Iran-linked hackers successfully shut down a UK power plant for four days in an attack that demonstrated real-world operational impact against critical energy infrastructure. The incident has prompted concerns about the vulnerability of Britain's distributed energy systems and the risk of similar attacks being repeated against other facilities.
The U.S. has indicted Iranian cyber espionage operations while Medusa ransomware has compromised over 500 organizations, highlighting active threats across state-sponsored and criminal landscapes. Attackers are actively exploiting a critical Windows protocol vulnerability, demonstrating how legacy systems remain prime targets for threat actors.
Cybersecurity researchers have attributed a malicious backdoor discovered in compromised Rust packages to North Korean threat actors, connecting it to their historical supply chain attack campaigns. This incident demonstrates continued efforts by the nation-state group to infiltrate software dependencies and gain access to downstream users and organizations.