<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Critical Infrastructure</title><description>Cybersecurity articles tagged #Critical Infrastructure on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>UK Cyber Security and Resilience Bill Targets High-Risk Vendors</title><link>https://runtimerebel.com/blog/uk-cyber-security-and-resilience-bill-targets-high-risk-vendors</link><guid isPermaLink="true">https://runtimerebel.com/blog/uk-cyber-security-and-resilience-bill-targets-high-risk-vendors</guid><description>The UK amends its Cyber Security and Resilience Bill to grant ministers powers to block high-risk technology suppliers from critical infrastructure.</description><pubDate>Wed, 02 Sep 2026 19:07:21 GMT</pubDate><category>Supply Chain Attack</category><category>Critical Infrastructure</category><category>Compliance</category><category>Cyber Security and Resilience Bill</category></item><item><title>U.S. Sanctions Iran-Linked Hackers Targeting Critical Infrastructure</title><link>https://runtimerebel.com/blog/u-s-sanctions-iran-linked-hackers-targeting-critical-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/u-s-sanctions-iran-linked-hackers-targeting-critical-infrastructure</guid><description>U.S. Treasury sanctions Iran-linked cyber actors, including Mabna Institute members, for critical infrastructure breaches and cyber theft.</description><pubDate>Wed, 26 Aug 2026 00:41:56 GMT</pubDate><category>Iran</category><category>Sanctions</category><category>Critical Infrastructure</category><category>MOIS</category><category>Cyber Espionage</category></item><item><title>Bolstering Municipal Cybersecurity: A Call for Professional Support</title><link>https://runtimerebel.com/blog/bolstering-municipal-cybersecurity-a-call-for-professional-support</link><guid isPermaLink="true">https://runtimerebel.com/blog/bolstering-municipal-cybersecurity-a-call-for-professional-support</guid><description>Local government agencies face severe cybersecurity resource gaps. This analysis urges cyber professionals to volunteer expertise to defend critical public services.</description><pubDate>Fri, 21 Aug 2026 00:45:26 GMT</pubDate><category>Local Government</category><category>Cybersecurity Volunteering</category><category>Critical Infrastructure</category><category>Cyber Risk</category><category>Public Sector</category></item><item><title>CISA Warns: Medusa Ransomware Breaches 500+ Critical Infra Orgs</title><link>https://runtimerebel.com/blog/cisa-warns-medusa-ransomware-breaches-500-critical-infra-orgs</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-medusa-ransomware-breaches-500-critical-infra-orgs</guid><description>CISA, FBI, and HHS alert on Medusa ransomware, which has impacted over 500 critical infrastructure organizations since June 2021, urging immediate network hardening.</description><pubDate>Wed, 19 Aug 2026 08:26:15 GMT</pubDate><category>Medusa Ransomware</category><category>Ransomware as a Service</category><category>CISA</category><category>FBI</category><category>Critical Infrastructure</category></item><item><title>Ransomware Attack Hits Colombian Justice Ministry</title><link>https://runtimerebel.com/blog/ransomware-attack-hits-colombian-justice-ministry</link><guid isPermaLink="true">https://runtimerebel.com/blog/ransomware-attack-hits-colombian-justice-ministry</guid><description>A ransomware attack targets the Colombian Justice Ministry days before a presidential transition, highlighting regional risks.</description><pubDate>Wed, 12 Aug 2026 16:49:50 GMT</pubDate><category>Ransomware</category><category>Critical Infrastructure</category><category>Government</category><category>Colombia</category></item><item><title>Gunra Ransomware Exploits Fortinet Flaws and Bypasses MFA</title><link>https://runtimerebel.com/blog/gunra-ransomware-exploits-fortinet-flaws-and-bypasses-mfa</link><guid isPermaLink="true">https://runtimerebel.com/blog/gunra-ransomware-exploits-fortinet-flaws-and-bypasses-mfa</guid><description>Gunra ransomware targets critical infrastructure using leaked Conti code, old Fortinet vulnerabilities, and MFA bypass techniques.</description><pubDate>Wed, 12 Aug 2026 09:05:47 GMT</pubDate><category>Ransomware</category><category>Fortinet</category><category>Credential Theft</category><category>Critical Infrastructure</category></item><item><title>Multistate Water System Attacks Target Exposed PLCs</title><link>https://runtimerebel.com/blog/multistate-water-system-attacks-target-exposed-plcs</link><guid isPermaLink="true">https://runtimerebel.com/blog/multistate-water-system-attacks-target-exposed-plcs</guid><description>Attacks targeting poorly secured, internet-exposed PLCs in water systems are widening across multiple U.S. states, with Iran suspected.