Most CNI Firms Face Up to £5m in Downtime from OT Attacks

2026-04-02T08:52:23Z080e883766921be76f85d56e048fe2c3568642deced9b45952817af8da1f2e4c
ai-generated-code-vulnerabilitiesai-securityaitm-phishingcitrix-netscalercredential-theftdata-breachdeeploadetherrateuropean-commissionf5-big-iplloydsmalware-as-a-servicenation-state-espionagenpmopen-source-securityoracle-weblogic-rcepay2keyphantom-stealerphishingpypiransomwaresupply-chainta416venom-stealervulnerabilities

What happened

A compilation of late‑March to early‑April 2026 Infosecurity Magazine headlines highlighting a surge in supply‑chain compromises (npm/axios hijack, PyPI LiteLLM/Telnyx, TeamPCP activity), widespread malware‑as‑a‑service and commodity stealers (Venom Stealer, Phantom Stealer, DeepLoad), and large‑scale credential theft techniques (EtherRAT, AiTM phishing). The period also saw active exploitation of critical vulnerabilities—most notably Citrix NetScaler (CVE‑2026‑3055) and an F5 BIG‑IP flaw (CVE‑2025‑53521)—plus rapid Oracle WebLogic RCE weaponisation, nation‑state espionage (TA416), ransomware/

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
infosecurity_magazine
Record identifier
080e883766921be76f85d56e048fe2c3568642deced9b45952817af8da1f2e4c
Enrichment time
2026-04-02T08:52:23Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.