{"id":20988,"date":"2026-08-28T11:36:35","date_gmt":"2026-08-28T11:36:35","guid":{"rendered":"https:\/\/8657085.xyz\/?p=20988"},"modified":"2026-08-28T11:36:35","modified_gmt":"2026-08-28T11:36:35","slug":"qa-the-next-threat-to-critical-infrastructure-is-manipulation","status":"publish","type":"post","link":"https:\/\/8657085.xyz\/?p=20988","title":{"rendered":"Q&#038;A: The next threat to critical infrastructure is manipulation"},"content":{"rendered":"<p> <div style=\"display: grid; grid-template-columns: 300px 160px; gap: 2px; width: 460px; background: #eee; padding: 2px;\">\r\n\r\n  <!-- \u6574\u884c\u5bbd\u5e7f\u544a -->\r\n  <div style=\"grid-column: 1\/-1; width: 460px; height: 250px; background: #ccc; display: grid; place-items: center;\">\r\n  <script async type=\"application\/javascript\" src=\"https:\/\/a.magsrv.com\/ad-provider.js\"><\/script> \r\n <ins class=\"eas6a97888e2\" data-zoneid=\"5876674\"><\/ins> \r\n <script>(AdProvider = window.AdProvider || []).push({\"serve\": {}});<\/script>\r\n  <\/div>\r\n  <div style=\"grid-column: 1\/-1; width: 460px; height: 90px; background: #ccc; display: grid; place-items: center;\">\r\n  <script async type=\"application\/javascript\" src=\"https:\/\/a.magsrv.com\/ad-provider.js\"><\/script> \r\n <ins class=\"eas6a97888e2\" data-zoneid=\"5876676\"><\/ins> \r\n <script>(AdProvider = window.AdProvider || []).push({\"serve\": {}});<\/script>\r\n  <\/div>\r\n\r\n  <!-- \u5de6\u4fa7\u7ad6\u6392 -->\r\n  <div style=\"height: 250px; background: #ccc; display: grid; place-items: center;\">\r\n  <script async type=\"application\/javascript\" src=\"https:\/\/a.magsrv.com\/ad-provider.js\"><\/script> \r\n <ins class=\"eas6a97888e2\" data-zoneid=\"5876672\"><\/ins> \r\n <script>(AdProvider = window.AdProvider || []).push({\"serve\": {}});<\/script>\r\n  <\/div>\r\n  <div style=\"height: 500px; background: #ccc; display: grid; place-items: center;\">\r\n  <script async type=\"application\/javascript\" src=\"https:\/\/a.magsrv.com\/ad-provider.js\"><\/script> \r\n <ins class=\"eas6a97888e2\" data-zoneid=\"5876680\"><\/ins> \r\n <script>(AdProvider = window.AdProvider || []).push({\"serve\": {}});<\/script>\r\n  <\/div>\r\n\r\n  <!-- \u53f3\u4fa7\u6469\u5929\u697c\uff08\u548c\u5de6\u4fa7\u5b8c\u5168\u5bf9\u9f50\uff09 -->\r\n  <div style=\"grid-row: 3\/5; height: 750px; background: #ccc; display: grid; place-items: center;\">\r\n  <script async type=\"application\/javascript\" src=\"https:\/\/a.magsrv.com\/ad-provider.js\"><\/script> \r\n <ins class=\"eas6a97888e2\" data-zoneid=\"5876678\"><\/ins> \r\n <script>(AdProvider = window.AdProvider || []).push({\"serve\": {}});<\/script>\r\n  <\/div>\r\n  \r\n  <script async type=\"application\/javascript\" src=\"https:\/\/a.magsrv.com\/ad-provider.js\"><\/script> \r\n <ins class=\"eas6a97888e6\" data-zoneid=\"5876682\"><\/ins> \r\n <script>(AdProvider = window.AdProvider || []).push({\"serve\": {}});<\/script>\r\n<\/div><br \/>\n<\/p>\n<div style=\"padding-right:0;padding-left:0\">\n<p class=\"wp-block-paragraph\">To securely protect critical infrastructure, organisations need to evolve their operational technology (OT) security approach. This is the approach recommended by Logan Spillner, Manager of Network Security at SHI. \u00a0Spillner explains more to <em>Digital Journal.<\/em><\/p>\n<p class=\"wp-block-paragraph\"><strong>Digital Journal: For years, operational technology (OT) security has focused on protecting systems and networks. Why do you believe organizations need to rethink that approach today?<\/strong><\/p>\n<p class=\"wp-block-paragraph\"><strong>Logan Spillner<\/strong><strong>:<\/strong> Traditional OT security programs are built around protecting assets like industrial control systems, PLCs, and other endpoints from unauthorized access or disruption. Those investments remain critical, but the threat landscape has evolved. Increasingly, adversaries are targeting the people who operate these environments rather than the technology itself.