</description><pubDate>Tue, 11 Aug 2026 08:46:26 GMT</pubDate><category>ICS</category><category>OT Security</category><category>Critical Infrastructure</category><category>Iran</category><category>Water Utilities</category></item><item><title>Hackers Breach Polish CHP Plant via Private APN and Teltonika Router</title><link>https://runtimerebel.com/blog/hackers-breach-polish-chp-plant-via-private-apn-and-teltonika-router</link><guid isPermaLink="true">https://runtimerebel.com/blog/hackers-breach-polish-chp-plant-via-private-apn-and-teltonika-router</guid><description>Attackers breached a Polish combined heat and power plant via a private APN, shutting down a steam turbine and water treatment system.</description><pubDate>Tue, 11 Aug 2026 08:44:42 GMT</pubDate><category>Critical Infrastructure</category><category>Ransomware</category><category>Fortinet</category><category>Teltonika</category><category>Siemens</category></item><item><title>Private APN Misconfiguration Led to Polish Energy Plant OT Compromise</title><link>https://runtimerebel.com/blog/private-apn-misconfiguration-led-to-polish-energy-plant-ot-compromise</link><guid isPermaLink="true">https://runtimerebel.com/blog/private-apn-misconfiguration-led-to-polish-energy-plant-ot-compromise</guid><description>Hackers compromised a Polish energy plant&apos;s OT network by exploiting a private APN misconfiguration, shutting down a steam turbine and water treatment system.</description><pubDate>Tue, 11 Aug 2026 00:59:03 GMT</pubDate><category>OT Security</category><category>Critical Infrastructure</category><category>FortiGate</category><category>Private APN</category><category>WAGO PLC</category></item><item><title>NC Ports Cyberattack Disrupts Operations at Key Facilities</title><link>https://runtimerebel.com/blog/nc-ports-cyberattack-disrupts-operations-at-key-facilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/nc-ports-cyberattack-disrupts-operations-at-key-facilities</guid><description>North Carolina Ports confirmed a cyberattack disrupting IT systems and operations across its facilities. Recovery efforts are underway, with expected delays.</description><pubDate>Sun, 09 Aug 2026 08:31:30 GMT</pubDate><category>North Carolina Ports</category><category>Cyberattack</category><category>Operational Disruption</category><category>Critical Infrastructure</category><category>Supply Chain Security</category></item><item><title>Iran-Backed Cyberattacks Target Minnesota Water Utilities</title><link>https://runtimerebel.com/blog/iran-backed-cyberattacks-target-minnesota-water-utilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/iran-backed-cyberattacks-target-minnesota-water-utilities</guid><description>Iran-backed threat actors targeted over 30 Minnesota water utilities, highlighting critical infrastructure vulnerabilities. Learn about TTPs and mitigation strategies.</description><pubDate>Fri, 31 Jul 2026 02:56:58 GMT</pubDate><category>Iran</category><category>Water Utilities</category><category>Critical Infrastructure</category><category>ICS OT Security</category><category>Minnesota</category><category>Nation State</category></item><item><title>Coordinated OT Attack Targets 30+ Minnesota Water Utilities</title><link>https://runtimerebel.com/blog/coordinated-ot-attack-targets-30-minnesota-water-utilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/coordinated-ot-attack-targets-30-minnesota-water-utilities</guid><description>Over 30 Minnesota water utilities were targeted in a coordinated cyberattack on operational technology, prompting a statewide incident response and investigation.</description><pubDate>Wed, 29 Jul 2026 17:17:22 GMT</pubDate><category>OT Security</category><category>Critical Infrastructure</category><category>Minnesota</category><category>ICS</category><category>Water Utility</category></item><item><title>Thousands of Data Center Controllers Exposed: Prevent Server Takeover</title><link>https://runtimerebel.com/blog/thousands-of-data-center-controllers-exposed-prevent-server-takeover</link><guid isPermaLink="true">https://runtimerebel.com/blog/thousands-of-data-center-controllers-exposed-prevent-server-takeover</guid><description>Thousands of internet-exposed data center remote management processors are vulnerable to offline password cracking, enabling server takeover and critical infrastructure…</description><pubDate>Wed, 29 Jul 2026 02:46:26 GMT</pubDate><category>Data Center</category><category>Remote Management</category><category>Password Cracking</category><category>Server Takeover</category><category>Vulnerability</category><category>Critical Infrastructure</category></item><item><title>CISA &amp; ACSC Advise Isolating OT Systems During Cyberattacks</title><link>https://runtimerebel.com/blog/cisa-acsc-advise-isolating-ot-systems-during-cyberattacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-acsc-advise-isolating-ot-systems-during-cyberattacks</guid><description>CISA and ACSC urge critical infrastructure to prepare isolating operational technology systems during cyberattacks to maintain essential services and limit impact.