Iran-Linked Hackers Disrupt US Critical Infrastructure via PLC Attacks

2026-04-08T07:24:06Z1afff40d23b4d27e47bfd305d2034a8513d10e3ec0abe198c34e24e7a05f0ada
ai-abuseai-security','anthropic','claude-mythos','project-glasswing','trandroiddata-exfiltrationdosflowisegpugrafanaicsiran-linkedjavascript-injectionmedusanation-stateoperational-disruptionplcprivilege-escalationransomwarerceremote-code-executionroot-accessrowhammerscadastrongboxvulnerabilityzero-day

What happened

This feed highlights multiple high-impact security developments: Iranian-linked actors are actively manipulating PLC and SCADA systems, causing operational disruptions across US critical infrastructure per federal warnings. Other notable stories include Anthropic’s new Claude Mythos model and Project Glasswing (AI security effort); a critical Flowise vulnerability allowing execution of user-supplied JavaScript and filesystem access; a patched critical StrongBox/Android DoS; GrafanaGhost attacks abusing Grafana AI components to exfiltrate enterprise data; GPUBreach research demonstrating GPU-­‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
1afff40d23b4d27e47bfd305d2034a8513d10e3ec0abe198c34e24e7a05f0ada
Enrichment time
2026-04-08T07:24:06Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.