[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fQzRCqaRanQ61A8mfRICcwzcry83ArxkSDVzXb1CGvI4":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":18,"created_at":19,"published_at":20,"article":21,"tags":25,"podcasts":38},"c1b1c222-5d4b-4673-ba67-4d5c83c68cec","state-actors-target-critical-infrastructure-through-advanced-persistent-threats","dc3e4dc1-2956-4a52-960f-0b677cc55652","State Actors Target Critical Infrastructure Through Advanced Persistent Threats","The shift from opportunistic hacking to sophisticated, long-dwell industrial espionage by state actors like China's Volt Typhoon and Salt Typhoon demonstrates how geopolitical tensions are manifesting in cyberspace. These groups specifically target critical infrastructure sectors including energy, telecommunications, and transportation, establishing persistent access for potential disruption during conflicts. The extended dwell time allows attackers to map networks, steal sensitive data, and position themselves for maximum impact when activated. This represents a fundamental change in threat landscape where cyber operations are becoming integral components of national security strategy.","**Long-term improvements:**\n- Organizations in critical infrastructure sectors must implement robust network segmentation to limit lateral movement and contain breaches when they occur\n- Regular security assessments, zero-trust architecture implementation, and coordination with government cybersecurity agencies can help identify and mitigate state-sponsored threats\n- developing comprehensive incident response plans specifically designed for nation-state attacks, including coordination with law enforcement and intelligence agencies, is crucial for effective defense\n\n**Detection measures:**\n- Enhanced monitoring and threat hunting capabilities are essential to detect sophisticated APT groups that may remain dormant for extended periods",[12,13,14,15,16,17],"CIS Control 12","CIS Control 13","NIST IR-4","NIST SC-7","NIST SI-4","CISA Critical Infrastructure Cybersecurity Performance Goals","published","2026-03-27T13:07:53.690768+00:00","2026-03-27T13:07:53.559+00:00",{"id":7,"url":22,"slug":23,"title":24},"https:\u002F\u002Fthehackernews.com\u002F2026\u002F03\u002Fwe-are-at-war.html","we-are-at-war","We Are At War",[26,32],{"id":27,"name":28,"slug":29,"description":30,"color":31},"182e11d5-57c4-444e-8ec8-4682ad60261b","Incident Response","incident-response","Slow detection, poor containment, missing playbooks","#14b8a6",{"id":33,"name":34,"slug":35,"description":36,"color":37},"f43a7f30-5046-4b10-9dba-1a704139821e","Network Segmentation","network-segmentation","Lateral movement, flat networks, missing firewalls","#06b6d4",[]]