Industrial Control Systems

ICS news

  

Claroty launches public sector subsidiary, advances FedRAMP High authorization for government CPS security

Claroty, the cyber-physical systems (CPS) protection company, announced it has established Claroty Public Sector LLC as an independent… The post

  

Xage expands Critical Asset Protection as AI-driven cyber threats compress vulnerability response timelines

Xage Security, vendor of identity-based zero trust for high-stakes environments, announced the expansion of Xage Critical Asset Protection… The post

  

ClearVector report finds 91% of production identities are non-human, exposing identity intelligence gap

ClearVector, an identity-driven security company, released The ClearVector Identity Intelligence Report 2026, revealing that 91% of identities operating… The post

  

LevelBlue review finds attackers exploited exposed PLCs and remote access to disrupt US water infrastructure

A coordinated wave of cyberattacks against U.S. water and wastewater systems in late July demonstrated that OT (operational… The post

  

TP-Link Omada flaws could allow attackers to infiltrate industrial network infrastructure through zero-touch provisioning

New research from Forescout Research – Vedere Labs identifies 15 previously unknown vulnerabilities in TP-Link Omada’s Zero-Touch Provisioning… The post

  

US Congress deepens investigation into Chinese AI models over critical infrastructure and data security risks

House lawmakers are expanding a congressional investigation into the national security, cybersecurity and data security risks posed by… The post

  

Rural Hospital Cybersecurity Enhancement Act puts workforce development at center of healthcare cyber resilience strategy

Acting upon recent reports of a rise in healthcare cybersecurity attacks, a bipartisan bill has been introduced in… The post

  

Dispel integrates with Armis to bring AI-powered cyber exposure insights to zero trust remote access

Dispel announced an integration with Armis from ServiceNow, vendor of cyber exposure management and security. The joint offering… The post

  

Dispel Identity brings NIST IAL2 identity proofing to OT remote access

Dispel announced at Black Hat USA 2026 the launch of Dispel Identity, bringing identity proofing to OT remote… The post

  

30 minnesotai víziközmű összehangolt kibertámadása

A Minnesota IT Services (MNIT) részletes tájékoztatást adott a július 26–27-én történt, összehangolt kibertámadásról, amely több mint 30 minnesotai víziközmű működési technológiáját (OT) érintette. A

  

OTCC urges CISA to issue binding OT cybersecurity directive after cyberattacks disrupt water utilities

Cyberattacks targeting water and wastewater systems in at least seven U.S. states, including an incident that affected more… The post

  

Frenos raises $1.52M seed extension to expand AI-native OT security platform and simulated penetration testing

AI-native OT security vendor Frenos announced a US$1.52 million seed extension round led by industrial investors Momenta, Exposition… The post

  

GlobalData warns energy companies to strengthen OT cybersecurity amid rising supply chain risks

Energy companies should increase cybersecurity investments to reduce supply chain risks as digitalization, grid modernization, distributed energy resources,… The post

  

FBI and EPA warn hackers target internet-connected PLCs at US water utilities, leading to operational disruptions

The Federal Bureau of Investigation (FBI) and Environmental Protection Agency (EPA) warned that hackers have been breaking into… The post

  

PLC-k kihasználására hívja fel a figyelmet a CISA

A CISA sürgős figyelmeztetést adott ki az amerikai víz- és szennyvízágazat számára, miután jelentősen megnőtt az internetre közvetlenül csatlakozó programozható logikai vezérlők (PLC-k) elleni

  

New CISA guidance targets software supply chain risks on secure use of open source software across federal agencies

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) published a new resource for federal agencies with considerations and… The post

  

NetRise Provenance strengthens software supply chain security with developer workflow enforcement

NetRise announced enhancements to NetRise Provenance, bringing package trust enforcement into the developer workflow via Visual Studio Code,… The post

  

Team Cymru launches Pure Signal Command to accelerate AI-driven threat intelligence and incident response

Team Cymru announced Pure Signal Command, the connected operating environment for analysts, security teams, applications, and AI agents… The post

  

CISA, federal agencies, international partners refresh SBOM guidance with new data fields to boost software supply chain security

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with the National Security Agency, FBI, Department of… The post

  

Foreign robotic systems could expose US critical infrastructure to cyberattacks, espionage, remote manipulation

The U.S. administration determined that all foreign-produced advanced robotic devices pose an unacceptable risk to U.S. national security,… The post

  

Minnesota water cyberattacks prompt CISA warning on growing threats targeting internet-exposed PLCs

Following this week’s cybersecurity attacks on Minnesota water utilities, the U.S. CISA (Cybersecurity and Infrastructure Security Agency) urges… The post

  

Cyberattacks target water utilities in Minnesota, disrupting OT operations and triggering multi-agency cyber response

Four Minnesota cities, Plymouth, South St. Paul, Maple Plain, and Braham, all reported cyberattacks on their water utility… The post

  

Wyden urges federal agencies to replace legacy VPNs with zero trust architectures to counter nation-state cyber threats

A U.S. Senator is urging the administration to eliminate federal government’s reliance on legacy virtual private network (VPN)… The post

  

New CI Fortify guidance helps operators protect vital OT systems, maintain essential services during cyberattacks

The U.S. Cybersecurity and Infrastructure Security Agency, the Australian Signals Directorate (ASD), the U.K.’s National Cyber Security Centre… The post