<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><title>News Agent — Industrials &amp; Manufacturing</title><link>/industries/industrials/</link><description>Cyber threat intelligence for the Industrials &amp; Manufacturing industry — daily-brief items tagged to this slice.</description><item><title>This week&#x27;s run of pre-auth RCE zero-days across N-able, MikroTik, ConnectWise, Adobe Commerce and now SAP, landing inside the same seven-da</title><link>/briefings/2026/09/09/2026-09-09/</link><guid isPermaLink="false">2026-09-09-This week&#x27;s run of pre-auth RCE zero-days across N-able, Mik</guid><pubDate>Wed, 09 Sep 2026 06:00:00 +0000</pubDate><description>This week&#x27;s run of pre-auth RCE zero-days across N-able, MikroTik, ConnectWise, Adobe Commerce and now SAP, landing inside the same seven-day span as a record-breaking Patch Tuesday, is a capacity problem the defense industry has not priced. Each vendor individually is manageable; five simultaneous emergency-patch cycles across the infrastructure stack that MSPs, e-commerce operators and ERP shops all depend on is not. Security teams sized for a steady drip of monthly patching are structurally unable to absorb a week like this one without deferring something — and attackers know which categories of infrastructure (RMM consoles, edge network gear, ERP kernels) get deferred longest because they&#x27;re hardest to take offline. Insurers underwriting operational-technology and ERP-dependent businesses should be pricing patch-cycle capacity, not just patch-cycle intent. BleepingComputer [🌍 GEOPOLITICS]</description></item><item><title>Boston Scientific</title><link>/briefings/2026/09/08/2026-09-08/</link><guid isPermaLink="false">2026-09-08-Boston Scientific</guid><pubDate>Tue, 08 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific — no material change since Sep 7; shipping restoration continuing toward Piper Sandler&#x27;s mid-September estimate. Major distribution centers have resumed shipping for most products; Cork remains at reduced capacity. No new intrusion activity reported since Aug 25. MedTech Dive [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>Metaencryptor claims ST Engineering</title><link>/briefings/2026/09/08/2026-09-08/</link><guid isPermaLink="false">2026-09-08-Metaencryptor claims ST Engineering</guid><pubDate>Tue, 08 Sep 2026 06:00:00 +0000</pubDate><description>Metaencryptor claims ST Engineering — Singapore&#x27;s state-linked aerospace and defense conglomerate — on its leak site Sep 7 — ST Engineering operates across aerospace, smart-city, defense, and public-security segments, including as a UK Ministry of Defense-adjacent and US critical-infrastructure supplier (its TransCore subsidiary was separately claimed by Qilin in June). 🟥 DLS claim only; no data scope or authenticity confirmed. A confirmed intrusion at a defense-conglomerate scale would warrant government-level attention given ST Engineering&#x27;s customer base. ransomware.live [🌐 THREAT ACTOR &amp; CAMPAIGN ACTIVITY]</description></item><item><title>Additional DLS claims Sep 7: Lightcast (US, HR/labor-market software) claimed by Direwolf; United Group (India, diversified conglomerate) cl</title><link>/briefings/2026/09/08/2026-09-08/</link><guid isPermaLink="false">2026-09-08-Additional DLS claims Sep 7: Lightcast (US, HR/labor-market </guid><pubDate>Tue, 08 Sep 2026 06:00:00 +0000</pubDate><description>Additional DLS claims Sep 7: Lightcast (US, HR/labor-market software) claimed by Direwolf; United Group (India, diversified conglomerate) claimed by newly-emerged group Vexy; Master Manufacturing (US, metal stamping) claimed by Dark Project with 36GB allegedly exfiltrated. 