• Hackers are using evolved capabilities in AI-generated malware to

    From TechnologyDaily@1337:1/100 to All on Thu Aug 20 18:30:24 2026
    Hackers are using evolved capabilities in AI-generated malware to hit US critical infrastructure at an unprecedented scale active threat currently hitting energy, water and agricultural industries

    Date:
    Thu, 20 Aug 2026 17:15:00 +0000

    Description:
    The attackers are exploiting internet-facing Siemens S7 Series programmable logic controllers to scout for potential targets.

    FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Siemens S7 Series programmable logic controllers are being hit in a new critical infrastructure attack against energy, water and agriculture Attackers are using AI-generated
    malware to chain exploitations, and hiding their malicious software as a monitoring tool The identity of the attackers is not known A joint warning issued by federal agencies has warned that US critical infrastructure is facing an active threat in the form of AI-generated malware specifically targeting programmable logic controllers (PLCs).

    PLCs are widely used across the energy, water and agricultural industries to control pumps and monitor systems. The attacks have been labelled as an evolution in attacker capabilities, with the AI systems capable of chaining exploitations to gain control of PLCs. The warning comes from the National Security Agency (NSA) and FBI, alongside other federal agencies who said in
    an advisory that, This is not a theoretical risk it is an active threat. Latest Videos From TechRadar Watch full video here: Siemens S7 Series PLCs under active attack The advisory warns that Siemens S7 Series PLCs are the chosen target of this latest campaign with the attackers leveraging AI-assisted development in their penetration.

    Depending on the specific circumstances, exploitation of poorly protected
    PLCs could lead to disruption of critical industrial processes, safety incidents, downtime or equipment damage, compromise of sensitive data, compliance violations, and cascading impacts across interconnected systems, the advisory warns. You may like Experts warn hackers are using AI chatbots
    to write malware using natural language NSA warns that cybercriminals are targeting this one critical component that the energy, chemical, food, agriculture, and transportation sectors rely on - here's what we know Over 30 Minnesota utilities hit in coordinated cyberattack by apparent Iranian attackers

    The identity of the attackers has not been revealed, but critical infrastructure systems are a favorite target of state-sponsored groups
    looking to scout out potential targets to later cripple water treatment and disrupt energy supplies.

    The hackers are locating vulnerable PLCs using internet scanning platforms
    and disguising the malware as monitoring tools in order to evade detection.
    To defend against this attack vector, the advisory said that PLCs should be isolated from the internet, with software updates performed as soon as they become available. Are you a pro? Subscribe to our newsletter Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me with news and offers from other Future brands Receive email from us on behalf of our trusted partners
    or sponsors By submitting your information you agree to the Terms &
    Conditions and Privacy Policy and are aged 16 or over.

    The advisory said that the attacks are an evolution in threat actor capabilities, with the AI generated scripts dramatically reducing the technical expertise and time required to develop working exploitation scripts and malicious tools. Who has been targeting critical infrastructure? The US war with Iran has led to a significant increase in attacks against critical infrastructure.

    In July 2026, an attack against the operational technology of 30 Minnesota community water systems showed indications of Iranian involvement. Shortly before the attack CISA updated an advisory warning that Rockwell Automation, Schneider Electric, and Siemens PLCs were under active attack. What to read next Hackers target data center equipment, including critical power devices
    US and security allies warn Russian attacks on critical infrastructure are ramping up The new reality of critical infrastructure security in the age of hybrid threats

    April saw Rockwell Automation/Allen-Bradley-manufactured PLCs were exploited in attacks against water and energy systems , as well as to compromise Government Services and Facilities.

    Automatic Tank Gauge (ATG) systems have also been hit during attacks targeting energy, chemical, food, agriculture, and transportation industries. These systems were also found to be largely internet-facing, and when compromised could allow attackers to turn off systems designed to monitor
    fuel levels, temperature and potential leaks.

    Russia has also been involved in targeting critical infrastructure at a
    global scale. The attacks hit broken and poorly configured networking devices such as routers that had passed their End-of-Life (EoL) and were no longer receiving updates. Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.



    ======================================================================
    Link to news story: https://www.techradar.com/pro/security/hackers-are-using-evolved-capabilities- in-ai-generated-malware-to-hit-us-critical-infrastructure-at-an-unprecedented- scale-active-threat-currently-hitting-energy-water-and-agricultural-industries


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)