<\/p>\n<p class=\"wp-block-paragraph\">This is what we refer to as cognitive warfare: the deliberate manipulation of human decision-making to achieve operational outcomes. We\u2019ve seen evidence that nation-state actors are maintaining long-term access within critical infrastructure environments, learning how organizations operate, how decisions are made and who operators trust. The goal isn\u2019t always immediate disruption. In many cases, it\u2019s positioning themselves to influence decisions when the timing is right.<\/p>\n<p class=\"wp-block-paragraph\">If an attacker can manipulate an operator\u2019s judgment, they may never need to compromise a system at all. That\u2019s why organizations need to start viewing human decision-making as part of their attack surface.<\/p>\n<p class=\"wp-block-paragraph\"><strong>DJ: How is AI accelerating this threat?<\/strong><\/p>\n<p class=\"wp-block-paragraph\"><strong>Spillner<\/strong><strong>:<\/strong> AI changes the scale and speed at which these operations can be conducted. Historically, building an influence campaign requires significant time, research and human effort. An attacker had to understand an organization\u2019s culture and communication patterns. AI dramatically reduces that burden. It can analyze large amounts of information, identify key influencers, generate highly credible messages and mimic organizational communication styles at a level that would have required a dedicated team in the past.<\/p>\n<p class=\"wp-block-paragraph\">We\u2019re also seeing advances in deepfakes, voice cloning and synthetic media that make it easier to impersonate trusted individuals. In an OT environment, where operators may need to make rapid decisions based on limited information, that creates a very real risk. AI is making deception more convincing, more personalized and more scalable than ever before.<\/p>\n<p class=\"wp-block-paragraph\"><strong>DJ:<\/strong> <strong>Why aren\u2019t existing OT security frameworks adequately addressing this issue?<\/strong><\/p>\n<p class=\"wp-block-paragraph\"><strong>Spillner<\/strong><strong>:<\/strong> Most established OT security frameworks do an excellent job of addressing technical risk. They focus on access controls, defensible architecture, asset visibility, secured remote access, and operational safety.<\/p>\n<p class=\"wp-block-paragraph\">Current frameworks even address OT security awareness, but they fall short by treating operators primarily as vectors of generalized cybersecurity attacks, rather than intentional targets of sophisticated adversarial activity. These frameworks generally assume that if you secure the systems and teach your operators basic security hygiene, you\u2019ve secured the environment. But these cognitive attacks don\u2019t necessarily exploit a technical weakness, and don\u2019t rely on traditional cybersecurity attacks. They exploit trust, decision-making and human behavior.<\/p>\n<p class=\"wp-block-paragraph\">As a result, many organizations have mature technical defenses but limited capability to detect when someone is attempting to manipulate the people responsible for operating critical systems.<\/p>\n<p class=\"wp-block-paragraph\"><strong>DJ: What are some warning signs that an organization may be experiencing this type of activity?<\/strong><\/p>\n<p class=\"wp-block-paragraph\"><strong>Spillner<\/strong><strong>:<\/strong> One challenge is that traditional security tools are unlikely to detect these attacks. Organizations should pay attention to changes in behavior rather than just technical indicators. That could include unusual shifts in operational decision-making, guidance arriving through unapproved channels, pressure to bypass normal validation or escalation steps, unexplained deviations from standard workflows, or recurring misinformation appearing in operational communications.<\/p>\n<p class=\"wp-block-paragraph\">Another indicator is the appearance of highly targeted messages that seem credible but cannot be fully validated. In many cases, the signal is found in patterns of behavior rather than logs or alerts. That\u2019s why organizations need to broaden their understanding of detection beyond purely technical telemetry.<\/p>\n<p class=\"wp-block-paragraph\"><strong>DJ: What should CISOs and security leaders be doing today to prepare?