The new National Cyber Strategy calls compliance checklists a problem. We've been saying that for years. But deregulation and security aren't the same thing either. What replaces a requirement matters more than removing it. Full analysis at ampyxcyber.com/blog/...
09.03.2026 14:01
π 0
π 0
π¬ 0
π 0
Poland's Energy Sector Attack: When Cyber Sabotage Targets OT β AMPYX CYBER
On December 29, 2025, Poland experienced coordinated destructive
cyberattacks across 30+ wind/solar farms, a CHP plant, and manufacturing.
Attackers exploited FortiGate devices without MFA, used default credentials
on OT equipment, and deployed custom wiper malware designed to damage
industrial controls. Every failure was preventable.
Coordinated destructive cyberattacks across 30+ renewable farms, a CHP plant, and manufacturing in Poland. Not ransomware. Sabotage. Custom wiper malware designed to damage RTUs, PLCs, relays, and serial device servers.
17.02.2026 17:12
π 3
π 0
π¬ 0
π 0
Poland's Energy Sector Attack: When Cyber Sabotage Targets OT β AMPYX CYBER
On December 29, 2025, Poland experienced coordinated destructive
cyberattacks across 30+ wind/solar farms, a CHP plant, and manufacturing.
Attackers exploited FortiGate devices without MFA, used default credentials
on OT equipment, and deployed custom wiper malware designed to damage
industrial controls. Every failure was preventable.
Coordinated destructive cyberattacks across 30+ renewable farms, a CHP plant, and manufacturing in Poland. Not ransomware. Sabotage. Custom wiper malware designed to damage RTUs, PLCs, relays, and serial device servers.
10.02.2026 17:12
π 1
π 1
π¬ 0
π 0
Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric Sector β AMPYX CYBER
Policy Pulse: Regulatory Roundable is a new monthly feature of the Critical
Assets Podcast. Join Patrick Miller, Joy Ditto, and Earl Shockley as they
break down the latest policy, regulatory, and legislative changes impacting
critical infrastructure, OT, and cybersecurity. If it affects your assets,
audits, or authority, weβre covering it, straight from the policy
frontlines.
Just dropped: Our first Policy Pulse - Regulatory Roundtable panel podcast episode With JoyDitto & Earl Shockley.
We tackle:
- NERC low-impact crackdown
- Audit competency & CMEP reform
- AI in OT & the looming cyber strategy
- Talent gaps in the sector
09.02.2026 14:01
π 0
π 0
π¬ 0
π 0
03.02.2026 15:50
π 0
π 0
π¬ 0
π 0
Humans, Engineering Shifts, Required Investment, & Commitment for Operational Security β AMPYX CYBER
New secure connectivity guidance describes a greenfield target
architecture, but most OT environments are brownfield reality. True
resilience isn't achieved through technology alone. Human expertise, manual
operating capability, physical engineering controls, and sustained
investment are equally critical. Without these foundations, digital
security layers risk becoming expensive new failure modes.
Secure connectivity guidance often assumes greenfield architectures. Most OT environments are brownfield reality. Real resilience is not just network controls. It is people, manual capability, physical engineering, training, and sustained investment.
03.02.2026 15:50
π 0
π 0
π¬ 1
π 0
Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric Sector β AMPYX CYBER
Policy Pulse: Regulatory Roundable is a new monthly feature of the Critical
Assets Podcast. Join Patrick Miller, Joy Ditto, and Earl Shockley as they
break down the latest policy, regulatory, and legislative changes impacting
critical infrastructure, OT, and cybersecurity. If it affects your assets,
audits, or authority, weβre covering it, straight from the policy
frontlines.
Just dropped: Our first Policy Pulse - Regulatory Roundtable panel podcast episode With JoyDitto & Earl Shockley.
We tackle:
- NERC low-impact crackdown
- Audit competency & CMEP reform
- AI in OT & the looming cyber strategy
- Talent gaps in the sector
02.02.2026 14:01
π 1
π 0
π¬ 0
π 0
NERCβs CMEP Version 8 does not change the Reliability Standards. It stabilizes how compliance monitoring and enforcement operate across the ERO Enterprise. What this means for audits, risk-based scope, technical competence, & ERO-wide consistency at ampyxcyber.com/blog/...
01.02.2026 19:13
π 0
π 0
π¬ 0
π 0
27.01.2026 19:53
π 0
π 0
π¬ 0
π 0
Humans, Engineering Shifts, Required Investment, & Commitment for Operational Security β AMPYX CYBER
New secure connectivity guidance describes a greenfield target
architecture, but most OT environments are brownfield reality. True
resilience isn't achieved through technology alone. Human expertise, manual
operating capability, physical engineering controls, and sustained
investment are equally critical. Without these foundations, digital
security layers risk becoming expensive new failure modes.
Secure connectivity guidance often assumes greenfield architectures. Most OT environments are brownfield reality. Real resilience is not just network controls. It is people, manual capability, physical engineering, training, and sustained investment.
27.01.2026 19:53
π 0
π 0
π¬ 1
π 0
NERCβs December 2025 Internal Controls Guide quietly reshapes CMEP. ICE is gone. Continuous, risk based control oversight now drives COPs, audit depth, and regulatory trust. Internal controls are no longer periodic. They are always on. Full analysis: ampyxcyber.com/blog/...
