<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #OT Security</title><description>Cybersecurity articles tagged #OT Security on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Enhancing OT Security with Cyber Deception Strategies</title><link>https://runtimerebel.com/blog/enhancing-ot-security-with-cyber-deception-strategies</link><guid isPermaLink="true">https://runtimerebel.com/blog/enhancing-ot-security-with-cyber-deception-strategies</guid><description>Implement cyber deception in OT to detect, deter, and understand threats targeting critical infrastructure. Gain vital intelligence from attacker interactions.</description><pubDate>Tue, 08 Sep 2026 12:26:26 GMT</pubDate><category>OT Security</category><category>ICS Security</category><category>Cyber Deception</category><category>Threat Detection</category><category>Critical Infrastructure</category></item><item><title>DoD Refrigeration Outages: Hacking or Malfunction?</title><link>https://runtimerebel.com/blog/dod-refrigeration-outages-hacking-or-malfunction</link><guid isPermaLink="true">https://runtimerebel.com/blog/dod-refrigeration-outages-hacking-or-malfunction</guid><description>Multiple U.S. DoD commissaries report refrigeration outages, leading to speculation of cyberattack amidst a lack of official cause.</description><pubDate>Tue, 01 Sep 2026 02:42:53 GMT</pubDate><category>OT Security</category><category>DoD</category><category>Refrigeration</category><category>Infrastructure</category><category>Supply Chain Resilience</category></item><item><title>TSN Protocols Vulnerabilities Threaten OT Security</title><link>https://runtimerebel.com/blog/tsn-protocols-vulnerabilities-threaten-ot-security</link><guid isPermaLink="true">https://runtimerebel.com/blog/tsn-protocols-vulnerabilities-threaten-ot-security</guid><description>New research reveals how unprotected Time-Sensitive Networking protocols in industrial systems could allow attackers to disrupt physical processes.</description><pubDate>Sun, 23 Aug 2026 16:17:17 GMT</pubDate><category>OT Security</category><category>Industrial Control Systems</category><category>Network Security</category><category>Vulnerabilities</category></item><item><title>RCE Vulnerabilities in Copeland XWEB Pro &amp; Danfoss AK-SM 800A Controllers</title><link>https://runtimerebel.com/blog/rce-vulnerabilities-in-copeland-xweb-pro-danfoss-ak-sm-800a-controllers</link><guid isPermaLink="true">https://runtimerebel.com/blog/rce-vulnerabilities-in-copeland-xweb-pro-danfoss-ak-sm-800a-controllers</guid><description>Claroty Team82 discovered multiple RCE vulnerabilities in Copeland XWEB Pro and Danfoss AK-SM 800A commercial refrigeration controllers.</description><pubDate>Fri, 14 Aug 2026 16:42:26 GMT</pubDate><category>RCE</category><category>Industrial Control Systems</category><category>OT Security</category><category>Copeland XWEB Pro</category><category>Danfoss AK SM 800A</category></item><item><title>Multistate Water System Attacks Target Exposed PLCs</title><link>https://runtimerebel.com/blog/multistate-water-system-attacks-target-exposed-plcs</link><guid isPermaLink="true">https://runtimerebel.com/blog/multistate-water-system-attacks-target-exposed-plcs</guid><description>Attacks targeting poorly secured, internet-exposed PLCs in water systems are widening across multiple U.S. states, with Iran suspected.</description><pubDate>Tue, 11 Aug 2026 08:46:26 GMT</pubDate><category>ICS</category><category>OT Security</category><category>Critical Infrastructure</category><category>Iran</category><category>Water Utilities</category></item><item><title>Private APN Misconfiguration Led to Polish Energy Plant OT Compromise</title><link>https://runtimerebel.com/blog/private-apn-misconfiguration-led-to-polish-energy-plant-ot-compromise</link><guid isPermaLink="true">https://runtimerebel.com/blog/private-apn-misconfiguration-led-to-polish-energy-plant-ot-compromise</guid><description>Hackers compromised a Polish energy plant&apos;s OT network by exploiting a private APN misconfiguration, shutting down a steam turbine and water treatment system.