<\/strong><\/p>\n<p class=\"wp-block-paragraph\"><strong>Spillner<\/strong><strong>:<\/strong> The first step is acknowledging that this threat exists and that it deserves the same level of attention as technical attacks. Organizations should focus on five key areas: recognition, information integrity, detection, governance, and response. Teams need to understand what influence campaigns look like in operational environments. They need stronger controls around how information enters critical workflows and better processes for validating communications and operational guidance.<\/p>\n<p class=\"wp-block-paragraph\">It\u2019s also important to establish clear response procedures. Just as organizations have playbooks for ransomware or operational disruptions, they should have processes for investigating and responding to suspected manipulation campaigns. Building these capabilities takes time, which is why organizations should start now rather than wait for an incident.<\/p>\n<p class=\"wp-block-paragraph\"><strong>DJ: What\u2019s your message to industrial organizations that may view this as a future problem rather than a current one?<\/strong><\/p>\n<p class=\"wp-block-paragraph\"><strong>Spillner<\/strong><strong>:<\/strong> The biggest misconception is that this is theoretical. Recent government advisories have confirmed that nation-state actors are maintaining long-term access inside critical infrastructure environments today. When adversaries spend years observing an organization, they\u2019re learning much more than network architecture. They\u2019re learning how people make decisions, how trust is established and where influence can be applied.<\/p>\n<p class=\"wp-block-paragraph\">The organizations that will be most resilient in the future are the ones that recognize security is no longer just about protecting systems. It\u2019s about protecting the people, processes and decisions that keep operations running. If an organization only defends its technology, it may miss the attack entirely until the consequences become visible in the physical world.<\/p>\n<\/div>\n<p><!-- \u603b\u5bb9\u5668\uff1a\u6700\u5927\u5bbd908px Grid\u7d27\u51d1\u5e03\u5c40 -->\r\n<div style=\"display: grid; grid-template-columns: 728px 160px; gap:2px; width:908px; background:#eee; padding:2px;\">\r\n\r\n  <!-- \u901a\u680f\u9876\u90e8\uff1a\u6700\u5927\u6a2a\u5e45 908x258 \u8de8\u6574\u884c -->\r\n  <div style=\"grid-column:1\/-1; height:258px; background:#ff6b6b; display:grid; place-items:center;\">\r\n    <!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114307\" data-width=\"908\" data-height=\"258\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114307});<\/script>\r\n<!--JuicyAds END-->\r\n  <\/div>\r\n\r\n  <!-- \u7b2c\u4e8c\u901a\u680f\uff1a728\u00d790 \u901a\u680f -->\r\n  <div style=\"grid-column:1\/-1; height:90px; background:#4ecdc4; display:grid; place-items:center;\">\r\n    <!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114300\" data-width=\"728\" data-height=\"90\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114300});<\/script>\r\n<!--JuicyAds END-->\r\n  <\/div>\r\n\r\n  <!-- \u5de6\u4fa7\u4e3b\u680f\uff1a\u591a\u5e7f\u544a\u5806\u53e0 -->\r\n  <div style=\"display:grid; gap:2px;\">\r\n    <div style=\"height:60px; background:#45b7d1; display:grid; place-items:center;\">\r\n\t<!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114308\" data-width=\"468\" data-height=\"60\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114308});<\/script>\r\n<!--JuicyAds END-->\r\n\t<\/div>\r\n    <div style=\"height:250px; background:#ffe066; display:grid; place-items:center;\">\r\n\t<!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114299\" data-width=\"300\" data-height=\"250\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114299});<\/script>\r\n<!--JuicyAds END-->\r\n\t<\/div>\r\n    <div style=\"height:250px; background:#ff9ecd; display:grid; place-items:center;\">\r\n\t<!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114305\" data-width=\"250\" data-height=\"250\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114305});<\/script>\r\n<!