🟥 All unverified DLS claims; verify before treating as breaches. RedPacket Security [🌐 THREAT ACTOR &amp; CAMPAIGN ACTIVITY]</description></item><item><title>Leonardo&#x27;s March acquisition of UK cybersecurity firm Becrypt, surfaced this run as part of routine M&amp;A back-fill, is a small but telling da</title><link>/briefings/2026/09/08/2026-09-08/</link><guid isPermaLink="false">2026-09-08-Leonardo&#x27;s March acquisition of UK cybersecurity firm Becryp</guid><pubDate>Tue, 08 Sep 2026 06:00:00 +0000</pubDate><description>Leonardo&#x27;s March acquisition of UK cybersecurity firm Becrypt, surfaced this run as part of routine M&amp;A back-fill, is a small but telling data point in Europe&#x27;s push toward sovereign cyber-defense capability. An Italian state-linked aerospace-and-defense prime buying a British encryption and secure-device specialist that already serves UK Ministry of Defense programs keeps sensitive government-grade cryptography inside the NATO-aligned industrial base rather than leaving it exposed to acquisition by a non-European or less-vetted buyer. As European governments increase defense spending amid the Ukraine war and reassess dependency on non-European technology suppliers, expect more of this pattern: national defense primes absorbing small, mission-critical cyber specialists rather than relying on the open market. UK Defence Journal [🌍 GEOPOLITICS]</description></item><item><title>Boston Scientific</title><link>/briefings/2026/09/07/2026-09-07/</link><guid isPermaLink="false">2026-09-07-Boston Scientific</guid><pubDate>Mon, 07 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific — Day 13 of recovery; no new adverse network activity; Cork manufacturing remains at reduced capacity — No material change since Sep 6. Distribution shipping restored at major global centres; Cork site partially restored. CrowdStrike and third-party experts leading investigation confirm no new intrusion activity since Aug 25. Piper Sandler mid-September full-restoration estimate unchanged. 🟥 Threat actor and attack vector not publicly disclosed. Boston Scientific · SecurityWeek [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>Boston Scientific</title><link>/briefings/2026/09/06/2026-09-06/</link><guid isPermaLink="false">2026-09-06-Boston Scientific</guid><pubDate>Sun, 06 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific — Day 13 recovery; no new adverse network activity since Aug 25; mid-September full-restoration estimate unchanged — No material change from Sep 5. Shipping capabilities restored for the majority of product lines at major distribution centres globally; Cork manufacturing remains at reduced capacity. The Piper Sandler mid-September restoration estimate stands. 🟥 Threat actor and attack method not disclosed; no confirmed data exfiltration. Hospital procurement planners for elective cardiac procedures should continue contingency sourcing. Boston Scientific · SecurityWeek [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>Boston Scientific</title><link>/briefings/2026/09/05/2026-09-05/</link><guid isPermaLink="false">2026-09-05-Boston Scientific</guid><pubDate>Sat, 05 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific — day 12 recovery; Piper Sandler mid-September restoration estimate; no new network activity since Aug 25 — No change in status since Sep 4. Cork manufacturing remains at reduced capacity; partial order processing resumed for select product lines. Mid-September is the Piper Sandler restoration estimate. Hospital procurement planners for elective cardiac procedures should continue contingency sourcing. 🟥 Server Killers attribution remains an unconfirmed hacktivist claim; no data-exfiltration scope disclosed. Boston Scientific [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>EDIF S.p.A. / Aurora ransomware</title><link>/briefings/2026/09/05/2026-09-05/</link><guid isPermaLink="false">2026-09-05-EDIF S.p.A. / Aurora ransomware</guid><pubDate>Sat, 05 Sep 2026 06:00:00 +0000</pubDate><description>EDIF S.p.A. / Aurora ransomware — Italian wholesale electrical-equipment distributor claimed Sep 4; attack estimated Aug 27 — Aurora posted EDIF S.p.A. (Italian wholesale distributor of electrical equipment, plumbing, and lighting systems) on its DLS September 4. Exposed files reportedly include system passwords, certified email credentials, customer invoices, tax numbers, shipping records, CCTV configurations, databases, financial records, and a detailed 2024 financial report. Attack estimated August 27. 