaign targeting US, Middle East organizations

New data from the Gambit Security Threat Intelligence detailed threat campaign linked to the pro-Iranian persona ‘Ababil of… The post

  

Dispel Compliance launches to automate OT audit readiness and reduce industrial compliance costs

Dispel announced the general availability of Dispel Compliance, a new governance, risk, and compliance capability within the Dispel… The post

  

Claroty launches Claire, a CPS-native AI security agent designed to protect mission-critical infrastructure

Cyber-physical systems (CPS) protection company Claroty announced it is launching Claroty Claire, a first-of-its-kind, CPS-native AI security agent… The post

  

OMB cyber directive pushes centralized logging, AI-driven detection to counter cyber threats across IoT and OT systems

The U.S. White House, through its Office of Management and Budget, issued a new federal cybersecurity directive ordering… The post