</description><pubDate>Tue, 28 Jul 2026 21:10:24 GMT</pubDate><category>CISA</category><category>ACSC</category><category>Critical Infrastructure</category><category>OT Security</category><category>Cyberattack Preparedness</category><category>Industrial Control Systems</category><category>Incident Response</category></item><item><title>OT Security Startup Frenos Secures $1.52 Million for AI R&amp;D</title><link>https://runtimerebel.com/blog/ot-security-startup-frenos-secures-1-52-million-for-ai-r-d</link><guid isPermaLink="true">https://runtimerebel.com/blog/ot-security-startup-frenos-secures-1-52-million-for-ai-r-d</guid><description>Frenos raises $1.52 million in seed funding to expand AI research and development focused on securing industrial control systems and operational technology.</description><pubDate>Tue, 28 Jul 2026 14:10:52 GMT</pubDate><category>Frenos</category><category>OT Security</category><category>ICS Security</category><category>AI Security</category><category>Critical Infrastructure</category></item><item><title>Securing Critical Infrastructure: Closing Identity Gaps</title><link>https://runtimerebel.com/blog/securing-critical-infrastructure-closing-identity-gaps</link><guid isPermaLink="true">https://runtimerebel.com/blog/securing-critical-infrastructure-closing-identity-gaps</guid><description>Attacks on critical infrastructure leverage identity gaps. This analysis details common vulnerabilities and how Zero Trust principles can enhance sector security.</description><pubDate>Tue, 21 Jul 2026 17:24:12 GMT</pubDate><category>Critical Infrastructure</category><category>Identity Security</category><category>Zero Trust</category><category>Credential Theft</category><category>MFA Bypass</category><category>Supply Chain Attack</category><category>Phishing</category></item><item><title>OT Security: Legacy System Vulnerabilities in Critical Infrastructure</title><link>https://runtimerebel.com/blog/ot-security-legacy-system-vulnerabilities-in-critical-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/ot-security-legacy-system-vulnerabilities-in-critical-infrastructure</guid><description>Addressing the complex challenges of securing legacy OT systems in critical infrastructure, balancing vulnerability disclosure with operational continuity and safety.</description><pubDate>Thu, 16 Jul 2026 17:24:03 GMT</pubDate><category>OT Security</category><category>Legacy Systems</category><category>Critical Infrastructure</category><category>Vulnerability Management</category><category>ICS Security</category></item><item><title>UK and EU Sanction Russian APTs Over Critical Infrastructure Attacks</title><link>https://runtimerebel.com/blog/uk-and-eu-sanction-russian-apts-over-critical-infrastructure-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/uk-and-eu-sanction-russian-apts-over-critical-infrastructure-attacks</guid><description>Recent UK and EU sanctions target Russian intelligence services following persistent cyber operations against government entities and critical infrastructure.</description><pubDate>Tue, 14 Jul 2026 02:36:59 GMT</pubDate><category>APT28</category><category>APT29</category><category>Russian Cyberattacks</category><category>Critical Infrastructure</category><category>Sanctions</category></item><item><title>EU Sanctions Russian Intel Officers for APT28 Cyber Operations</title><link>https://runtimerebel.com/blog/eu-sanctions-russian-intel-officers-for-apt28-cyber-operations</link><guid isPermaLink="true">https://runtimerebel.com/blog/eu-sanctions-russian-intel-officers-for-apt28-cyber-operations</guid><description>The EU imposes sanctions on Russian GRU officers linked to APT28 for long-term cyber espionage and sabotage targeting government and infrastructure.