</description><pubDate>Tue, 11 Aug 2026 00:59:03 GMT</pubDate><category>OT Security</category><category>Critical Infrastructure</category><category>FortiGate</category><category>Private APN</category><category>WAGO PLC</category></item><item><title>Siemens ROX II Zero-Day Trilogy: Chained OT Switch Flaws</title><link>https://runtimerebel.com/blog/siemens-rox-ii-zero-day-trilogy-chained-ot-switch-flaws</link><guid isPermaLink="true">https://runtimerebel.com/blog/siemens-rox-ii-zero-day-trilogy-chained-ot-switch-flaws</guid><description>Siemens and Unit 42 disclose three zero-day vulnerabilities in ROX II switches enabling full root compromise. Patch to firmware V2.17.1.</description><pubDate>Sat, 08 Aug 2026 08:34:36 GMT</pubDate><category>Zero-Day</category><category>OT Security</category><category>CVE-2025-40948</category><category>CVE-2025-40947</category><category>CVE-2025-40949</category></item><item><title>CISA Warns: Cyberattacks Disrupting US Water Utilities&apos; PLCs</title><link>https://runtimerebel.com/blog/cisa-warns-cyberattacks-disrupting-us-water-utilities-plcs</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-cyberattacks-disrupting-us-water-utilities-plcs</guid><description>CISA issues an urgent warning regarding increased cyberattacks targeting internet-exposed Programmable Logic Controllers (PLCs) in US water and wastewater systems…</description><pubDate>Fri, 31 Jul 2026 17:42:45 GMT</pubDate><category>CISA</category><category>Water Utilities</category><category>Wastewater Systems</category><category>PLCs</category><category>Industrial Control Systems</category><category>OT Security</category></item><item><title>CISA Urges Water Sector to Secure OT PLCs Amid Coordinated Attacks</title><link>https://runtimerebel.com/blog/cisa-urges-water-sector-to-secure-ot-plcs-amid-coordinated-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-urges-water-sector-to-secure-ot-plcs-amid-coordinated-attacks</guid><description>CISA warns water and wastewater utilities to secure internet-exposed OT controllers after coordinated intrusions targeted dozens of Minnesota systems.</description><pubDate>Fri, 31 Jul 2026 02:56:02 GMT</pubDate><category>CISA</category><category>Water Sector</category><category>Wastewater</category><category>OT Security</category><category>PLCs</category><category>Industrial Control Systems</category><category>Minnesota</category></item><item><title>Data Center Risk: 20% of CPS Assets Exposed to Attack</title><link>https://runtimerebel.com/blog/data-center-risk-20-of-cps-assets-exposed-to-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/data-center-risk-20-of-cps-assets-exposed-to-attack</guid><description>Claroty research reveals 1 in 5 data center cyber-physical systems are exposed to the internet, creating risks for physical disruption and lateral movement.</description><pubDate>Thu, 30 Jul 2026 10:27:18 GMT</pubDate><category>Claroty</category><category>Cyber Physical Systems</category><category>BMS</category><category>Data Center Security</category><category>OT Security</category></item><item><title>Coordinated OT Attack Targets 30+ Minnesota Water Utilities</title><link>https://runtimerebel.com/blog/coordinated-ot-attack-targets-30-minnesota-water-utilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/coordinated-ot-attack-targets-30-minnesota-water-utilities</guid><description>Over 30 Minnesota water utilities were targeted in a coordinated cyberattack on operational technology, prompting a statewide incident response and investigation.</description><pubDate>Wed, 29 Jul 2026 17:17:22 GMT</pubDate><category>OT Security</category><category>Critical Infrastructure</category><category>Minnesota</category><category>ICS</category><category>Water Utility</category></item><item><title>CISA &amp; ACSC Advise Isolating OT Systems During Cyberattacks</title><link>https://runtimerebel.com/blog/cisa-acsc-advise-isolating-ot-systems-during-cyberattacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-acsc-advise-isolating-ot-systems-during-cyberattacks</guid><description>CISA and ACSC urge critical infrastructure to prepare isolating operational technology systems during cyberattacks to maintain essential services and limit impact.