--JuicyAds END-->\r\n\t<\/div>\r\n    <div style=\"height:139px; background:#c792ea; display:grid; place-items:center;\">\r\n\t<!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114302\" data-width=\"133\" data-height=\"139\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114302});<\/script>\r\n<!--JuicyAds END-->\r\n\t<\/div>\r\n    <div style=\"height:125px; background:#91e7ac; display:grid; place-items:center;\">\r\n\t\r\n<!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114303\" data-width=\"125\" data-height=\"125\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114303});<\/script>\r\n<!--JuicyAds END-->\r\n\t<\/div>\r\n  <\/div>\r\n\r\n  <!-- \u53f3\u4fa7\u7ad6\u680f\uff1a160\u00d7600 \u6574\u5217\u9ad8\u5e7f\u544a -->\r\n  <div style=\"grid-row:3\/8; height:600px;  display:grid; place-items:center;\">\r\n    <!-- JuicyAds v3.0 -->\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async src=\"https:\/\/poweredby.jads.co\/js\/jads.js\"><\/script>\r\n<ins id=\"1114301\" data-width=\"160\" data-height=\"600\"><\/ins>\r\n<script type=\"text\/javascript\" data-cfasync=\"false\" async>(adsbyjuicy = window.adsbyjuicy || []).push({'adzone':1114301});<\/script>\r\n<!--JuicyAds END-->\r\n  <\/div>\r\n\r\n<\/div><br \/>\n<br \/> Q&#038;A: The next threat to critical infrastructure is manipulation<br \/>\n<br \/>#threat #critical #infrastructure #manipulation<\/p>\n","protected":false},"excerpt":{"rendered":"<p>To securely protect critical infrastructure, organisations need to evolve their operational technology (OT) security approach&#8230;.<\/p>\n","protected":false},"author":1,"featured_media":20989,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[4648,4869,12636,1583],"class_list":["post-20988","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-stories","tag-critical","tag-infrastructure","tag-manipulation","tag-threat"],"featured_image_urls":{"full":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"thumbnail":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1-150x150.jpg",150,150,true],"medium":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1-300x228.jpg",300,228,true],"medium_large":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"large":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"1536x1536":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"2048x2048":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"covernews-slider-full":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"covernews-slider-center":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"covernews-featured":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1.jpg",514,391,false],"covernews-medium":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1-514x340.jpg",514,340,true],"covernews-medium-square":["https:\/\/8657085.xyz\/wp-content\/uploads\/2026\/08\/Dataz-1-400x250.jpg",400,250,true]},"author_info":{"display_name":"admin","author_link":"https:\/\/8657085.xyz\/?author=1"},"category_info":"<a href=\"https:\/\/8657085.xyz\/?cat=7\" rel=\"category\">Stories<\/a>","tag_info":"Stories","comment_count":"0","_links":{"self":[{"href":"https:\/\/8657085.xyz\/index.php?rest_route=\/wp\/v2\/posts\/20988","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/8657085.xyz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/8657085.xyz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/8657085.xyz\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/8657085.xyz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=20988"}],"version-history":[{"count":0,"href":"https:\/\/8657085.xyz\/index.php?rest_route=\/wp\/v2\/posts\/20988\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/8657085.xyz\/index.php?rest_route=\/wp\/v2\/media\/20989"}],"wp:attachment":[{"href":"https:\/\/8657085.xyz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=20988"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/8657085.xyz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=20988"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/8657085.xyz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=20988"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}