Critical Infrastructure and Supply Chain Attacks Escalate
Iranian PLC attacks (12 states), water security incidents, LoadMaster flaw (CVSS 9.6) exploited, new private APN attack on critical infrastructure. Supply chain: Salesforce/ServiceNow portals exposed for 17 months, Metabase 0-day exploited, N-able zero-day, Shai-Hulud npm attack, JadePuffer targeting AI models. New regulations: India's CEA mandates six-hour incident reporting, OT/IT segregation, CISO mandates for power sector, mirroring NIS2/DORA trends. Nokia launches CyberSecurity Dome for OT/ICS security. Multiple vectors underscore need for resilient OT/IT security.
Sources (2)
Updated Aug 17, 2026