🟥 DLS claim; verify before treating as a breach. DeXpose · RedPacket Security [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>Boston Scientific</title><link>/briefings/2026/09/04/2026-09-04/</link><guid isPermaLink="false">2026-09-04-Boston Scientific</guid><pubDate>Fri, 04 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific — day 11 recovery; Piper Sandler projects full shipping restoration mid-September; CrowdStrike found no new network intrusion activity since Aug 25 — As of Sep 3–4, Boston Scientific reports no new unauthorized activity since containment on August 25. Partial order processing has resumed for some product lines; Cork, Ireland manufacturing facility remains at reduced capacity. Piper Sandler&#x27;s three-week recovery estimate from August 25 places full restoration around September 15. The company has not attributed the attack or disclosed data exfiltration scope. Hospital procurement planners for elective cardiac procedures should continue contingency sourcing into next week. 🟥 Server Killers attribution remains an unconfirmed hacktivist claim. SecurityWeek · Boston Scientific [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>Boston Scientific</title><link>/briefings/2026/09/03/2026-09-03/</link><guid isPermaLink="false">2026-09-03-Boston Scientific</guid><pubDate>Thu, 03 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific — partial order processing confirmed restored for select product lines (day 10); full recovery timeline still undisclosed — Boston Scientific confirmed on Sep 2 that partial order processing and shipping has resumed for some product lines following the Aug 25 cyberattack; the Cork, Ireland cardiovascular manufacturing facility remains in reduced-capacity mode. CrowdStrike confirmed no new malicious network activity since containment; forensics focus is now on scoping data access. Hospital procurement planners for elective cardiac procedures (stents, defibrillators, EP catheters) should continue contingency sourcing planning. 🟥 Server Killers attribution remains an unconfirmed hacktivist claim. SecurityWeek [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>Boston Scientific</title><link>/briefings/2026/09/02/2026-09-02/</link><guid isPermaLink="false">2026-09-02-Boston Scientific</guid><pubDate>Wed, 02 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific — partial order processing expected to resume &quot;this week&quot; (day 9); CrowdStrike investigating; Server Killers attribution remains unconfirmed — Boston Scientific&#x27;s incident response team (CrowdStrike) reports no signs of malicious network activity since August 25, and the breach appears contained to some on-premises systems. The company expects to resume partial order processing and shipping for some product lines this week, but a full restoration timeline has not been given. The Cork, Ireland cardiovascular manufacturing facility (stents, defibrillators, electrophysiology catheters) remains in reduced-capacity mode. Hospital procurement planners for elective cardiac procedures should continue contingency sourcing. 🟥 Server Killers attribution remains an unconfirmed claim by the hacktivist group; Boston Scientific has not confirmed any attacker identity. SecurityWeek · Supply Chain Dive [⚠️ CRITICAL BREACHES &amp; INCIDENTS]</description></item><item><title>Boston Scientific&#x27;s day-9 outage points to an emerging structural vulnerability in European medical device manufacturing: single-site concen</title><link>/briefings/2026/09/02/2026-09-02/</link><guid isPermaLink="false">2026-09-02-Boston Scientific&#x27;s day-9 outage points to an emerging struc</guid><pubDate>Wed, 02 Sep 2026 06:00:00 +0000</pubDate><description>Boston Scientific&#x27;s day-9 outage points to an emerging structural vulnerability in European medical device manufacturing: single-site concentration in Cork, Ireland for cardiovascular implants creates a supply-chain chokepoint that a coordinated campaign against two or three manufacturers would trigger simultaneously. Boston Scientific&#x27;s Cork facility makes stents, defibrillators, and electrophysiology catheters — devices that cannot be substituted on short notice. The hospital systems most exposed are those in elective cardiac procedure scheduling, where a six-week supply disruption forces deferrals. This is the same leverage model as energy infrastructure attacks: the value is not the ransom but the compulsion effect on healthcare procurement and elective-procedure capacity. SecurityWeek · HIPAA Journal [🌍 GEOPOLITICS]</description></item></channel></rss>
