The National Security Agency (NSA), FBI and other federal agencies said the campaign is targeting Siemens S7 Series PLCs and was being fueled by “AI-assisted development” alongside exploitation of known vulnerabilities.

Federal agencies have issued an urgent warning regarding an active threat targeting critical infrastructure organizations, noting an evolution in attacker capabilities driven by the use of AI-generated exploit scripts. The National Security Agency (NSA) and the FBI, among other federal bodies, advised organizations to prioritize response efforts, particularly concerning programmable logic controllers (PLCs) used in critical sectors like energy, water, and agriculture.
The campaign specifically targets Siemens S7 Series PLCs, with threat actors employing AI-assisted development and exploiting known vulnerabilities. These unidentified attackers are conducting reconnaissance and developing capabilities against U.S.-based Siemens PLC installations. They are using internet scanning platforms to locate PLCs exposed online and deploying AI-generated exploitation scripts disguised as legitimate monitoring tools.
Federal agencies emphasized that this is not a theoretical risk, but an active threat that could lead to significant disruptions, safety incidents, equipment damage, data compromise, and cascading impacts across interconnected systems if poorly protected PLCs are exploited.
The use of AI to generate these exploitation scripts is considered a significant advancement in threat actor capabilities. It dramatically reduces the technical expertise and time required to develop functional Industrial Control System (ICS) exploitation scripts and malicious tools. AI also assists attackers in rapidly adapting to defensive measures, enabling them to create custom tools that mimic legitimate operational technology monitoring solutions.
While the advisory focuses on Siemens-specific content, it clarifies that this is part of a broader threat landscape. In July, federal agencies had reported that Iran-affiliated hackers were targeting PLCs from various manufacturers, including Schneider Electric, Rockwell Automation, and Allen-Bradley, in addition to Siemens.
The current activity is believed to be persistent reconnaissance, aimed at developing capabilities and preparing to cause operational effects against critical infrastructure. Siemens PLCs are widely used in the defense industry, as well as in water, power, and manufacturing sectors. Concerns were heightened two weeks prior to the advisory when numerous water utilities across at least 12 states reported cyber intrusions, also allegedly involving Iranian actors targeting PLCs. The latest advisory expands the scope of this campaign beyond water and wastewater facilities.
Organizations are strongly urged to isolate PLCs from the internet, install all available patches, and enable security tooling to monitor for threat activity. Experts note that AI has compressed the time between a vulnerability's publication and the availability of a working exploit script, making it accessible to individuals who previously lacked the technical skills to create them. Many end-users of PLCs may be unaware of their exposure, often due to third-party vendor configurations. The ultimate risk, if reconnaissance is allowed to mature, is not merely a data breach but a loss of view and control over physical processes, potentially leading to critical systems operating in an unmonitored state.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.