</description><pubDate>Tue, 28 Jul 2026 21:10:24 GMT</pubDate><category>CISA</category><category>ACSC</category><category>Critical Infrastructure</category><category>OT Security</category><category>Cyberattack Preparedness</category><category>Industrial Control Systems</category><category>Incident Response</category></item><item><title>OT Security Startup Frenos Secures $1.52 Million for AI R&amp;D</title><link>https://runtimerebel.com/blog/ot-security-startup-frenos-secures-1-52-million-for-ai-r-d</link><guid isPermaLink="true">https://runtimerebel.com/blog/ot-security-startup-frenos-secures-1-52-million-for-ai-r-d</guid><description>Frenos raises $1.52 million in seed funding to expand AI research and development focused on securing industrial control systems and operational technology.</description><pubDate>Tue, 28 Jul 2026 14:10:52 GMT</pubDate><category>Frenos</category><category>OT Security</category><category>ICS Security</category><category>AI Security</category><category>Critical Infrastructure</category></item><item><title>Iranian Hackers Target Siemens, Schneider, Rockwell ICS PLCs</title><link>https://runtimerebel.com/blog/iranian-hackers-target-siemens-schneider-rockwell-ics-plcs</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-hackers-target-siemens-schneider-rockwell-ics-plcs</guid><description>US federal agencies warn of Iranian hackers actively targeting Siemens, Schneider Electric, and Rockwell Automation ICS PLCs. Defenders must secure OT environments.</description><pubDate>Thu, 23 Jul 2026 06:32:12 GMT</pubDate><category>Iranian Hackers</category><category>ICS Security</category><category>OT Security</category><category>Siemens</category><category>Schneider Electric</category><category>Rockwell Automation</category><category>PLCs</category></item><item><title>Recognizing Excellence: The Critical Impact Awards in Industrial Cybersecurity</title><link>https://runtimerebel.com/blog/recognizing-excellence-the-critical-impact-awards-in-industrial-cybersecurity</link><guid isPermaLink="true">https://runtimerebel.com/blog/recognizing-excellence-the-critical-impact-awards-in-industrial-cybersecurity</guid><description>SecurityWeek launches Critical Impact Awards to honor innovations and proven impact in industrial cybersecurity, highlighting the importance of OT security.</description><pubDate>Tue, 21 Jul 2026 13:56:33 GMT</pubDate><category>Industrial Cybersecurity</category><category>ICS Security</category><category>OT Security</category><category>SecurityWeek</category><category>Critical Impact Awards</category><category>Cybersecurity Awards</category><category>Industry Recognition</category></item><item><title>OT Security: Legacy System Vulnerabilities in Critical Infrastructure</title><link>https://runtimerebel.com/blog/ot-security-legacy-system-vulnerabilities-in-critical-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/ot-security-legacy-system-vulnerabilities-in-critical-infrastructure</guid><description>Addressing the complex challenges of securing legacy OT systems in critical infrastructure, balancing vulnerability disclosure with operational continuity and safety.</description><pubDate>Thu, 16 Jul 2026 17:24:03 GMT</pubDate><category>OT Security</category><category>Legacy Systems</category><category>Critical Infrastructure</category><category>Vulnerability Management</category><category>ICS Security</category></item><item><title>Cal Water Incident: No OT Impact Confirmed After Handala Claims</title><link>https://runtimerebel.com/blog/cal-water-incident-no-ot-impact-confirmed-after-handala-claims</link><guid isPermaLink="true">https://runtimerebel.com/blog/cal-water-incident-no-ot-impact-confirmed-after-handala-claims</guid><description>An investigation revealed no operational technology compromise at Cal Water despite claims by Iranian hacker group Handala to disrupt water supply.