惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

阮一峰的网络日志
阮一峰的网络日志
雷峰网
雷峰网
Last Week in AI
Last Week in AI
T
Tailwind CSS Blog
V
Visual Studio Blog
Jina AI
Jina AI
博客园 - 司徒正美
The Cloudflare Blog
Hugging Face - Blog
Hugging Face - Blog
博客园_首页
S
SegmentFault 最新的问题
博客园 - 三生石上(FineUI控件)
有赞技术团队
有赞技术团队
小众软件
小众软件
V
V2EX
Apple Machine Learning Research
Apple Machine Learning Research
美团技术团队
博客园 - 【当耐特】
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
IT之家
IT之家
WordPress大学
WordPress大学
爱范儿
爱范儿
月光博客
月光博客
大猫的无限游戏
大猫的无限游戏

Latest from TechRadar

Quordle hints and answers for Monday, April 13 (game #1540) NYT Strands hints and answers for Monday, April 13 (game #771) NYT Connections hints and answers for Monday, April 13 (game #1037) Morbid Metal developer explains why he ditched an origami art direction in favor of gritty sci-fi — 'It worked, but it didn't really feel like me' '71% of US households get routers from ISPs': Why new FCC rules could leave millions stuck with outdated,… 'The CPU is the system’s executive layer': Intel joins SambaNova as both face existential threat from… ‘More bang for your buck’: 7 easy ways to boost your MacBook Neo’s performance for free DJI Romo P vs Roborock Saros 10R — which robot vacuum comes out on top when it comes to dodging obstacles? I put… I spent 6 hours with Genshin Impact on the Galaxy S26 Ultra, and I can't believe how far mobile gaming has come What is the release date for The Testaments episode 4 on Hulu and Disney+? I reviewed the LG G6 for 3 weeks, and it's a fantastic OLED TV that's the new best option for brighter rooms Is your bird feeder camera doing more harm than good? 3 tips for using it safely as RSPB issues urgent disease warning Chelsea vs Man City Live Streams: How to watch Premier League 2025/26 from anywhere in the world, team news How to watch Alcaraz vs Sinner for FREE: TV Channels for Monte-Carlo Masters Final Sunderland vs Tottenham Live Streams: How to watch Premier League 2025/26 from anywhere in the world, team news Are these the best-designed workout headphones ever? I used them for a month to find out How to watch Snooker 900 John Virgo online (it's free) – stream O'Sullivan vs Higgins anywhere I've only just discovered the Walk With Frodo app on Garmin's Connect IQ store — and as as a huge LOTR nerd, it's going to make the next 1,800 miles fly by 'Just not sustainable': Why your monthly £25 broadband internet bill could soon hit £45 How to watch Paris-Roubaix 2026: Free Streams & TV Info as Tadej Pogacar chases third Monument How to watch Euphoria season 3 online – stream Zendaya & Sydney Sweeney drama from anywhere today '$15K bill destroyed a solo developer’s startup': How hackers are using leaked Google API keys to… There's a sneaky way to watch UFC 327 really cheap... NYT Connections hints and answers for Sunday, April 12 (game #1036) NYT Strands hints and answers for Sunday, April 12 (game #770) Quordle hints and answers for Sunday, April 12 (game #1539) Amazon's Ring cameras are the perfect solution to secure your home on a budget — shop today's best deals… I've tested every iPhone since the iPhone 12, and Ceramic Shield 2 is the first iPhone glass I fully trust UFC 327 live stream: how to watch Procházka vs Ulberg, start time, preview, full card We're officially getting the DJI Pocket 4 on April 16, but here's how Insta360 could beat it
The war in Iran is reaching cyberspace - here’s how...
Ashu Savani · 2026-04-16 · via Latest from TechRadar

Since day one, the war between the United States and Iran has played out in cyberspace. Now, we’re seeing cyber warfare reaching U.S. healthcare companies, banks and other enterprises.

As in other recent geopolitical skirmishes, in this conflict cyber-attacks are playing a role far beyond passive espionage.

Article continues below

But it’s critical to know that the biggest vulnerability usually isn’t the sophistication of attackers. Instead, it’s the lack of cybersecurity readiness among the organizations they target.

