Escalating Cyber Threats Target Critical Infrastructure and Supply Chains

Recent cyber attacks demonstrate an escalation in frequency and impact, with sophisticated adversaries increasingly targeting critical infrastructure and supply chains. This trend, coupled with rising AI-related vulnerabilities, underscores persistent gaps in advanced cyber hygiene and supply chain risk management.

Recent data indicates a significant escalation in cyber attacks, with incidents more than doubling in 2025 and U.S. cybercrime losses reaching a historical high of nearly $21 billion, a 26% year-over-year increase. This rise is accompanied by a shift towards sophisticated, persistent operations targeting critical infrastructure, defense industrial bases, and government agencies. Adversaries increasingly aim to compromise supply chains, disrupt global operations, and establish long-term footholds for data theft and sabotage.

Emerging Attack Vectors and Impacts

The first half of 2026 has seen notable attacks reflecting these trends. In April 2026, Iran-affiliated advanced persistent threat (APT) actors targeted internet-facing operational technology (OT) devices across U.S. critical infrastructure, including water utilities and energy networks, causing financial loss and operational disruption. Earlier in January, the China-aligned APT group UnsolicitedBooker launched spear-phishing campaigns against Central Asian telecommunications providers, deploying sophisticated backdoors for persistent access and data exfiltration.

Supply chain vulnerabilities remain a critical concern. The medical technology firm Stryker suffered a cyber attack in March 2026 that disrupted global manufacturing and shipping, impacting its first-quarter earnings and leading to lawsuits over employee data theft. Similarly, a widely used GitHub Action for Aqua Security’s Trivy vulnerability scanner was compromised in March 2026, with threat actors injecting credential-stealing malware into official releases. The European rail pass operator Eurail also reported a significant data breach in early 2026, with 1.3 terabytes of data stolen.

Persistent Challenges and Gaps

While the seriousness of cyber threats continues to escalate, the UK Cyber Security Breaches Survey 2025/2026 indicates that 43% of businesses and 28% of charities experienced a cyber breach or attack in the last 12 months. Phishing attacks remain the most prevalent and disruptive, experienced by 38% of businesses and 25% of charities. Ransomware attacks, however, saw a decline for businesses, from 3% in previous years to 1% in 2025/2026.

Despite some improvements in basic cyber hygiene, adoption of advanced controls like two-factor authentication remains lower. Furthermore, only 15% of businesses formally review cyber risks posed by immediate suppliers, highlighting a significant supply chain risk management gap. The Global Cybersecurity Outlook 2026 survey found that 87% of CEOs identified AI-related vulnerabilities as the fastest-growing cyber risk in 2025, yet many organizations lack adequate safeguards for AI tools.

Sources