</description><pubDate>Mon, 13 Jul 2026 11:22:06 GMT</pubDate><category>APT28</category><category>GRU</category><category>EU Sanctions</category><category>Cyber Espionage</category><category>Critical Infrastructure</category></item><item><title>Russian APTs Target Critical Infrastructure via Edge Device Exploits</title><link>https://runtimerebel.com/blog/russian-apts-target-critical-infrastructure-via-edge-device-exploits</link><guid isPermaLink="true">https://runtimerebel.com/blog/russian-apts-target-critical-infrastructure-via-edge-device-exploits</guid><description>US and allies warn of Russian state-sponsored actors targeting edge devices to infiltrate critical infrastructure. Learn how to mitigate these threats.</description><pubDate>Mon, 13 Jul 2026 11:21:02 GMT</pubDate><category>APT28</category><category>Sandworm</category><category>Cisco</category><category>Critical Infrastructure</category><category>Edge Security</category></item><item><title>BusySnake Infostealer Targets Critical Infrastructure: Armored Likho&apos;s TTPs</title><link>https://runtimerebel.com/blog/busysnake-infostealer-targets-critical-infrastructure-armored-likho-s-ttps</link><guid isPermaLink="true">https://runtimerebel.com/blog/busysnake-infostealer-targets-critical-infrastructure-armored-likho-s-ttps</guid><description>BusySnake infostealer, deployed by Armored Likho, infiltrates critical infrastructure in Russia, Brazil, and Kazakhstan. Understand their TTPs and mitigation strategies.</description><pubDate>Tue, 07 Jul 2026 03:34:06 GMT</pubDate><category>BusySnake</category><category>Infostealer</category><category>Armored Likho</category><category>Critical Infrastructure</category><category>Government</category><category>Electrical Power</category><category>Russia</category><category>Brazil</category><category>Kazakhstan</category></item><item><title>France Mandates Quantum-Safe Encryption by 2027</title><link>https://runtimerebel.com/blog/france-mandates-quantum-safe-encryption-by-2027</link><guid isPermaLink="true">https://runtimerebel.com/blog/france-mandates-quantum-safe-encryption-by-2027</guid><description>France&apos;s ANSSI will stop certifying non-quantum-safe encryption products from 2027, compelling government and critical operators to adopt post-quantum solutions.</description><pubDate>Mon, 06 Jul 2026 21:41:43 GMT</pubDate><category>ANSSI</category><category>Quantum Encryption</category><category>Post Quantum Cryptography</category><category>France</category><category>Critical Infrastructure</category><category>Government Certification</category></item><item><title>China-Linked APT Targets Southeast Asia Critical Systems with New Backdoor</title><link>https://runtimerebel.com/blog/china-linked-apt-targets-southeast-asia-critical-systems-with-new-backdoor</link><guid isPermaLink="true">https://runtimerebel.com/blog/china-linked-apt-targets-southeast-asia-critical-systems-with-new-backdoor</guid><description>A China-linked APT group has compromised ten organizations, including state-owned entities in Southeast Asia, deploying a new backdoor.</description><pubDate>Wed, 01 Jul 2026 05:41:17 GMT</pubDate><category>China Linked APT</category><category>Southeast Asia</category><category>Critical Infrastructure</category><category>Backdoor</category><category>State Sponsored</category><category>Espionage</category><category>Cyber Warfare</category></item><item><title>CVE-2024-2821: Critical RCE in Daktronics Controllers — Patch Now</title><link>https://runtimerebel.com/blog/cve-2024-2821-critical-rce-in-daktronics-controllers-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-2821-critical-rce-in-daktronics-controllers-patch-now</guid><description>Critical vulnerabilities (CVE-2024-2821, CVE-2024-2822, CVE-2024-2823) in Daktronics Venus 1500 and Vanguard controllers allow remote hacking of highway signs and…</description><pubDate>Tue, 30 Jun 2026 05:28:50 GMT</pubDate><category>Daktronics</category><category>CVE-2024-2821</category><category>CVE-2024-2822</category><category>CVE-2024-2823</category><category>ICS</category><category>SCADA</category><category>IoT</category><category>Improper Authentication</category><category>Remote Hacking</category><category>Critical Infrastructure</category></item><item><title>Cal Water Incident: No OT Impact Confirmed After Handala Claims</title><link>https://runtimerebel.com/blog/cal-water-incident-no-ot-impact-confirmed-after-handala-claims</link><guid isPermaLink="true">https://runtimerebel.com/blog/cal-water-incident-no-ot-impact-confirmed-after-handala-claims</guid><description>An investigation revealed no operational technology compromise at Cal Water despite claims by Iranian hacker group Handala to disrupt water supply.