Co-founder of TryHackMe.

The enterprise execution gap

Playbooks and plans may help us feel prepared, but where many organizations go wrong is assuming this kind of paperwork equates to true preparedness.

To respond effectively to a real attack, there’s a choreography that has to happen in cross-departmental coordination, high-stakes decision-making and leadership communications. Only in practicing the actual execution can organizations truly prepare, and attackers are counting on you not to.

To put it another way, if you're not already testing your teams in simulated cyber warfare scenarios, they're not going to be ready when the real attack strikes.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

Geopolitically motivated Advanced Persistent Threats (APTs) often entail a long-term attack where intruders tied to a hostile nation gain unauthorized, undetected access to a network to steal sensitive data or sabotage systems. Unlike typical hit-and-run attacks, APTs are highly targeted, lasting months or years to achieve specific objectives like espionage or intellectual property theft.

For example, in December 2023 a cyberattack on Ukraine’s largest telecom provider, Kyivstar, knocked out mobile and internet services for millions of users throughout the country. It was later revealed by investigators that the attackers had gained access to the network months before the official disruption – dating back to May 2023.

That day it was Kyivstar, but any number of other companies could have fallen victim to this patient, calculated attack.

When what appears to be a minor anomaly could actually be the beginnings of a sophisticated nation-state attack, there’s zero room for hesitation. Teams need to develop a muscle memory that equips them to respond efficiently.

The strongest security asset: humans

Everyone’s thinking it: but what about AI? Can AI help protect against cyber warfare?

Sure. But your best bets are still the humans running it.

AI tools can bring anomalies to light faster and analyze vast amounts of activity, but at the end of the day, good security is as much about people as it is about technology. The strongest security teams aren’t just technically adept, they’re effective communicators.

Even in nation-state-driven APTs, many attacks begin with a basic security control failing or being bypassed – such as someone clicking a rogue link or downloading a compromised file.

Simply getting the entirety of an enterprise organization to reliably cooperate with security protocols and priorities offers a huge blanket of protection, and it’s an incredibly human task. AI can help security teams operate more efficiently and allow humans to be more proactive, but it’s no silver bullet against persistent threats.

Consider a global financial services company operating during these rising tensions with Iran. The firm has strong cybersecurity policies on paper and an array of state-of-the-art AI security tools, but doesn’t regularly coordinate and make decisions alongside the wider organization.

A SOC analyst notices several unusual login attempts and anomalous activity from an employee workstation. The activity is flagged and eventually confirmed as a breach. However, since there are no clear communication protocols between security teams and the broader organization, such as leadership and the teams responsible for the affected systems, response decisions stall.

Deciding whether to isolate the system, hold an update or notify impacted teams bounce to and from the SOC and leadership teams, without clear direction.

By the time containment steps are approved and communicated enterprise wide, attackers have already moved deeper into the network and accessed personal data.

In the post-incident review, the problem isn’t a lack of security tools or policies. It’s that the organization has a disconnection between its defenders and those they are protecting. Strong, effective cyber defense depends just as much on strong communication and decision making across the business as a whole as it does on the technical detection.

Creating security certainty in an uncertain geopolitical environment

International tensions will continue to drive cyber activity, whether organizations are prepared or not.

The companies that recover fastest treat cyber readiness as a continuous feedback loop between the tech and its people. They optimize their response through constant practice exercises, identify weaknesses early, and refine how their teams coordinate, communicate, and escalate potential threats across the business.

By repeating the simulation cycle frequently to identify weaknesses during exercises, and converting findings into improvements such as updating playbooks, refining detection rules and overall communication protocols, teams will face continuous maturity rather than siloed preparedness to specific situations.

Enterprises cannot control global politics, but they can control their readiness. Those that survive any form of cyber-attack are those three steps ahead – those that practice responding before the crisis ever arrives, versus scrambling to contain damage in response.

In an era where geopolitical events can quickly translate into cyber incidents, preparation isn’t just about tools, it’s about how well people perform when an incident unfolds.

We've ranked the best firewall for small business.