Critical systems
-
Sandworm-linked activity adopts simpler access routes
CERT-UA says a threat cluster associated with Sandworm is combining trojanised torrent downloads, Signal conversations, fake CAPTCHA prompts, PowerShell, and legitimate remote-access tools.
-
KNX exposure reaches building operations
An actively exploited weakness in KNX building automation can allow a network-connected attacker to lock insufficiently protected devices and leave operators unable to restore normal access.
-
Europe’s critical entity regime enters operation
EU governments have reached the deadline for identifying organisations subject to the Critical Entities Resilience Directive, moving the regime from national preparation into supervision and operational delivery.
-
Old UEFI signatures reopen Secure Boot
Eleven old but validly signed bootloaders could be introduced onto modern systems to bypass Secure Boot, extending software supply chain risk beneath the operating system.
-
No patch yet for Siemens PLC simulator
Every version of SIMATIC S7-PLCSIM Advanced is affected by a denial-of-service weakness, leaving industrial operators dependent on network restrictions while Siemens prepares corrected releases.
-
Credential flaw reaches EcoStruxure security console
Schneider Electric has patched a high-severity weakness that could allow a privileged local attacker to alter credentials used to administer cybersecurity policies across electrical operational technology.
-
US indicts alleged bulletproof hosting operators
US prosecutors have unsealed charges against three Russian nationals and two companies accused of providing infrastructure used in cybercrime affecting international victims.
-
UK expands public-sector vulnerability monitoring
UK Government Security says its Vulnerability Monitoring Service now covers more than 6,000 public-sector organisations and has expanded active scanning.
-
UK adds cyber risks to national register
The UK has added cyber attacks on data, water, and police infrastructure to the National Risk Register, alongside digital resilience failure after CrowdStrike.
-
France attributes Turla espionage to Russia’s FSB
French cyber authorities say Turla activity targeting French ministries, diplomatic, defence, justice, and technology organisations is operated by Centre 16 of Russia’s FSB.