</description><pubDate>Thu, 25 Jun 2026 13:05:10 GMT</pubDate><category>Cal Water</category><category>Handala</category><category>Critical Infrastructure</category><category>OT Security</category><category>Cyberattack</category><category>Water Utility</category><category>Disinformation</category></item><item><title>The Gentlemen Ransomware Halts Mackay Sugar Operations</title><link>https://runtimerebel.com/blog/the-gentlemen-ransomware-halts-mackay-sugar-operations</link><guid isPermaLink="true">https://runtimerebel.com/blog/the-gentlemen-ransomware-halts-mackay-sugar-operations</guid><description>Mackay Sugar, Australia&apos;s second-largest sugar producer, suffered a ransomware attack by &apos;The Gentlemen&apos; group, halting mill operations and impacting critical…</description><pubDate>Mon, 15 Jun 2026 17:49:18 GMT</pubDate><category>Ransomware</category><category>The Gentlemen</category><category>Mackay Sugar</category><category>Critical Infrastructure</category><category>Australia</category><category>OT Security</category></item><item><title>ICS Exposure Persists as OT Attack Surface Expands</title><link>https://runtimerebel.com/blog/ics-exposure-persists-as-ot-attack-surface-expands</link><guid isPermaLink="true">https://runtimerebel.com/blog/ics-exposure-persists-as-ot-attack-surface-expands</guid><description>Analysis of Industrial Control System (ICS) exposure, its persistence amidst expanding attack surfaces, and vital steps for operational technology security.</description><pubDate>Sat, 13 Jun 2026 01:04:32 GMT</pubDate><category>ICS</category><category>OT Security</category><category>Critical Infrastructure</category><category>Attack Surface</category></item><item><title>Iranian Handala Group Claims Cal Water Hack, Exposing PII</title><link>https://runtimerebel.com/blog/iranian-handala-group-claims-cal-water-hack-exposing-pii</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-handala-group-claims-cal-water-hack-exposing-pii</guid><description>Iranian cyber group Handala claims responsibility for breaching Cal Water, exposing 5GB of customer PII and RTKBase platform credentials.</description><pubDate>Fri, 12 Jun 2026 13:21:19 GMT</pubDate><category>Handala</category><category>Cal Water</category><category>Data Breach</category><category>Critical Infrastructure</category><category>RTKBase</category><category>Cyber Espionage</category><category>PII</category></item><item><title>2026 FIFA World Cup: Mitigating Cyber-Physical Threats in Host Cities</title><link>https://runtimerebel.com/blog/2026-fifa-world-cup-mitigating-cyber-physical-threats-in-host-cities</link><guid isPermaLink="true">https://runtimerebel.com/blog/2026-fifa-world-cup-mitigating-cyber-physical-threats-in-host-cities</guid><description>Technical analysis of cyber-physical risks for the 2026 FIFA World Cup, focusing on critical infrastructure protection and incident response strategies.</description><pubDate>Thu, 11 Jun 2026 09:48:34 GMT</pubDate><category>2026 Fifa World Cup</category><category>Critical Infrastructure</category><category>ICS OT Security</category><category>Major Event Security</category></item><item><title>Exposed Fuel Tank Gauges: US Gas Stations Face Active Cyberattacks</title><link>https://runtimerebel.com/blog/exposed-fuel-tank-gauges-us-gas-stations-face-active-cyberattacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/exposed-fuel-tank-gauges-us-gas-stations-face-active-cyberattacks</guid><description>Threat actors are actively exploiting Internet-exposed fuel tank gauges at US gas stations, risking significant disruption to fuel supply and operations.</description><pubDate>Fri, 05 Jun 2026 20:42:04 GMT</pubDate><category>Fuel Tank Gauges</category><category>Gas Stations</category><category>Critical Infrastructure</category><category>OT Security</category><category>Exposed Devices</category><category>US</category><category>ICS Security</category></item><item><title>Exposed US Gas Station ATG Systems Threaten Critical Infrastructure</title><link>https://runtimerebel.com/blog/exposed-us-gas-station-atg-systems-threaten-critical-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/exposed-us-gas-station-atg-systems-threaten-critical-infrastructure</guid><description>Over 900 US-based Automatic Tank Gauge (ATG) systems are exposed online, risking fuel theft, physical damage, and environmental incidents via remote access.