LIVE · cybersecurity feed
Live wire
CISA orders feds to patch Citrix NetScaler RCE flaw by SaturdayUS Disrupts Chinese Hacking Platform Used in Military and Critical Infrastructure AttacksCritical Avada WordPress theme flaw enables zero-click RCECVE-2026-15409 · Edge infrastructure under siege: what two independent datasets reveal about who's exploiting your perimeterAnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodesCVE-2026-60004 · Hackers now exploit critical Gitea flaw in code injection attacksEmployee benefits platform Paylogix says hackers stole financial and health dataU.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure BreachesCVE-2026-61979 · Two CVSS 9.8 Auth Bypasses in miniOrange SAML WordPress Plugin Were Exploited Before Any Database Even Listed the Paid Editions as VulnerableCVE-2024-28224 · A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw
vulnerability

White House bans foreign-made equipment for power generation over cyber backdoor concerns

The Trump administration is banning the acquisition of foreign-made components used to manage electricity and power, alleging that “certain foreign actors are increasingly creating and exploiting vulnerabilities” in the technology.

zeroday.news ·

The White House has issued an executive order prohibiting the acquisition of foreign-made technology used in bulk-power systems, citing concerns over potential cyber backdoors and supply-chain vulnerabilities. The order, signed by President Donald Trump, declares that certain foreign actors are increasingly exploiting weaknesses in these systems, which manage electricity and power generation.

The executive order specifically targets technology for energy transmission lines rated at 69,000 volts or higher, as well as substations, control rooms, power generating stations, and reactors. It also encompasses associated software and firmware that could be remotely accessed or updated by foreign governments. The administration characterized foreign-made bulk-power system electric equipment as an "unusual and extraordinary threat" to the United States.

President Trump stated that during his first term, he identified the bulk-power system as a potential target for malicious acts, including cyber activities, due to the significant risks a successful attack would pose to the economy, public health and safety, and national defense.

The directive mandates that the Departments of Defense, Commerce, and Energy scrutinize transactions involving bulk-power system electric equipment. Federal agencies are also empowered to impose conditions on previously purchased equipment, provided that suitable replacements are available. A list of pre-qualified equipment and vendors is slated for publication.

Senior officials have 120 days to establish rules and regulations, and to identify countries that warrant particular scrutiny under the order's provisions. Agencies are also required to identify existing at-risk bulk-power system electric equipment and submit plans to the White House for its identification, inventory, isolation, monitoring, or replacement as soon as feasible.

While the White House did not specify the immediate catalyst for the executive order, it follows a series of reported cyberattacks on critical infrastructure. Last month, water utilities in at least 12 states experienced cyberattacks, and the federal cyber defense agency observed malicious activity targeting over 100 internet-exposed systems in the water and wastewater sector. Additionally, a small British power plant was reportedly shut down for four days by hackers.

The National Security Agency and FBI recently issued an advisory concerning an artificial intelligence-powered "active threat" to a specific brand of operational technology used across the energy, water, and agricultural sectors. Although no specific countries were officially blamed for these incidents, some experts have pointed to Iranian hackers. U.S. officials have previously attributed critical infrastructure attacks to Russian and Chinese hackers, with the FBI recently disrupting a Chinese botnet reportedly used to breach the Federal Reserve, NASA, and other federal agencies managing critical infrastructure.

Cybersecurity experts and government agencies have consistently warned about the deployment of artificial intelligence by state-backed hackers in attacks on critical infrastructure, which could simplify potentially devastating assaults. Following the executive order, major tech and finance companies, including OpenAI and Google, issued a joint warning that there is a "limited window to strengthen cyber defenses" before AI-enabled cyberattacks become "far more widespread and sophisticated." They emphasized that critical public services, from hospitals to water treatment plants, are at risk and that security teams for critical infrastructure have historically been under-resourced. These companies urged governments to coordinate cyber defense efforts at local, national, and international levels, and to enhance the sharing of actionable threat intelligence.

vulnerability
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerabilityhigh

CISA orders feds to patch Citrix NetScaler RCE flaw by Saturday

CISA has ordered U.S. government agencies to patch their Citrix NetScaler appliances against an actively exploited remote code execution vulnerability by Saturday. [...]

vulnerabilitycritical

Critical Avada WordPress theme flaw enables zero-click RCE

A critical vulnerability chain in the popular Avada theme for WordPress can be exploited by an unauthenticated attacker to execute arbitrary PHP code on the server. [...]

security

Chinese Routers Sold Worldwide Contain Backdoors

An untold numbers of ZBT routers sold around the world as white-label products come with several implants built by the manufacturer.

breach

AI girlfriend review site's secrets were exposed to the world for three weeks

Even testing and staging sites need protection from prying eyes

breach

OpenAI: Hugging Face Incident a “Warning Shot” to the World

OpenAI reveals that unauthorized message boards were at the heart of the recent Hugging Face breach

securitycritical

US Disrupts Chinese Hacking Platform Used in Military and Critical Infrastructure Attacks

The operation focused on a group named QTFY, which offers hacking services to the Chinese government and others. The post US Disrupts Chinese Hacking Platform Used in Military and Critical Infrastructure Attacks appeared first on SecurityWeek.