Ukraine’s top negotiator Umerov to head foreign intelligence service | Reuters reuters.com/world/europe/ukr…
— Michael Novakhov (@mikenov) Aug 3, 2026
Author: wawiimuy
rustem umerov – Google Search google.com/search?gs_ssp=eJz…
reuters.com/world/europe/ukr…— Michael Novakhov (@mikenov) Aug 3, 2026
Ukraine Intelligence Overhaul: President Volodymyr Zelenskiy announced that Rustem Umerov, Ukraine’s top negotiator in U.S.-backed talks with Russia, will be appointed as the new Chief of Foreign Intelligence.
share.google/aimode/Gtj8hpcX…— Michael Novakhov (@mikenov) Aug 3, 2026
#Iran Suspected in US Water #Cyberattacks – AI Report
share.gemini.google/iHbnFecd…
Gemini: Recent reports indicate a series of cyberattacks targeting water systems across multiple US states, including Michigan and Minnesota, prompting investigations by the #FBI. While the FBI has not publicly identified the culprit, intelligence agencies suspect Iranian hackers may be responsible.Here is a breakdown of the situation:
The Scope of the Attacks
The attacks have targeted operational technology at local water systems:
Minnesota: Over 30 community water systems were affected by cyberattacks earlier in the week. In the city of Braham, an attack forced the water plant offline by shutting down operating controls for the well and treatment plant, leaving the city temporarily reliant on its water tower. In Plymouth, water infrastructure communications were disrupted but restored.
Michigan: Nine water systems were impacted following a federal cyber alert regarding attempts to tamper with operational technology.
Broader Impact: Reports suggest at least five other unidentified states have also been targeted, with attacks hitting water systems in at least seven states total.Importantly, officials in both Michigan and Minnesota have stated that all systems continued to operate safely without significant issues, and there have been no known impacts posing a public health concern or issues with water quality.
The Investigation and Suspects
The FBI, Cybersecurity and Infrastructure Security Agency (CISA), and other federal agencies are actively investigating the breaches.
While no formal attribution has been made, officials have pointed toward a tentative finding that Iran is behind the intrusions. This assessment is reportedly based on the methods employed and the lack of any ransom demand. However, investigators have not ruled out the possibility of a separate actor mimicking Iranian methods to inflame tensions.
The recent incidents follow warnings from the FBI and CISA that Iranian hackers have been targeting water and wastewater systems, as well as operational controls in other critical infrastructure sectors. Iran’s interest in US water systems has historical precedent, notably a 2016 cyberattack targeting a small dam near New York City, for which a group of Iranian hackers was charged by the Justice Department.
Vulnerabilities in Local Infrastructure
Local water plants and healthcare facilities are often considered vulnerable targets for cyberattacks. These facilities frequently lack the necessary funding and expertise to install the latest software patches or implement robust security measures, making them relatively easy to penetrate. CISA has urged utilities to implement stronger access controls and remove programmable logic controllers from direct internet exposure to mitigate these risks.
–AI Mode:
share.google/aimode/e1ZzDfvg…
The FBI and the Environmental Protection Agency (EPA) are actively investigating a coordinated wave of cyberattacks targeting municipal water and wastewater infrastructure across at least seven U.S. states, with Minnesota and Michigan confirming breaches. Federal intelligence agencies and cybersecurity experts strongly suspect that Iran or Iranian-affiliated threat groups, such as CyberAv3ngers, are behind the campaign. The hackers are executing opportunistic, remote intrusions by exploiting internet-connected operational technologies, prompting urgent nationwide security directives. [1, 2, 3, 4, 5, 6]
The Scope of the AttacksMinnesota: Targeted over 30 community water systems spanning a two-day period, forcing the state to activate its incident response capabilities. [5, 7]
Michigan: Confirmed breaches at 9 municipal water systems following a federal cyber alert. [2]
Other States: At least seven states total have reported incidents, including a confirmed attack on wastewater lift stations in Rapid City, South Dakota. [3, 7]
Public Safety: State officials emphasize that all systems continue to operate safely, and there is no indication that the physical safety or quality of drinking water has been compromised. [2, 7]Attack Vectors and Tactics
Target Devices: Hackers targeted internet-exposed Programmable Logic Controllers (PLCs), which regulate physical operations like water flow, pressure, and chemical levels. [3, 8]
System Disruption: Intruders bypassed security, changed administrative passwords, altered IP addresses, and locked out official personnel. [8, 9]
Physical Impacts: “The agency has for months been warning the public that Iran may seek to compromise water utilities and other critical infrastructure… the hacking activity, it added, had ‘resulted in boil water notices and sustained manual operations.’” as documented by The New York Times. Some targeted systems suffered localized flooding and loss of water pressure. [3, 4, 6]
No Ransom Demands: Because the attackers have not demanded financial ransoms, intelligence officials assess the primary motive is geopolitical disruption rather than financial gain. [4, 10]Federal Response and Mitigations
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered all water utility administrators to immediately audit their digital footprints, change default factory passwords, and entirely disconnect vulnerable operational controllers from the public internet. [1, 6, 11]
–— Michael Novakhov (@mikenov) Aug 3, 2026
#Iran Suspected in US Water #Cyberattacks share.gemini.google/iHbnFecd…
Recent reports indicate a series of cyberattacks targeting water systems across multiple US states, including Michigan and Minnesota, prompting investigations by the #FBI. While the FBI has not publicly identified the culprit, intelligence agencies suspect Iranian hackers may be responsible.Here is a breakdown of the situation:
The Scope of the Attacks
The attacks have targeted operational technology at local water systems:
Minnesota: Over 30 community water systems were affected by cyberattacks earlier in the week. In the city of Braham, an attack forced the water plant offline by shutting down operating controls for the well and treatment plant, leaving the city temporarily reliant on its water tower. In Plymouth, water infrastructure communications were disrupted but restored.