</description><pubDate>Fri, 05 Jun 2026 16:55:14 GMT</pubDate><category>ATG</category><category>Critical Infrastructure</category><category>Industrial Control Systems</category><category>OT Security</category></item><item><title>China-Linked APTs Target Latin American Critical Infrastructure</title><link>https://runtimerebel.com/blog/china-linked-apts-target-latin-american-critical-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/china-linked-apts-target-latin-american-critical-infrastructure</guid><description>China-linked APTs are conducting widespread cyber espionage against maritime shipping, oil production, and government sectors in Latin America, impacting over a dozen…</description><pubDate>Wed, 03 Jun 2026 21:11:36 GMT</pubDate><category>China Linked APT</category><category>Cyber Espionage</category><category>Latin America</category><category>Critical Infrastructure</category><category>Maritime Shipping</category><category>Oil Production</category></item><item><title>CISA Warns: Critical Infrastructure ATG Systems Under Attack</title><link>https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</guid><description>CISA, FBI, and NSA warn of active cyberattacks targeting internet-exposed Automatic Tank Gauge (ATG) systems in critical infrastructure. Learn to defend.</description><pubDate>Wed, 03 Jun 2026 21:11:09 GMT</pubDate><category>CISA</category><category>FBI</category><category>NSA</category><category>Automatic Tank Gauge</category><category>ATG</category><category>Critical Infrastructure</category><category>OT Security</category><category>ICS Security</category></item><item><title>Hardening Automatic Tank Gauge Systems Against Cyber Threats</title><link>https://runtimerebel.com/blog/hardening-automatic-tank-gauge-systems-against-cyber-threats</link><guid isPermaLink="true">https://runtimerebel.com/blog/hardening-automatic-tank-gauge-systems-against-cyber-threats</guid><description>CISA and partners warn of active cyber threats targeting Automatic Tank Gauge (ATG) systems. Learn to secure critical infrastructure assets now.</description><pubDate>Tue, 02 Jun 2026 21:12:50 GMT</pubDate><category>ATG Systems</category><category>Operational Technology</category><category>ICS Security</category><category>Critical Infrastructure</category><category>CISA Advisory</category><category>Cyber Threat Actors</category><category>Authentication Bypass</category><category>Privilege Escalation</category><category>SQL Injection</category></item><item><title>AI Reshapes Vulnerability Disclosure: Urgent Action for Remediation</title><link>https://runtimerebel.com/blog/ai-reshapes-vulnerability-disclosure-urgent-action-for-remediation</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-reshapes-vulnerability-disclosure-urgent-action-for-remediation</guid><description>AI models accelerate vulnerability discovery, challenging traditional disclosure.</description><pubDate>Mon, 01 Jun 2026 18:10:47 GMT</pubDate><category>AI Security</category><category>Vulnerability Disclosure</category><category>Patch Management</category><category>Technical Debt</category><category>Secure By Design</category><category>Critical Infrastructure</category></item><item><title>Iranian APT33 Targets Aviation with Updated MimicC2 and PowerLess</title><link>https://runtimerebel.com/blog/iranian-apt33-targets-aviation-with-updated-mimicc2-and-powerless</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-apt33-targets-aviation-with-updated-mimicc2-and-powerless</guid><description>Iranian APT Nimbus Manticore (APT33) targets aviation and software firms using new MimicC2 framework and updated PowerLess tools for stealthy operations.</description><pubDate>Tue, 26 May 2026 20:46:55 GMT</pubDate><category>APT33</category><category>Nimbus Manticore</category><category>Iran</category><category>Aviation</category><category>Software</category><category>MimicC2</category><category>PowerLess</category><category>Cyber Espionage</category><category>Critical Infrastructure</category></item><item><title>Iranian Cyber Offensive Targets Critical Fuel Tank Gauge Systems</title><link>https://runtimerebel.com/blog/iranian-cyber-offensive-targets-critical-fuel-tank-gauge-systems</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-cyber-offensive-targets-critical-fuel-tank-gauge-systems</guid><description>Iranian threat actors are targeting insecure automatic tank gauges in fuel infrastructure, posing risks of physical disruption and environmental damage.</description><pubDate>Mon, 18 May 2026 17:04:16 GMT</pubDate><category>Iran</category><category>ATG</category><category>Critical Infrastructure</category><category>OT Security</category><category>Cyber Physical</category></item><item><title>SDR-Based Disruptions in Taiwan Rail Highlight ICS Security Gaps</title><link>https://runtimerebel.com/blog/sdr-based-disruptions-in-taiwan-rail-highlight-ics-security-gaps</link><guid isPermaLink="true">https://runtimerebel.com/blog/sdr-based-disruptions-in-taiwan-rail-highlight-ics-security-gaps</guid><description>An SDR-based interference incident in Taiwan underscores critical vulnerabilities in rail signaling and the need for enhanced OT security protocols.