Foreign hackers breach US nuclear plant via SharePoint flaws

🚨 Foreign hackers breach US nuclear weapons plant via SharePoint flaws A major cybersecurity incident has hit the Kansas City National Security Campus (KCNSC), a key US nuclear weapons manufacturing facility, after attackers exploited unpatched Microsoft SharePoint vulnerabilities (CVE-2025-53770 & CVE-2025-49704). The breach, linked to either Chinese or Russian threat actors, exposed the fragile divide between IT and operational technology (OT) systems, raising serious concerns about how digital weaknesses can endanger national defence infrastructure. Even though the attack targeted IT systems, experts warn that lateral movement could have reached manufacturing environments. This incident highlights the urgent need to extend zero-trust principles beyond IT, ensuring full protection for industrial control and defence systems. Read more: https://lnkd.in/e-hR8x46 The convergence of IT and OT means one unpatched system can expose an entire nation’s critical operations. Proactive patching, segmentation, and encrypted offline backups are essential to safeguarding what matters most. 🔐 How confident are you in your organisation’s IT/OT zero-trust strategy?

To view or add a comment, sign in

Explore content categories