</description><pubDate>Thu, 25 Jun 2026 13:05:10 GMT</pubDate><category>Cal Water</category><category>Handala</category><category>Critical Infrastructure</category><category>OT Security</category><category>Cyberattack</category><category>Water Utility</category><category>Disinformation</category></item><item><title>The Gentlemen Ransomware Halts Mackay Sugar Operations</title><link>https://runtimerebel.com/blog/the-gentlemen-ransomware-halts-mackay-sugar-operations</link><guid isPermaLink="true">https://runtimerebel.com/blog/the-gentlemen-ransomware-halts-mackay-sugar-operations</guid><description>Mackay Sugar, Australia&apos;s second-largest sugar producer, suffered a ransomware attack by &apos;The Gentlemen&apos; group, halting mill operations and impacting critical…</description><pubDate>Mon, 15 Jun 2026 17:49:18 GMT</pubDate><category>Ransomware</category><category>The Gentlemen</category><category>Mackay Sugar</category><category>Critical Infrastructure</category><category>Australia</category><category>OT Security</category></item><item><title>ICS Exposure Persists as OT Attack Surface Expands</title><link>https://runtimerebel.com/blog/ics-exposure-persists-as-ot-attack-surface-expands</link><guid isPermaLink="true">https://runtimerebel.com/blog/ics-exposure-persists-as-ot-attack-surface-expands</guid><description>Analysis of Industrial Control System (ICS) exposure, its persistence amidst expanding attack surfaces, and vital steps for operational technology security.</description><pubDate>Sat, 13 Jun 2026 01:04:32 GMT</pubDate><category>ICS</category><category>OT Security</category><category>Critical Infrastructure</category><category>Attack Surface</category></item><item><title>Exposed Fuel Tank Gauges: US Gas Stations Face Active Cyberattacks</title><link>https://runtimerebel.com/blog/exposed-fuel-tank-gauges-us-gas-stations-face-active-cyberattacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/exposed-fuel-tank-gauges-us-gas-stations-face-active-cyberattacks</guid><description>Threat actors are actively exploiting Internet-exposed fuel tank gauges at US gas stations, risking significant disruption to fuel supply and operations.</description><pubDate>Fri, 05 Jun 2026 20:42:04 GMT</pubDate><category>Fuel Tank Gauges</category><category>Gas Stations</category><category>Critical Infrastructure</category><category>OT Security</category><category>Exposed Devices</category><category>US</category><category>ICS Security</category></item><item><title>Exposed US Gas Station ATG Systems Threaten Critical Infrastructure</title><link>https://runtimerebel.com/blog/exposed-us-gas-station-atg-systems-threaten-critical-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/exposed-us-gas-station-atg-systems-threaten-critical-infrastructure</guid><description>Over 900 US-based Automatic Tank Gauge (ATG) systems are exposed online, risking fuel theft, physical damage, and environmental incidents via remote access.</description><pubDate>Fri, 05 Jun 2026 16:55:14 GMT</pubDate><category>ATG</category><category>Critical Infrastructure</category><category>Industrial Control Systems</category><category>OT Security</category></item><item><title>CISA Warns: Critical Infrastructure ATG Systems Under Attack</title><link>https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</guid><description>CISA, FBI, and NSA warn of active cyberattacks targeting internet-exposed Automatic Tank Gauge (ATG) systems in critical infrastructure. Learn to defend.</description><pubDate>Wed, 03 Jun 2026 21:11:09 GMT</pubDate><category>CISA</category><category>FBI</category><category>NSA</category><category>Automatic Tank Gauge</category><category>ATG</category><category>Critical Infrastructure</category><category>OT Security</category><category>ICS Security</category></item><item><title>CVE-2026-4293: Kieback &amp; Peter DDC XSS — Mitigate Building Controller Risks</title><link>https://runtimerebel.com/blog/cve-2026-4293-kieback-peter-ddc-xss-mitigate-building-controller-risks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-4293-kieback-peter-ddc-xss-mitigate-building-controller-risks</guid><description>CISA warns of CVE-2026-4293, a Cross-site Scripting vulnerability in Kieback &amp; Peter DDC Building Controllers.