Michigan: Nine water systems were impacted following a federal cyber alert regarding attempts to tamper with operational technology.
Broader Impact: Reports suggest at least five other unidentified states have also been targeted, with attacks hitting water systems in at least seven states total.Importantly, officials in both Michigan and Minnesota have stated that all systems continued to operate safely without significant issues, and there have been no known impacts posing a public health concern or issues with water quality.
The Investigation and Suspects
The FBI, Cybersecurity and Infrastructure Security Agency (CISA), and other federal agencies are actively investigating the breaches.
While no formal attribution has been made, officials have pointed toward a tentative finding that Iran is behind the intrusions. This assessment is reportedly based on the methods employed and the lack of any ransom demand. However, investigators have not ruled out the possibility of a separate actor mimicking Iranian methods to inflame tensions.
The recent incidents follow warnings from the FBI and CISA that Iranian hackers have been targeting water and wastewater systems, as well as operational controls in other critical infrastructure sectors. Iran’s interest in US water systems has historical precedent, notably a 2016 cyberattack targeting a small dam near New York City, for which a group of Iranian hackers was charged by the Justice Department.
Vulnerabilities in Local Infrastructure
Local water plants and healthcare facilities are often considered vulnerable targets for cyberattacks. These facilities frequently lack the necessary funding and expertise to install the latest software patches or implement robust security measures, making them relatively easy to penetrate. CISA has urged utilities to implement stronger access controls and remove programmable logic controllers from direct internet exposure to mitigate these risks.
–AI Mode:
share.google/aimode/e1ZzDfvg…
The FBI and the Environmental Protection Agency (EPA) are actively investigating a coordinated wave of cyberattacks targeting municipal water and wastewater infrastructure across at least seven U.S. states, with Minnesota and Michigan confirming breaches. Federal intelligence agencies and cybersecurity experts strongly suspect that Iran or Iranian-affiliated threat groups, such as CyberAv3ngers, are behind the campaign. The hackers are executing opportunistic, remote intrusions by exploiting internet-connected operational technologies, prompting urgent nationwide security directives. [1, 2, 3, 4, 5, 6]
The Scope of the AttacksMinnesota: Targeted over 30 community water systems spanning a two-day period, forcing the state to activate its incident response capabilities. [5, 7]
Michigan: Confirmed breaches at 9 municipal water systems following a federal cyber alert. [2]
Other States: At least seven states total have reported incidents, including a confirmed attack on wastewater lift stations in Rapid City, South Dakota. [3, 7]
Public Safety: State officials emphasize that all systems continue to operate safely, and there is no indication that the physical safety or quality of drinking water has been compromised. [2, 7]Attack Vectors and Tactics
Target Devices: Hackers targeted internet-exposed Programmable Logic Controllers (PLCs), which regulate physical operations like water flow, pressure, and chemical levels. [3, 8]
System Disruption: Intruders bypassed security, changed administrative passwords, altered IP addresses, and locked out official personnel. [8, 9]
Physical Impacts: “The agency has for months been warning the public that Iran may seek to compromise water utilities and other critical infrastructure… the hacking activity, it added, had ‘resulted in boil water notices and sustained manual operations.’” as documented by The New York Times. Some targeted systems suffered localized flooding and loss of water pressure. [3, 4, 6]
No Ransom Demands: Because the attackers have not demanded financial ransoms, intelligence officials assess the primary motive is geopolitical disruption rather than financial gain. [4, 10]Federal Response and Mitigations
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered all water utility administrators to immediately audit their digital footprints, change default factory passwords, and entirely disconnect vulnerable operational controllers from the public internet. [1, 6, 11]
–— Michael Novakhov (@mikenov) Aug 3, 2026
Zelensky has appointed Rustem Umerov as head of the Foreign Intelligence Service and Ihor Klymenko as Secretary of the National Security and Defense Council.