26.01.2026 21:32
π 0
π 0
π¬ 0
π 0
NERCβs CMEP Version 8 does not change the Reliability Standards. It stabilizes how compliance monitoring and enforcement operate across the ERO Enterprise. What this means for audits, risk-based scope, technical competence, & ERO-wide consistency at ampyxcyber.com/blog/...
25.01.2026 19:12
π 0
π 1
π¬ 0
π 0
A new joint US/UK/EU agency coalition just released a new OT secure connectivity doctrine. We break down what it really means for utilities and industrial operators, what breaks in legacy environments, and the safety/engineering realities behind it ampyxcyber.com/blog/...
22.01.2026 21:12
π 0
π 0
π¬ 0
π 0
NERCβs new CIP Roadmap marks a major shift in how cyber risk will be regulated across the power grid. MFA for low impact systems, protection of telecom dependent control traffic, cloud security, and new focus on IBRs, DERs, EVSE, and large loads.
ampyxcyber.com/blog/...
21.01.2026 02:04
π 0
π 0
π¬ 0
π 0
NERCβs December 2025 Internal Controls Guide quietly reshapes CMEP. ICE is gone. Continuous, risk based control oversight now drives COPs, audit depth, and regulatory trust. Internal controls are no longer periodic. They are always on. Full analysis: ampyxcyber.com/blog/...
19.01.2026 18:05
π 0
π 0
π¬ 0
π 0
A new joint US/UK/EU agency coalition just released a new OT secure connectivity doctrine. We break down what it really means for utilities and industrial operators, what breaks in legacy environments, and the safety/engineering realities behind it ampyxcyber.com/blog/...
16.01.2026 02:11
π 0
π 0
π¬ 0
π 0
NERCβs new CIP Roadmap marks a major shift in how cyber risk will be regulated across the power grid. MFA for low impact systems, protection of telecom dependent control traffic, cloud security, and new focus on IBRs, DERs, EVSE, and large loads.
ampyxcyber.com/blog/...
14.01.2026 02:13
π 0
π 0
π¬ 0
π 0
Now hiring: Business Development Administrator (remote, contract 1099). Track RFx, support proposals, keep the pipeline organized, and coordinate docs and timelines. Join a mission-driven team protecting critical infrastructure. Apply: www.linkedin.com/job...
13.01.2026 17:45
π 0
π 0
π¬ 0
π 0
Now hiring: Business Development Administrator (remote, contract 1099). Track RFx, support proposals, keep the pipeline organized, and coordinate docs and timelines. Join a mission-driven team protecting critical infrastructure. Apply: www.linkedin.com/job...
11.01.2026 18:54
π 0
π 0
π¬ 0
π 0
Now hiring: Business Development Administrator (remote, contract 1099). Track RFx, support proposals, keep the pipeline organized, and coordinate docs and timelines. Join a mission-driven team protecting critical infrastructure. Apply: www.linkedin.com/job...
09.01.2026 22:46
π 0
π 0
π¬ 0
π 0
Now hiring: Business Development Administrator (remote, contract 1099). Track RFx, support proposals, keep the pipeline organized, and coordinate docs and timelines. Join a mission-driven team protecting critical infrastructure. Apply: www.linkedin.com/job...
07.01.2026 21:58
π 0
π 0
π¬ 0
π 0
Volt Typhoon represents a different kind of cyber risk for electric utilities. After months of research, we break down what makes this threat different and what leaders should focus on now. New blog, white paper and executive brief at ampyxcyber.com/blog/...
05.01.2026 14:38
π 1
π 1
π¬ 0
π 0
The next NERC CIP Bootcamp is live!
Join us for 3.5 days of practical, hands-on training covering all CIP standards, packed with the latest updates from NERC, Regional Entities & drafting teams shaping current compliance & audit guidance.
Details at ampyxcyber.com/nerc-...
31.12.2025 22:28
π 1
π 0
π¬ 0
π 0
The next NERC CIP Bootcamp is live!
Join us for 3.5 days of practical, hands-on training covering all CIP standards, packed with the latest updates from NERC, Regional Entities & drafting teams shaping current compliance & audit guidance.
Details at ampyxcyber.com/nerc-...
24.12.2025 18:06
π 0
π 0
π¬ 0
π 0
UEFI Secure Boot is often assumed to be enabled and enforcing. NSAβs latest guidance shows how boot time trust can silently fail and why misconfiguration creates real supply chain risk before the OS ever loads. Full analysis at ampyxcyber.com/blog/...
23.12.2025 00:25
π 0
π 0
π¬ 0
π 0
The next NERC CIP Bootcamp is live!
Join us for 3.5 days of practical, hands-on training covering all CIP standards, packed with the latest updates from NERC, Regional Entities & drafting teams shaping current compliance & audit guidance.
Details at ampyxcyber.com/nerc-...
17.12.2025 19:24
π 0
π 0
π¬ 0
π 0
UEFI Secure Boot is often assumed to be enabled and enforcing. NSAβs latest guidance shows how boot time trust can silently fail and why misconfiguration creates real supply chain risk before the OS ever loads. Full analysis at ampyxcyber.com/blog/...
15.12.2025 22:48
π 0
π 0
π¬ 0
π 0