</description><pubDate>Fri, 15 May 2026 05:23:40 GMT</pubDate><category>Taiwan Rail</category><category>SDR Interference</category><category>ICS OT Security</category><category>Critical Infrastructure</category><category>Rail Signaling</category></item><item><title>Addressing AI Hallucinations in Critical Infrastructure Security</title><link>https://runtimerebel.com/blog/addressing-ai-hallucinations-in-critical-infrastructure-security</link><guid isPermaLink="true">https://runtimerebel.com/blog/addressing-ai-hallucinations-in-critical-infrastructure-security</guid><description>Explore how AI hallucinations create systemic risks in critical infrastructure and learn strategies to detect and mitigate these non-deterministic threats.</description><pubDate>Thu, 14 May 2026 12:45:35 GMT</pubDate><category>AI Hallucination</category><category>Critical Infrastructure</category><category>LLM Security</category><category>Operational Technology</category></item><item><title>YoroTrooper Campaign Hits 500+ Orgs: Espionage and Malware Tactics</title><link>https://runtimerebel.com/blog/yorotrooper-campaign-hits-500-orgs-espionage-and-malware-tactics</link><guid isPermaLink="true">https://runtimerebel.com/blog/yorotrooper-campaign-hits-500-orgs-espionage-and-malware-tactics</guid><description>Analysis of the multi-year YoroTrooper phishing campaign targeting critical infrastructure, aviation, and government sectors with custom malware stealers.</description><pubDate>Mon, 11 May 2026 05:25:02 GMT</pubDate><category>YoroTrooper</category><category>Espionage</category><category>Stink Stealer</category><category>Critical Infrastructure</category><category>Phishing</category></item><item><title>Polish Water ICS Breaches: Attackers Alter Operational Parameters</title><link>https://runtimerebel.com/blog/polish-water-ics-breaches-attackers-alter-operational-parameters</link><guid isPermaLink="true">https://runtimerebel.com/blog/polish-water-ics-breaches-attackers-alter-operational-parameters</guid><description>Poland&apos;s ABW reports unauthorized access to five water treatment plants where attackers gained control over operational parameters, risking public safety.</description><pubDate>Fri, 08 May 2026 12:39:04 GMT</pubDate><category>ICS Security</category><category>Poland</category><category>Critical Infrastructure</category><category>OT Security</category><category>SCADA</category></item><item><title>UAE Critical Infrastructure Faces Surge in Geopolitical Cyberattacks</title><link>https://runtimerebel.com/blog/uae-critical-infrastructure-faces-surge-in-geopolitical-cyberattacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/uae-critical-infrastructure-faces-surge-in-geopolitical-cyberattacks</guid><description>Breach attempts against the UAE have tripled following regional tensions, specifically targeting critical infrastructure and government sectors.</description><pubDate>Wed, 06 May 2026 12:49:45 GMT</pubDate><category>UAE</category><category>Middle East</category><category>Critical Infrastructure</category><category>State Sponsored</category><category>Geopolitical Conflict</category></item><item><title>CISA Guidance: Mastering Network Isolation and Recovery</title><link>https://runtimerebel.com/blog/cisa-guidance-mastering-network-isolation-and-recovery</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-guidance-mastering-network-isolation-and-recovery</guid><description>CISA urges critical infrastructure to prioritize network isolation and rapid recovery to counter persistent threats from foreign nation-state actors.</description><pubDate>Wed, 06 May 2026 12:49:04 GMT</pubDate><category>CISA</category><category>Critical Infrastructure</category><category>Volt Typhoon</category><category>Network Segmentation</category><category>Cyber Resilience</category></item><item><title>ABB Symphony Plus Engineering: Fix PostgreSQL RCE Vulnerabilities</title><link>https://runtimerebel.com/blog/abb-symphony-plus-engineering-fix-postgresql-rce-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/abb-symphony-plus-engineering-fix-postgresql-rce-vulnerabilities</guid><description>ABB Ability Symphony Plus Engineering is vulnerable to RCE via legacy PostgreSQL components. Learn how to mitigate CVE-2024-7348 and secure ICS networks.