</description><pubDate>Tue, 19 May 2026 20:43:11 GMT</pubDate><category>Kieback Peter</category><category>DDC Building Controllers</category><category>CVE-2026-4293</category><category>XSS</category><category>Cross Site Scripting</category><category>ICS</category><category>OT Security</category><category>Building Automation</category><category>CWE-79</category></item><item><title>Universal Robots PolyScope 5 RCE via CVE-2024-8153 — Patch Now</title><link>https://runtimerebel.com/blog/universal-robots-polyscope-5-rce-via-cve-2024-8153-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/universal-robots-polyscope-5-rce-via-cve-2024-8153-patch-now</guid><description>Critical OS command injection vulnerability in Universal Robots PolyScope 5 allows attackers to compromise industrial robot fleets. Patch to version 5.19.0.</description><pubDate>Tue, 19 May 2026 09:21:38 GMT</pubDate><category>CVE-2024-8153</category><category>Universal Robots</category><category>PolyScope</category><category>OT Security</category><category>Command Injection</category></item><item><title>Iranian Cyber Offensive Targets Critical Fuel Tank Gauge Systems</title><link>https://runtimerebel.com/blog/iranian-cyber-offensive-targets-critical-fuel-tank-gauge-systems</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-cyber-offensive-targets-critical-fuel-tank-gauge-systems</guid><description>Iranian threat actors are targeting insecure automatic tank gauges in fuel infrastructure, posing risks of physical disruption and environmental damage.</description><pubDate>Mon, 18 May 2026 17:04:16 GMT</pubDate><category>Iran</category><category>ATG</category><category>Critical Infrastructure</category><category>OT Security</category><category>Cyber Physical</category></item><item><title>Polish Water ICS Breaches: Attackers Alter Operational Parameters</title><link>https://runtimerebel.com/blog/polish-water-ics-breaches-attackers-alter-operational-parameters</link><guid isPermaLink="true">https://runtimerebel.com/blog/polish-water-ics-breaches-attackers-alter-operational-parameters</guid><description>Poland&apos;s ABW reports unauthorized access to five water treatment plants where attackers gained control over operational parameters, risking public safety.</description><pubDate>Fri, 08 May 2026 12:39:04 GMT</pubDate><category>ICS Security</category><category>Poland</category><category>Critical Infrastructure</category><category>OT Security</category><category>SCADA</category></item><item><title>Claude AI Guided Hackers Toward OT Assets During Water Utility Intrusion</title><link>https://runtimerebel.com/blog/claude-ai-guided-hackers-toward-ot-assets-during-water-utility-intrusion</link><guid isPermaLink="true">https://runtimerebel.com/blog/claude-ai-guided-hackers-toward-ot-assets-during-water-utility-intrusion</guid><description>Threat actors utilized Anthropic’s Claude AI to navigate OT environments during a water utility breach, highlighting the rising risk of AI-assisted ICS attacks.</description><pubDate>Thu, 07 May 2026 08:59:57 GMT</pubDate><category>Claude AI</category><category>OT Security</category><category>Water Utility Breach</category><category>ICS Security</category><category>Dragos</category></item><item><title>Zero Trust Adoption for Operational Technology Security</title><link>https://runtimerebel.com/blog/zero-trust-adoption-for-operational-technology-security</link><guid isPermaLink="true">https://runtimerebel.com/blog/zero-trust-adoption-for-operational-technology-security</guid><description>CISA guidance details adapting Zero Trust principles to Operational Technology (OT) to mitigate IT-OT convergence risks for critical infrastructure.</description><pubDate>Wed, 29 Apr 2026 20:32:48 GMT</pubDate><category>Zero Trust</category><category>Operational Technology</category><category>OT Security</category><category>CISA Guidance</category><category>Critical Infrastructure</category><category>IT OT Convergence</category></item><item><title>Securing Serial-to-IP Devices: Mitigating Thousands of OT Bugs</title><link>https://runtimerebel.com/blog/securing-serial-to-ip-devices-mitigating-thousands-of-ot-bugs</link><guid isPermaLink="true">https://runtimerebel.com/blog/securing-serial-to-ip-devices-mitigating-thousands-of-ot-bugs</guid><description>Industrial serial-to-IP converters are riddled with thousands of vulnerabilities, posing a significant risk to legacy infrastructure and OT environments.