Medusa ransomware update highlights critical-infrastructure exposure
Cybersecurity Insiders reports that an updated joint advisory from the FBI, CISA, and HHS says Medusa ransomware has affected more than 500 U.S. critical-infrastructure organizations, compared with roughly 300 a year earlier. The article identifies impacted sectors including healthcare, the defense industrial base, critical manufacturing, government services and facilities, IT, and finance. It highlights the advisory’s core mitigations — phishing-resistant multifactor authentication for remote access, timely patching of public-facing systems, and network segmentation — as primary steps to reduce exposure to Medusa attacks.
Source: https://www.cybersecurity-insiders.com/medusa-ransomware/
Water-utility incidents underscore risk from internet-facing control devices
ClearanceJobs reports recent intrusions at dozens of U.S. water and wastewater utilities that targeted internet-facing industrial-control devices. According to the article, operators at several facilities temporarily shifted to manual control while investigating unauthorized access. Reported activity included access to programmable logic controllers, changes to administrator credentials and configuration settings, and disruption of automated processes. ClearanceJobs states the incidents did not result in unsafe drinking water but exposed weaknesses in ICS and SCADA environments, highlighting risks posed by directly accessible control devices.
India’s reported 2026 power-sector cybersecurity framework brings OT into scope
Threatsys reports that India’s Central Electricity Authority Cyber Security in Power Sector Regulations, 2026 establish a binding cybersecurity framework for power-sector systems and explicitly bring operational technology into scope. The coverage lists SCADA, energy-management systems, distributed control systems, PLCs, RTUs, and intelligent electronic devices as covered assets. Threatsys says the framework addresses governance, asset awareness, monitoring, incident response, audits, vendor controls, and remote access, and notes an expected effective date of April 1, 2027 while advising readers to confirm the official notification.
Source: https://threatsys.co.in/cea-cyber-security-in-power-sector-regulations-2026/
Lawmakers seek review of CISA staffing effects amid critical-infrastructure threats
The Record reports that members of Congress requested that the Government Accountability Office examine how staffing reductions at CISA may have affected the agency’s ability to carry out its mission. The article says the congressional request referenced recent federal advisories about heightened threats to critical-infrastructure organizations and notes federal agencies described an active threat using AI-generated exploit scripts against critical infrastructure. The Record frames the development as a policy and cyber-defense-capacity issue rather than a newly reported operational-technology intrusion.
Source: https://therecord.media/lawmakers-call-for-investigation-into-impact-of-cisa-cuts