Yazılar

US warns of escalating Iranian cyberattacks on infrastructure

U.S. authorities have warned that Iranian-backed hacking campaigns targeting critical infrastructure have intensified following the escalation of regional hostilities.

According to a joint advisory issued by agencies including the FBI, National Security Agency and Cybersecurity and Infrastructure Security Agency, attackers are focusing on industrial control systems widely used across essential sectors.

Targets and Methods

The hackers are primarily exploiting:

  • Programmable Logic Controllers (PLCs)
  • SCADA systems (Supervisory Control and Data Acquisition)

These systems are critical for operating infrastructure such as:

  • Energy grids
  • Water and wastewater facilities
  • Government service systems

Attack techniques include:

  • Manipulating system display data
  • Extracting sensitive operational configurations
  • Interfering with real-time control processes

In several cases, the activity has already resulted in operational disruption and financial losses.

Strategic Intent

U.S. officials assess that the campaigns aim to create “disruptive effects” within the United States, signaling a shift from espionage toward potential sabotage.

The warning aligns with broader geopolitical tensions involving Iran and the United States, with threats extending to infrastructure targets both domestically and across the Gulf region.

Agencies Involved

The advisory was jointly issued by multiple agencies, including:

  • Federal Bureau of Investigation
  • National Security Agency
  • Cybersecurity and Infrastructure Security Agency
  • Environmental Protection Agency
  • Department of Energy
  • U.S. Cyber Command’s Cyber National Mission Force

Risk Implications

The targeting of industrial control systems is particularly concerning because:

  • Many are internet-exposed with weak security configurations
  • They often run legacy software with limited patching
  • Disruption can have physical-world consequences, not just digital impact

Outlook

The escalation indicates a broader trend:

  • Cyber operations are increasingly integrated into geopolitical conflict
  • Critical infrastructure is becoming a primary attack surface
  • Defensive readiness for industrial systems is now a national security priority

Organizations operating ICS/SCADA environments are likely to face heightened pressure to:

  • Harden network exposure
  • Implement real-time monitoring
  • Segment operational technology (OT) from IT systems

Hacker Claims Breach of Police Tip Data

A hacker has claimed to have accessed and stolen more than 8 million confidential law enforcement tips from a U.S.-based platform.

The attacker said they infiltrated P3 Global Intel, a service used by police, federal agencies and schools to collect anonymous tips, and extracted around 93 gigabytes of data. The breach was reportedly achieved through social engineering and a system vulnerability.

The claims have not been fully verified, though some reports suggest portions of the data may be authentic. Neither the company nor the FBI has provided an immediate response.

If confirmed, the breach could raise serious concerns about the security of sensitive reporting systems used by authorities, as well as the privacy of individuals who submit confidential information.

US Warns Firms to Secure Microsoft Tools After Cyberattack

U.S. authorities have urged companies to strengthen the security of Microsoft’s endpoint management systems following a cyberattack on medical device manufacturer Stryker.

The attack disrupted Stryker’s operations, affecting order processing, manufacturing and product shipments. The company reported a global issue linked to its Microsoft environment, though it later said the incident had been contained.

The Cybersecurity and Infrastructure Security Agency warned that similar attacks could target other organizations and advised companies to follow best practices for securing Microsoft Intune, a tool used to manage devices, applications and user access.

An Iran-linked hacking group claimed responsibility, highlighting the growing geopolitical dimension of cyber threats. U.S. agencies, including the FBI, are now working to assess risks and coordinate response measures.

The incident underscores the importance of securing enterprise systems as cyberattacks increasingly target critical infrastructure and corporate operations.