</description><pubDate>Mon, 20 Apr 2026 20:19:45 GMT</pubDate><category>OT Security</category><category>ICS</category><category>Serial to IP</category><category>Industrial Networking</category><category>Legacy Systems</category></item><item><title>ZionSiphon Malware: Detecting OT Threats to Israeli Water Systems</title><link>https://runtimerebel.com/blog/zionsiphon-malware-detecting-ot-threats-to-israeli-water-systems</link><guid isPermaLink="true">https://runtimerebel.com/blog/zionsiphon-malware-detecting-ot-threats-to-israeli-water-systems</guid><description>ZionSiphon malware targets Israeli water treatment and desalination infrastructure, establishing persistence and scanning local subnets for OT services.</description><pubDate>Mon, 20 Apr 2026 08:52:37 GMT</pubDate><category>ZionSiphon</category><category>OT Security</category><category>Darktrace</category><category>Israel</category><category>Critical Infrastructure</category></item><item><title>Analyzing ZionSiphon: Malware Targeting Water Treatment OT Systems</title><link>https://runtimerebel.com/blog/analyzing-zionsiphon-malware-targeting-water-treatment-ot-systems</link><guid isPermaLink="true">https://runtimerebel.com/blog/analyzing-zionsiphon-malware-targeting-water-treatment-ot-systems</guid><description>Investigate ZionSiphon malware, an OT-specific threat designed to sabotage water treatment and desalination facilities.</description><pubDate>Fri, 17 Apr 2026 00:44:40 GMT</pubDate><category>ZionSiphon</category><category>OT Security</category><category>ICS Security</category><category>Water Treatment</category><category>Critical Infrastructure</category><category>Sabotage</category></item><item><title>OT Cryptographic Readiness: Addressing the PQC Attestation Gap</title><link>https://runtimerebel.com/blog/ot-cryptographic-readiness-addressing-the-pqc-attestation-gap</link><guid isPermaLink="true">https://runtimerebel.com/blog/ot-cryptographic-readiness-addressing-the-pqc-attestation-gap</guid><description>OT asset owners struggle to meet regulatory PQC attestation requirements due to a lack of visibility tools, creating a false sense of security in ICS environments.</description><pubDate>Mon, 13 Apr 2026 20:26:06 GMT</pubDate><category>ICS Security</category><category>OT Security</category><category>Post Quantum Cryptography</category><category>Compliance</category><category>PQC</category></item><item><title>Iranian Hackers Targeting U.S. Critical Infrastructure via PLCs</title><link>https://runtimerebel.com/blog/iranian-hackers-targeting-u-s-critical-infrastructure-via-plcs</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-hackers-targeting-u-s-critical-infrastructure-via-plcs</guid><description>U.S. agencies warn of Iran-linked hackers disrupting critical infrastructure by exploiting internet-exposed PLCs to manipulate data and halt operations.</description><pubDate>Wed, 08 Apr 2026 08:32:44 GMT</pubDate><category>PLC Security</category><category>Critical Infrastructure</category><category>OT Security</category><category>Iran Affiliated Hackers</category><category>ICS</category></item><item><title>Iran-Linked Cyber Av3ngers Target US Water Sector PLCs</title><link>https://runtimerebel.com/blog/iran-linked-cyber-av3ngers-target-us-water-sector-plcs</link><guid isPermaLink="true">https://runtimerebel.com/blog/iran-linked-cyber-av3ngers-target-us-water-sector-plcs</guid><description>US federal agencies warn of Iran-linked Cyber Av3ngers targeting Unitronics PLCs in critical infrastructure. Learn how to detect and mitigate these OT attacks.