The corresponding decrees have already been published on the website of the President of Ukraine.
— @visegrad24 Aug 3, 2026
Acting Attorney General Todd Blanche issued an order Sunday evening formally rescinding plans to create a nearly $1.8 billion “anti-weaponization fund” intended to compensate allies of President Trump.
— @CBSNews Aug 3, 2026
#CIA #FBI #Mossad
Middle East Crisis Continues
x.com/mikenov/status/2084233…Michael Novakhov (@mikenov) #Security and #Intelligence #News of the day – 8.3.26Security, Intelligence, and Autonomous Warfare share.gemini.google/kjmW3FFQ…
AI Mode:
share.google/aimode/McRuYByr…
Gemini:
Here is the security and intelligence briefing for Monday, August 3, 2026, focusing on strategic developments, autonomous systems, and agency oversight.Autonomous Warfare & Global Military Developments
EU Air Defense and Drone Disbursements: The European Commission finalized a €3.47 billion disbursement to Ukraine specifically designated for autonomous platforms, missiles, integrated air defense networks, and fighter jets.
Deep-Strike Logistics Disruptions: Ukrainian drone operations successfully bypassed layered defenses overnight to strike a major Wildberries logistics center in Russia’s Vladimir region, forcing emergency rerouting of supply chains. Simultaneously, Moscow claimed overnight counter-strikes targeting three cargo ships in the Black Sea and a Mykolaiv port vessel, asserting they were carrying military cargo for the Ukrainian armed forces.
Domestic Counter-UAS Vulnerabilities: Security analysts are flagging significant structural and jurisdictional gaps in U.S. counter-autonomy (C-UAS) readiness. Following the seizure of over 600 unauthorized drones at the 2026 FIFA World Cup, focus is intensifying on the lack of a coherent domestic framework to handle semi-autonomous kinetic threats—a tactical template recently utilized in Iranian drone strikes against UAE data centers.Agency Oversight & Institutional Dynamics
Pentagon Information Sharing Under Scrutiny: As the U.S. military campaign in Iran enters its sixth month, structural friction between the Department of Defense and Congress is escalating. House Armed Services Committee member Rep. Mike Turner is formally demanding greater operational transparency regarding the ongoing Iran conflict, U.S. force posture in Europe, and negotiations over licensing Patriot missile technology to Kyiv.
Legislative Control vs. Operational Secrecy: Highlighting the tension between transparent oversight and operational security, internal Pentagon memos recently warned that “unauthorized engagements with Congress” by defense personnel risk undermining the Department’s broader legislative objectives and institutional priorities.
