The National Rural Water Association and a group of cybersecurity experts have formed a program to help cash-strapped utilities face the increase in threats to their systems.

The National Rural Water Association (NRWA) has announced a new initiative, the Water Watch Center (WWC), aimed at bolstering the cybersecurity defenses of small, often underfunded, water and wastewater systems across the United States. This program is a collaborative effort with DEF CON Franklin, an organization that emerged two years ago from veterans of the DEF CON security conference, and several cybersecurity firms.
The WWC will provide direct support and threat intelligence to water utilities serving fewer than 10,000 people. There are over 50,000 community water systems in the U.S., with 91% of them falling into this category. The program's launch comes amid a reported surge in cyberattacks targeting operational technology at water utilities in at least 12 states, with recent incidents reported in Minnesota, Michigan, Georgia, South Dakota, and two towns in New Jersey. These attacks are allegedly linked to Iranian state-sponsored actors, specifically the Iranian Red Guard.
Five managed detection and response providers—Rapid7, Defendify, Legato Security, L1 Secure, and Sentinel Technologies—will partner with DEF CON Franklin and the NRWA. These companies will share threat information and vulnerability patch data, with the NRWA acting as a central hub. Jake Braun, co-founder of DEF CON Franklin and a former cyber official in the Biden administration, stated that this collaboration aims to create a scalable cyber delivery model that has previously eluded the water industry and national security officials. He emphasized that DEF CON Franklin's 450 volunteers will help keep costs down for these utilities, which are fending off sophisticated adversaries.
DEF CON Franklin has a track record of pairing its volunteer cybersecurity experts with water and wastewater utilities in states such as Arizona, Indiana, Oregon, Utah, Vermont, Washington, and Wyoming. While successful, these efforts highlighted the challenge of scaling cybersecurity services to the country's approximately 150,000 water and wastewater utilities, which include community systems and 100,000 public water systems serving schools, factories, office buildings, and hospitals, as well as thousands of systems for temporary populations.
The WWC has already begun work in Maryland, focusing on identifying rural water utilities that require assistance, particularly those supporting military facilities. Matthew Holmes, CEO of NRWA, underscored the increasing cybersecurity risks faced by water systems and the WWC's role in providing trusted resources to secure national water infrastructure.
In addition to direct support, officials behind the WWC are collaborating with Vanderbilt University and the U.S. military to develop digital replicas of water and wastewater system environments. These "digital twins" will allow experts to test and refine automated defensive strategies.
Historically, organizations like the NRWA have expressed concerns about federal government efforts to institute cybersecurity regulations, arguing that such mandates could lead to increased costs for customers. This has prompted some states, including New York, to combine water cybersecurity regulations with grant programs designed to fund the necessary defensive systems.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

OpenAI has announced a $1 billion commitment to provide subsidized access to its Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. The initiative, named Daybreak for Frontline Defenders, will offer AI models, training, and technical support over the next six months, prioritizing water and wastewater utilities, electric grid operators, and local government entities. This move aims to equip organizations with limited budgets and staff against increasingly sophisticated cyber threats.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed