Operational Technology
DFM News Roundup – 12th August 2026
The latest DFM 48-hour Global News Roundup examines investigations into alleged TCS and Uber Freight data exposure, suspected North Korean IT workers, Gunra ransomware activity, attacks disrupting US healthcare and local government, actively exploited Microsoft and Cisco vulnerabilities, cybercrime arrests, and new water-sector cybersecurity measures. The editorial focus remains evidential integrity, attribution and cross-platform investigative readiness worldwide for digital investigators.
DFM News Roundup – 31st July 2026
This edition examines coordinated intrusions affecting Minnesota water systems, UK government data theft, anti-forensic Linux cryptomining, Cisco firewall exploitation and North Korean software supply-chain activity. It also covers ransomware affecting an Australian school, disruption at Angola’s largest telecommunications operator, cyberstalking charges, privacy enforcement and the growing evidential demands created by cross-platform digital investigations and operational technology evidence preservation practices.
DFM News Roundup – 29th July 2026
This DFM 48-hour roundup examines compromised email accounts, exposed server-management interfaces, disputed breach claims, attacks on Australian energy customers and Minnesota water systems, actively exploited VeloCloud and Fastjson vulnerabilities, and new operational-technology recovery guidance. The edition focuses on evidential confidence, attribution limits, cross-provider records, preservation priorities and the investigative consequences of containment, isolation and service restoration during disruptive cyber incidents.
Enterprise Connected Devices
Enterprise connected devices now underpin physical security, operational technology and digital infrastructure across UK organisations. This briefing examines how government policy from DSIT aligns with technical guidance from NCSC, NPSA and NACE, highlighting overlaps, tensions and practical implications for DFIR teams responsible for investigation, resilience and evidence preservation across increasingly converged cyber-physical environments within modern enterprise security and incident response.