–AI Mode:
share.google/aimode/McRuYByr…
The most critical global security update today is that U.S. President Donald Trump has called off a planned “massive attack” on Iran at the last minute, opting instead to restart diplomatic peace talks. This dramatic de-escalation follows warnings from military planners regarding a prolonged conflict, alongside intelligence indicating severe retaliation risks against regional U.S. bases. [1, 2, 3]
🌍 Global Defense & GeopoliticsU.S.–Iran Negotiations: Talks mediated by Oman began today, focusing primarily on establishing a secure, temporary transit corridor along the Omani coast. This has caused global Brent crude prices to drop by 4.2%, despite the fact that Iran has not officially agreed to fully reopen the heavily contested Strait of Hormuz. [1]
Ukraine Intelligence Overhaul: President Volodymyr Zelenskiy announced that Rustem Umerov, Ukraine’s top negotiator in U.S.-backed talks with Russia, will be appointed as the new Chief of Foreign Intelligence. [4]
Gaza Disarmament Standoff: Israel formally conveyed “serious security concerns” to the White House regarding a proposed Hamas disarmament deal. Israeli intelligence assessments indicate that Hamas intends to rebuild its military framework rather than fully demilitarize. [5]
South Korea Counterintelligence: South Korea’s Defense Ministry officially launched a new defense counterintelligence agency to replace its former command. The restructure aims to neutralize North Korean espionage and terror threats while breaking from past political interference. [6]
Iran Internal Espionage: Iranian state media reported the execution of two citizens, Omid Behzad and Pouria Safvat. They were convicted of espionage after allegedly transmitting coordinates of military and security sites to Israeli intelligence. [7]💻 Cyber Intelligence & Security Threats
Critical Infrastructure Targeted: U.S. cyber defense investigators revealed that recent cyberattacks targeting municipal water systems have expanded beyond Minnesota to at least six other states, including Michigan, South Dakota, and Georgia. The operations are actively being traced to Iranian-linked threat actors. [8, 9]
North Korean IT Schemes: A multilateral initiative involving 11 nations (including the U.S., UK, Japan, and South Korea) issued a first-of-its-kind joint advisory. It warns that North Korean IT workers are using false identities to secure remote corporate jobs to fund Pyongyang’s ballistic missile programs, creating a severe insider threat. [10]
AI-Driven Cybercrime Surge: INTERPOL released its African Cyberthreat Assessment Report, revealing that artificial intelligence is now linked to 55% of all reported cybercrimes across Africa. The technology has successfully industrialized localized fraud and ransomware. [11]
Rapid Vulnerability Exploitation: A newly published CrowdStrike Threat Hunting Report highlighted that 88% of discovered software vulnerabilities are now exploited within 48 hours of public disclosure. Certain nation-state actors are weaponizing proof-of-concepts in under 24 hours. [12]
Active Platform Vulnerability: Security firm N-able issued an emergency directive urging immediate upgrades to version 2026.3 of its N-central platform. This follows evidence of active in-the-wild exploitation that exposes downstream enterprise customers. [13]🛡️ Military & Tech Policy
Japan Cloud Migration: Japan’s Defense Ministry announced plans to earmark fiscal 2027 budget funds to shift highly classified data and defense secrets onto private-sector commercial cloud networks. The transition is designed to accelerate military AI implementation and streamline drone data.
U.S. Defense Procurement Interrupted: The U.S. Department of Defense officially suspended Phase 2 of its controversial Cybersecurity Maturity Model Certification (CMMC) program. The decision was made due to mounting criticism over a $7 billion bureaucratic compliance cost imposed on small business military contractors. [14, 15, 16]
-— https://x.com/mikenov/status/2084233020794339678— Michael Novakhov (@mikenov) Aug 3, 2026
U.S. Central Command (CENTCOM) is soliciting “creative and unconventional” ideas from military analysts for new ways to pressure Iran, highlighting the growing challenge of finding options that can increase leverage without significantly escalating the conflict, according to CNN.
The report says the unusual request came as President Trump continues weighing next steps after weeks of strikes that have failed to compel Tehran to accept U.S. terms. CNN also reports that recent assessments from the Central Intelligence Agency (CIA) and Defense Intelligence Agency (DIA) conclude the current air campaign alone is unlikely to change Iran’s negotiating position, while Joint Chiefs Chairman Gen. Dan Caine has publicly acknowledged that “air power has its limits.”
The reporting aligns with recent accounts from The Wall Street Journal, The New York Times, Axios, and Reuters, which have described senior military leaders grappling with finite military options, dwindling air defense interceptor stockpiles, and the strategic limits of an air campaign absent a broader escalation.
— @sentdefender Aug 3, 2026
#Security and #Intelligence #News of the day – 8.3.26
Security, Intelligence, and Autonomous Warfare share.gemini.google/kjmW3FFQ…
AI Mode:
share.google/aimode/McRuYByr…
Gemini:
Here is the security and intelligence briefing for Monday, August 3, 2026, focusing on strategic developments, autonomous systems, and agency oversight.Autonomous Warfare & Global Military Developments
EU Air Defense and Drone Disbursements: The European Commission finalized a €3.47 billion disbursement to Ukraine specifically designated for autonomous platforms, missiles, integrated air defense networks, and fighter jets.
Deep-Strike Logistics Disruptions: Ukrainian drone operations successfully bypassed layered defenses overnight to strike a major Wildberries logistics center in Russia’s Vladimir region, forcing emergency rerouting of supply chains. Simultaneously, Moscow claimed overnight counter-strikes targeting three cargo ships in the Black Sea and a Mykolaiv port vessel, asserting they were carrying military cargo for the Ukrainian armed forces.
