2803 stories
·
0 followers

CISA says over 100 US water systems were targeted in July 2026 alone

1 Share
  • CISA warned of rising cyberattacks on US water systems, targeting 100+ exposed PLCs in July 2026
  • Attacks caused password changes, IP reassignments, boil water notices, and manual operations
  • Attribution uncertain, but reports suggest Iranian group; CISA urges removing PLCs from internet

CISA has warned of a “significant increase” in cyberattacks targeting US water systems, urging organizations to implement mitigations, strengthen their security posture, and make sure they’re resilient against these attempts.

CISA revealed it has seen hackers targeting more than 100 internet-exposed systems in the Water and Wastewater Systems (WWS) Sector, in July 2026 alone.

These attacks see the threat actors targeting programmable logic controllers (PLC), industrial computers used to control physical processes such as regulating water pumps or valves, allowing operators to monitor and control machinery in critical infrastructure such as water and wastewater facilities, and by targeting them, the attackers can disrupt services and potentially even create unsafe conditions for the citizens.

Blaming Iran

In its writeup, CISA did not discuss who the threat actors are or what they are trying to achieve.

In a report by The Register, however, it was said that the attacks were most likely done by a single threat actor, an Iranian state-sponsored group.

The publication also said that facilities in at least 12 US states were targeted, and that these attacks are merely testing the waters for a larger campaign that is being prepared.

This is all in the domain of speculation, however. Attribution is notoriously difficult and until it is confirmed, CISA is focused mostly on providing immediate assistance to the targets: “CISA urges critical infrastructure owners, operators, and integrators to remove publicly exposed PLCs and other operational technology (OT) from the internet as soon as possible,” the agency wrote.

“Threat actors targeting exposed PLCs have modified passwords to lock out operators and disconnected the PLCs by changing their IP addresses. This activity has resulted in boil water notices and sustained manual operations.”



Read the whole story
NerdsToGo
7 hours ago
reply
Share this story
Delete

New Phishing Kit Gives Threat Actors Live View Into Attacks

1 Share

A new phishing platform called “JWR” gives attackers real-time control over social engineering attacks, according to researchers at Cisco Talos. The kit livestreams the phishing page to the attacker as the victim is entering information, allowing the attacker to steer the victim’s experience and maximize the damage.

Read the whole story
NerdsToGo
7 hours ago
reply
Share this story
Delete

Top AI tools including Claude, Codex, and Hermes installed suspicious code inside corporate networks

1 Share
  • Researchers found unclaimed llms.txt references on 120 domains, exploitable by cybercriminals
  • AI agents could install malware if they execute hallucinated or outdated documentation commands
  • Fixes: clean documentation and restrict AI agents from treating docs as executable instructions

Cybercriminals are able to now abuse hallucinated, outdated, and outright incorrect website documentation to deliver malware to unsuspecting victims through AI agents, new research has claimed.

An increasing number of websites now contain two documents: llms.txt, and llms-full.txt. These are conventions that allow AI agents to properly read the contents of the websites. If an AI agent is looking to install software or add code to a project, they can search through these documents across the web until they find a fitting solution.

Researchers have analyzed 6,214 live domains belonging to defense contractors, Fortune 500 organizations, as well as big tech. On these domains they found 8,265 of these .txt files and among them 120 (all on a different site) pointing to one or more code packages and domain names that weren’t registered at all.

Claiming packages and domains

There can be a myriad of reasons why they’re not registered. It can be due to human error, renamed or abandoned packages, copy/paste errors, or hallucinated documentation.

Now, for the purpose of the experiment, the researchers registered some of these unclaimed names and hosted packages that would phone home when installed. It took less than an hour for a Fortune 500 company to start pinging, and the numbers soon grew to “a few dozen more”.

This means that if the researchers can do it, so can cybercriminals. In theory, a cybercriminal could find these unclaimed packages and register malware. If an AI agent has permission to execute shell/package-manager commands and stumbles upon this documentation, it can end up infecting the device.

Claude, OpenAI’s Codex, and Nous Research’s Hermes were all “guilty”, the researchers said.

To fix the vulnerability, two things need to happen. First, companies need to clean up their documentation and make sure it’s not pointing towards non-existent or malicious content. Second, AI agents need to stop treating documentation as executable instructions. Since the latter most likely isn’t happening any time soon, the immediate answer would probably lie in the former. In the meantime, organizations using AI for coding should consider the risks when granting AI agents permission to execute commands.

Via Ars Technica



Read the whole story
NerdsToGo
7 hours ago
reply
Share this story
Delete

Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

1 Share
Anthropic is warning some Claude users that infostealer malware on their PCs has stolen active Claude login sessions, allowing attackers to access accounts and consume their usage. [...]
Read the whole story
NerdsToGo
7 hours ago
reply
Share this story
Delete

Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign

1 Share
A large-scale phishing campaign used fake voicemail SVG attachments to bypass email defenses, targeting 5527 organizations with over 26,000 malicious messages
Read the whole story
NerdsToGo
1 day ago
reply
Share this story
Delete

McKesson discloses breach after ShinyHunters claims patient data theft

1 Share
Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and data theft, with the ShinyHunters extortion group claiming it stole 284 million patient data records. [...]
Read the whole story
NerdsToGo
1 day ago
reply
Share this story
Delete
Next Page of Stories