</description><pubDate>Thu, 30 Apr 2026 16:40:58 GMT</pubDate><category>ABB</category><category>Postgresql</category><category>ICS</category><category>CVE-2023-5869</category><category>CVE-2024-7348</category><category>RCE</category><category>Critical Infrastructure</category></item><item><title>Zero Trust Adoption for Operational Technology Security</title><link>https://runtimerebel.com/blog/zero-trust-adoption-for-operational-technology-security</link><guid isPermaLink="true">https://runtimerebel.com/blog/zero-trust-adoption-for-operational-technology-security</guid><description>CISA guidance details adapting Zero Trust principles to Operational Technology (OT) to mitigate IT-OT convergence risks for critical infrastructure.</description><pubDate>Wed, 29 Apr 2026 20:32:48 GMT</pubDate><category>Zero Trust</category><category>Operational Technology</category><category>OT Security</category><category>CISA Guidance</category><category>Critical Infrastructure</category><category>IT OT Convergence</category></item><item><title>Internet-Facing VNC and RDP Expose ICS/OT Systems — Remediation Guide</title><link>https://runtimerebel.com/blog/internet-facing-vnc-and-rdp-expose-ics-ot-systems-remediation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/internet-facing-vnc-and-rdp-expose-ics-ot-systems-remediation-guide</guid><description>Forescout research identifies hundreds of exposed VNC servers in critical sectors, posing severe risks to global industrial control systems and OT environments.</description><pubDate>Wed, 29 Apr 2026 12:42:01 GMT</pubDate><category>VNC</category><category>RDP</category><category>ICS OT</category><category>Critical Infrastructure</category><category>Forescout</category></item><item><title>UK Cyber Chief: Russia, Iran, China Drive Top Cyber Threats</title><link>https://runtimerebel.com/blog/uk-cyber-chief-russia-iran-china-drive-top-cyber-threats</link><guid isPermaLink="true">https://runtimerebel.com/blog/uk-cyber-chief-russia-iran-china-drive-top-cyber-threats</guid><description>NCSC warns British businesses of escalating cyber threats from state-sponsored groups in Russia, Iran, and China, urging preparedness for potential large-scale attacks.</description><pubDate>Wed, 22 Apr 2026 20:26:36 GMT</pubDate><category>UK</category><category>NCSC</category><category>Russia</category><category>Iran</category><category>China</category><category>Nation State</category><category>Cyber Warfare</category><category>Critical Infrastructure</category></item><item><title>Lotus Wiper Analysis: Destructive Malware Targets Venezuelan Energy</title><link>https://runtimerebel.com/blog/lotus-wiper-analysis-destructive-malware-targets-venezuelan-energy</link><guid isPermaLink="true">https://runtimerebel.com/blog/lotus-wiper-analysis-destructive-malware-targets-venezuelan-energy</guid><description>Analysis of Lotus Wiper malware shows how it targets Venezuelan energy infrastructure by overwriting disks and disabling critical system recovery mechanisms.</description><pubDate>Wed, 22 Apr 2026 12:33:39 GMT</pubDate><category>Lotus Wiper</category><category>Venezuela</category><category>Energy Sector</category><category>Wiper Malware</category><category>Critical Infrastructure</category></item><item><title>Lotus Data Wiper Targets Venezuelan Energy Utilities</title><link>https://runtimerebel.com/blog/lotus-data-wiper-targets-venezuelan-energy-utilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/lotus-data-wiper-targets-venezuelan-energy-utilities</guid><description>Analysis of the Lotus data wiper targeting Venezuelan energy and utility firms in 2023. Understand its destructive capabilities and TTPs for defense.</description><pubDate>Tue, 21 Apr 2026 20:23:47 GMT</pubDate><category>Lotus</category><category>Data Wiper</category><category>Venezuela</category><category>Energy Sector</category><category>Utilities</category><category>Critical Infrastructure</category><category>Industrial Control Systems</category><category>Cybereason</category></item><item><title>ZionSiphon Malware: Detecting OT Threats to Israeli Water Systems</title><link>https://runtimerebel.com/blog/zionsiphon-malware-detecting-ot-threats-to-israeli-water-systems</link><guid isPermaLink="true">https://runtimerebel.com/blog/zionsiphon-malware-detecting-ot-threats-to-israeli-water-systems</guid><description>ZionSiphon malware targets Israeli water treatment and desalination infrastructure, establishing persistence and scanning local subnets for OT services.</description><pubDate>Mon, 20 Apr 2026 08:52:37 GMT</pubDate><category>ZionSiphon</category><category>OT Security</category><category>Darktrace</category><category>Israel</category><category>Critical Infrastructure</category></item></channel></rss>