Domestic Counter-UAS Vulnerabilities: Security analysts are flagging significant structural and jurisdictional gaps in U.S. counter-autonomy (C-UAS) readiness. Following the seizure of over 600 unauthorized drones at the 2026 FIFA World Cup, focus is intensifying on the lack of a coherent domestic framework to handle semi-autonomous kinetic threats—a tactical template recently utilized in Iranian drone strikes against UAE data centers.Agency Oversight & Institutional Dynamics
Pentagon Information Sharing Under Scrutiny: As the U.S. military campaign in Iran enters its sixth month, structural friction between the Department of Defense and Congress is escalating. House Armed Services Committee member Rep. Mike Turner is formally demanding greater operational transparency regarding the ongoing Iran conflict, U.S. force posture in Europe, and negotiations over licensing Patriot missile technology to Kyiv.
Legislative Control vs. Operational Secrecy: Highlighting the tension between transparent oversight and operational security, internal Pentagon memos recently warned that “unauthorized engagements with Congress” by defense personnel risk undermining the Department’s broader legislative objectives and institutional priorities.
–AI Mode:
share.google/aimode/McRuYByr…
The most critical global security update today is that U.S. President Donald Trump has called off a planned “massive attack” on Iran at the last minute, opting instead to restart diplomatic peace talks. This dramatic de-escalation follows warnings from military planners regarding a prolonged conflict, alongside intelligence indicating severe retaliation risks against regional U.S. bases. [1, 2, 3]
🌍 Global Defense & GeopoliticsU.S.–Iran Negotiations: Talks mediated by Oman began today, focusing primarily on establishing a secure, temporary transit corridor along the Omani coast. This has caused global Brent crude prices to drop by 4.2%, despite the fact that Iran has not officially agreed to fully reopen the heavily contested Strait of Hormuz. [1]
Ukraine Intelligence Overhaul: President Volodymyr Zelenskiy announced that Rustem Umerov, Ukraine’s top negotiator in U.S.-backed talks with Russia, will be appointed as the new Chief of Foreign Intelligence. [4]
Gaza Disarmament Standoff: Israel formally conveyed “serious security concerns” to the White House regarding a proposed Hamas disarmament deal. Israeli intelligence assessments indicate that Hamas intends to rebuild its military framework rather than fully demilitarize. [5]
South Korea Counterintelligence: South Korea’s Defense Ministry officially launched a new defense counterintelligence agency to replace its former command. The restructure aims to neutralize North Korean espionage and terror threats while breaking from past political interference. [6]
Iran Internal Espionage: Iranian state media reported the execution of two citizens, Omid Behzad and Pouria Safvat. They were convicted of espionage after allegedly transmitting coordinates of military and security sites to Israeli intelligence. [7]💻 Cyber Intelligence & Security Threats
Critical Infrastructure Targeted: U.S. cyber defense investigators revealed that recent cyberattacks targeting municipal water systems have expanded beyond Minnesota to at least six other states, including Michigan, South Dakota, and Georgia. The operations are actively being traced to Iranian-linked threat actors. [8, 9]
North Korean IT Schemes: A multilateral initiative involving 11 nations (including the U.S., UK, Japan, and South Korea) issued a first-of-its-kind joint advisory. It warns that North Korean IT workers are using false identities to secure remote corporate jobs to fund Pyongyang’s ballistic missile programs, creating a severe insider threat. [10]
AI-Driven Cybercrime Surge: INTERPOL released its African Cyberthreat Assessment Report, revealing that artificial intelligence is now linked to 55% of all reported cybercrimes across Africa. The technology has successfully industrialized localized fraud and ransomware. [11]
Rapid Vulnerability Exploitation: A newly published CrowdStrike Threat Hunting Report highlighted that 88% of discovered software vulnerabilities are now exploited within 48 hours of public disclosure. Certain nation-state actors are weaponizing proof-of-concepts in under 24 hours. [12]
Active Platform Vulnerability: Security firm N-able issued an emergency directive urging immediate upgrades to version 2026.3 of its N-central platform. This follows evidence of active in-the-wild exploitation that exposes downstream enterprise customers. [13]🛡️ Military & Tech Policy
Japan Cloud Migration: Japan’s Defense Ministry announced plans to earmark fiscal 2027 budget funds to shift highly classified data and defense secrets onto private-sector commercial cloud networks. The transition is designed to accelerate military AI implementation and streamline drone data.
U.S. Defense Procurement Interrupted: The U.S. Department of Defense officially suspended Phase 2 of its controversial Cybersecurity Maturity Model Certification (CMMC) program. The decision was made due to mounting criticism over a $7 billion bureaucratic compliance cost imposed on small business military contractors. [14, 15, 16]
–— Michael Novakhov (@mikenov) Aug 3, 2026
