HUMAN ERROR REMAINS TOP THREAT TO ENERGY GRID
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
Despite growing concerns about AI-driven cyberattacks, human actors remain the primary cybersecurity risk to critical energy infrastructure. Security experts warn vulnerabilities in power systems continue to expand.
■ MORE FROM THE SECURITY DESK
A malicious npm campaign demonstrates how threat actors are evading supply chain protections by embedding malware in package runtime behavior instead of installation scripts. The 'indexed-btree' package exemplifies this evolving attack technique.
Cybercriminals are exploiting lookalike characters from different alphabets to create fake URLs that appear legitimate to the naked eye. These homoglyph attacks bypass traditional security checks and trick users into visiting malicious sites.
The ShinyHunters extortion gang has compromised the Clop ransomware operation's data leak site, defacing it and stealing server data and private encryption keys.
Researchers at Ledger Donjon have demonstrated a photon-emission-guided laser fault injection attack that defeats the Raspberry Pi RP2350's secure debug protections, according to technical analysis published this week.