</description><pubDate>Wed, 08 Apr 2026 04:54:42 GMT</pubDate><category>Cyber Av3ngers</category><category>PLC</category><category>Unitronics</category><category>OT Security</category><category>Iran</category></item><item><title>Iranian APT Exploits Rockwell Automation PLCs: Securing Critical Infrastructure OT Devices</title><link>https://runtimerebel.com/blog/iranian-apt-exploits-rockwell-automation-plcs-securing-critical-infrastructure-ot-devices</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-apt-exploits-rockwell-automation-plcs-securing-critical-infrastructure-ot-devices</guid><description>Iranian-affiliated APT actors are exploiting internet-facing Rockwell Automation PLCs, disrupting US critical infrastructure.</description><pubDate>Tue, 07 Apr 2026 20:21:14 GMT</pubDate><category>Iranian APT</category><category>Cyber Av3ngers</category><category>Rockwell Automation</category><category>Allen Bradley</category><category>PLC</category><category>OT Security</category><category>Critical Infrastructure</category><category>HMI</category><category>SCADA</category><category>Government</category><category>Water and Wastewater</category><category>Energy</category></item><item><title>Iranian-Linked Actors Target Rockwell/Allen-Bradley PLCs in U.S. Critical Infrastructure</title><link>https://runtimerebel.com/blog/iranian-linked-actors-target-rockwell-allen-bradley-plcs-in-u-s-critical-infrastructure</link><guid isPermaLink="true">https://runtimerebel.com/blog/iranian-linked-actors-target-rockwell-allen-bradley-plcs-in-u-s-critical-infrastructure</guid><description>U.S. critical infrastructure faces threats from Iranian-linked actors targeting internet-exposed Rockwell/Allen-Bradley PLCs. Learn about the risk and mitigations.</description><pubDate>Tue, 07 Apr 2026 20:18:47 GMT</pubDate><category>Iranian Linked Threat Actors</category><category>Critical Infrastructure</category><category>ICS SCADA</category><category>Rockwell Automation</category><category>Allen Bradley PLCs</category><category>OT Security</category><category>U S Critical Infrastructure</category></item><item><title>Industrial OT Attacks With Physical Consequences Decline 25%</title><link>https://runtimerebel.com/blog/industrial-ot-attacks-with-physical-consequences-decline-25</link><guid isPermaLink="true">https://runtimerebel.com/blog/industrial-ot-attacks-with-physical-consequences-decline-25</guid><description>Physical-impact cyberattacks on operational technology fell 25% in 2023, driven by a ransomware lull and complex technical barriers in OT environments.</description><pubDate>Fri, 27 Mar 2026 16:26:47 GMT</pubDate><category>OT Security</category><category>Critical Infrastructure</category><category>Industrial Control Systems</category><category>Waterfall Security</category><category>Volt Typhoon</category></item><item><title>CVE-2025-57176: Unauthenticated File Upload in Ceragon Siklu Devices</title><link>https://runtimerebel.com/blog/cve-2025-57176-unauthenticated-file-upload-in-ceragon-siklu-devices</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2025-57176-unauthenticated-file-upload-in-ceragon-siklu-devices</guid><description>An unauthenticated file upload vulnerability (CVE-2025-57176) in Ceragon Siklu MultiHaul and EtherHaul series devices poses risks to critical communications…</description><pubDate>Tue, 10 Mar 2026 20:15:45 GMT</pubDate><category>CVE-2025-57176</category><category>Ceragon</category><category>Siklu</category><category>MultiHaul</category><category>EtherHaul</category><category>Unauthenticated File Upload</category><category>CWE-434</category><category>ICS</category><category>OT Security</category></item><item><title>Kai Emerges with $125M for AI-Driven IT/OT Security Platform</title><link>https://runtimerebel.com/blog/kai-emerges-with-125m-for-ai-driven-it-ot-security-platform</link><guid isPermaLink="true">https://runtimerebel.com/blog/kai-emerges-with-125m-for-ai-driven-it-ot-security-platform</guid><description>Kai Security launches from stealth with $125M to address IT and OT convergence risks using an AI-powered platform for industrial environment protection.