Today’s key themes spotlight the growing pressure on incident response, critical infrastructure threats, and mounting technical debt. Leaders face calls to prepare for severe attack scenarios as attackers innovate with both novel OT malware and supply chain breaches.
OT Security
Iran Conflict Cyber Threat Update — What Has Changed Since Our Initial Briefing
Week 3 of the Iran conflict has brought a significant cyber escalation. Akamai reports a 245% cybercrime increase since Feb 28, with banking/fintech as the top target. The first destructive wiper attack hit a major U.S. company — 80,000 devices wiped via Microsoft Intune. Pre-planted MuddyWater backdoors were discovered in a U.S. bank, airport, and defense firms. Operations are shifting from mass DDoS to intelligence-driven targeting. Updated defensive guidance covering endpoint management hardening, expanded threat hunting, sanctions/legal risk, and geo-aware traffic controls.
Iran Conflict Cybersecurity Threat Briefing — What Western Organizations Need to Know Now
Iran, Operation Epic Fury, Operation Roaring Lion, cyber threat, CISA, critical infrastructure, APT, APT42, Cotton Sandstorm, Muddy Water, Hydro Kitten, AI threats, deepfake, ransomware, Sicarii, BaqiyatLock, OT security, ICS, SCADA, threat briefing, MITRE ATT&CK, incident response, NCSC, hacktivism, DDoS, Handala Hack, Cyber Islamic Resistance, Dark Storm Team, NoName057, information warfare, IRGC, MOIS, spearphishing, credential harvesting, wiper malware, disinformation, cognitive warfare, business continuity, Iran conflict, threat intelligence, cybersecurity news
AI Security Daily Briefing — December 5, 2025
New guidance on securing AI in OT from NSA/CISA, discovery of the Brickstorm virtualization backdoor used by state-linked actors, and industry warnings that detection must replace perimeter defenses as AI-driven threats accelerate.
AI Security Daily Briefing — December 3, 2025
I security for December 3, 2025 centers on new NSA/CISA guidance for safely integrating AI into OT, SandboxAQ’s launch of an AI security posture platform for shadow AI, research showing poetic prompts can jailbreak major models, Experian’s forecast naming AI as the top breach driver for 2026, and TÜV SÜD’s move to formalize AI penetration testing using NIST, OWASP, and MITRE ATLAS.
AI Security Daily Briefing — October 10, 2025
Today’s briefing reveals coordinated exploit campaigns targeting Cisco, Fortinet, and Palo Alto devices; new malware identified in the Oracle EBS zero-day attacks; Google boosts AI bug bounty payouts; and Radiflow launches an AI-powered OT security platform.