Critical systems
-
Accenture makes $4.2bn OT cyber move
Accenture’s planned Dragos, runZero, and NetRise deals would combine OT detection, asset intelligence, and firmware visibility for critical infrastructure security.
-
Bulgaria faces surveillance export scrutiny
Human Rights Watch says Bulgarian authorities licensed exports of surveillance technology to governments with records of repression, exposing weaknesses in Europe’s cyber-surveillance controls.
-
Rockwell advisories expose OT patching pressure
CISA has published several Rockwell Automation advisories, including flaws affecting controllers and industrial software, highlighting the operational challenge of patching industrial systems.
-
NCSC warns state actors dominate critical attacks
The NCSC says hostile states are linked to around three-quarters of incidents affecting UK critical systems, placing resilience and accountability at the centre of national cyber policy.
-
Chip security meets post-quantum design
Agile Analog and Xiphera are combining anti-tamper semiconductor IP with post-quantum cryptographic IP for long-life secure chip designs.
-
Ofcom details the telecoms resilience bar
Ofcom’s updated guidance sets operational expectations for UK communications providers across network design, monitoring, incident handling, third-party operations, and backup power.
-
France sets a deadline for quantum-safe security
ANSSI’s certification shift moves post-quantum cryptography into procurement, supplier assurance, and long-term infrastructure planning for products used in sensitive environments.
-
UK tests AI in cyber defence
A UK government pilot found 407 security findings across nine organisations using frontier AI models, showing defensive potential and governance pressure.
-
Moxa fix leaves encryption gap
Moxa has disclosed an incomplete remediation affecting industrial computers, where invasive physical access could still expose LUKS disk encryption keys.
-
Naxclow IoT flaws lack a fix
INCIBE has warned of critical Naxclow IoT platform vulnerabilities affecting device identity, control traffic, credential exposure, and unauthorised access.









