Iran Didn't Need Malware to Cripple Stryker. They Just Used Microsoft Intune.
John Z Black
Mar 17, 2026
Threat Intelligence
#iran
#stryker
#handala
#intune
#mdm
#wiper
#healthcare
#nation-state
#critical-infrastructure
The Handala group wiped tens of thousands of Stryker devices using the company's own MDM platform. No malware. No exploit. Just admin access and the willingness to press the button.
Read More
New York Just Did What the EPA Couldn't: Mandatory Cybersecurity for Water Utilities
John Z Black
Mar 15, 2026
Policy, Law & Governance
#critical-infrastructure
#water-utility
#regulatory-compliance
#new-york
#epa
#ics-security
The feds tried and failed to mandate cybersecurity for water utilities. New York got tired of waiting and did it themselves. Sound familiar?
Read More
Iran Hit a Medical Device Giant, a NATO Parliament, and Your Instagram Feed on the Same Day
John Z Black
Mar 12, 2026
Threat Intelligence
#iran
#handala
#stryker
#wiper-attack
#critical-infrastructure
#influence-operations
#nato
#threat-intelligence
March 11 wasn't three separate cyberattacks. It was one coordinated Iranian campaign across three fronts: a wiper on Stryker, a breach of Albania's parliament, and an influence op on Instagram. All in 24 hours.
Read More
The War Near Iran Is Breaking Your Apps: GPS Jamming, Cyber Escalation, and Civilian Collateral
John Z Black
Mar 11, 2026
Geopolitical Security
#iran
#gps-jamming
#electronic-warfare
#cyber-escalation
#critical-infrastructure
#geopolitics
GPS jamming near Iran is wrecking delivery and navigation apps across the region. Unit 42 warns of escalating Iranian cyber risk. Modern conflict has a civilian tech blast radius.
Read More