</description><pubDate>Tue, 10 Mar 2026 16:29:03 GMT</pubDate><category>Kai Security</category><category>OT Security</category><category>IT OT Convergence</category><category>Industrial Control Systems</category><category>Amir Zilberstein</category></item><item><title>Nation-State Cyber Operation: Israel&apos;s Compromise of Iranian Traffic Cameras</title><link>https://runtimerebel.com/blog/nation-state-cyber-operation-israel-s-compromise-of-iranian-traffic-cameras</link><guid isPermaLink="true">https://runtimerebel.com/blog/nation-state-cyber-operation-israel-s-compromise-of-iranian-traffic-cameras</guid><description>Analysis of the reported Israeli cyber operation targeting Iranian traffic cameras, detailing implications for critical infrastructure security and cyber-physical…</description><pubDate>Thu, 05 Mar 2026 20:17:25 GMT</pubDate><category>Israel</category><category>Iran</category><category>Traffic Cameras</category><category>Cyber Espionage</category><category>Nation State Attack</category><category>Critical Infrastructure</category><category>OT Security</category></item><item><title>Mobiliti e-mobi.hu EV Chargers: Critical Auth Bypass &amp; DoS Vulnerabilities</title><link>https://runtimerebel.com/blog/mobiliti-e-mobi-hu-ev-chargers-critical-auth-bypass-dos-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/mobiliti-e-mobi-hu-ev-chargers-critical-auth-bypass-dos-vulnerabilities</guid><description>Critical vulnerabilities in Mobiliti e-mobi.hu EV charging stations (all versions) allow unauthenticated attackers to gain administrative control or disrupt services.</description><pubDate>Tue, 03 Mar 2026 20:14:21 GMT</pubDate><category>CVE-2026-26051</category><category>CVE-2026-20882</category><category>CVE-2026-27764</category><category>CVE-2026-27777</category><category>Mobiliti E Mobi Hu</category><category>EV Charging</category><category>ICS Security</category><category>OT Security</category><category>Energy Sector</category><category>Transportation Systems</category><category>Missing Authentication</category><category>Denial of Service</category></item><item><title>Honeywell IQ4 Vulnerability: Assessing Internet Exposure &amp; Impact</title><link>https://runtimerebel.com/blog/honeywell-iq4-vulnerability-assessing-internet-exposure-impact</link><guid isPermaLink="true">https://runtimerebel.com/blog/honeywell-iq4-vulnerability-assessing-internet-exposure-impact</guid><description>A researcher claims thousands of internet-exposed Honeywell IQ4 building controllers are vulnerable. Understand the potential impact and mitigation strategies.</description><pubDate>Tue, 03 Mar 2026 16:24:11 GMT</pubDate><category>Honeywell IQ4</category><category>Building Management Systems</category><category>ICS Security</category><category>OT Security</category><category>SCADA</category></item><item><title>Quantitative Scoring for OT Incidents: The Richter Scale Model</title><link>https://runtimerebel.com/blog/quantitative-scoring-for-ot-incidents-the-richter-scale-model</link><guid isPermaLink="true">https://runtimerebel.com/blog/quantitative-scoring-for-ot-incidents-the-richter-scale-model</guid><description>Analysis of a new logarithmic scoring system designed to quantify the physical magnitude and technical severity of operational technology (OT) cyberattacks.</description><pubDate>Wed, 25 Feb 2026 12:28:19 GMT</pubDate><category>OT Security</category><category>ICS</category><category>Incident Response</category><category>Risk Assessment</category><category>Cyber Physical Systems</category><category>Industrial Security</category></item><item><title>Analysis of ICS Vulnerability Surges and Targeted Healthcare Ransomware Campaigns</title><link>https://runtimerebel.com/blog/analysis-of-ics-vulnerability-surges-and-targeted-healthcare-ransomware-campaigns</link><guid isPermaLink="true">https://runtimerebel.com/blog/analysis-of-ics-vulnerability-surges-and-targeted-healthcare-ransomware-campaigns</guid><description>An investigation into the escalation of vulnerabilities within Industrial Control Systems (ICS) and the resulting operational disruptions in the US healthcare sector…</description><pubDate>Mon, 23 Feb 2026 05:34:16 GMT</pubDate><category>ICS</category><category>Ransomware</category><category>Healthcare</category><category>OT Security</category><category>Data Breach</category></item></channel></rss>