The lead U.S. cyber agency is stretched thin as Iran hacking threat escalates

The lead U.S. cyber agency is stretched thin as Iran hacking threat escalates


Iraqi Shiites shout slogans as they carry a portrait of Iran’s Supreme Leader Ayatollah Ali Khamenei and wave Iran flags during a protest against US and Israeli attacks on Iran at a bridge leading to Green Zone where the US embassy is located, in Baghdad on February 28, 2026. Several hundred people protested against the US-Israeli strikes on Iran near the US embassy in Baghdad on February 28, AFP journalists said.

Ahmad Al-rubaye | Afp | Getty Images

As the fighting in the Middle East roars on, cyber experts are increasingly warning of online attacks from Iran on U.S. businesses and infrastructure.

“From a timing perspective, it’s now or never,” said Pavel Gurvich, founder and CEO of cybersecurity startup Tenzai. “In that sense, the danger is meaningfully higher.”

Gurvich said Iran may have stored capabilities and is waiting for a high-risk moment to launch.

Following U.S. and Israeli strikes on the region over the weekend, Iran has stepped up retaliatory strikes, hitting U.S. bases, embassies and major hubs, including Tel Aviv, Doha, and Dubai.

The looming threat of an Iran-linked cyberattack poses a critical risk to the U.S. at a time when the Cybersecurity and Infrastructure Security Agency, the leading readiness body, is grappling with a partial government shutdown, furloughs, and a management reshuffle that could hinder its ability to counteract an attack.

CISA turmoil

U.S. Homeland Security Secretary Kristi Noem testifies before a Senate Judiciary Committee hearing on “Oversight of the Department of Homeland Security,” on Capitol Hill in Washington, D.C., U.S., March 3, 2026.

Kevin Lamarque | Reuters

U.S. Secretary of Homeland Security Kristi Noem said in a statement this week that DHS is working with federal intelligence and law enforcement partners to “closely monitor and thwart” any potential U.S. threats.

The agency has reportedly lost about a third of its employees since Trump took office, and Madhu Gottumukkala, its temporary director, was reassigned to another division of DHS last week.

During Gottumukkala’s tenure, he clashed with staff and ended major contracts, Politico reported. He also came under scrutiny for uploading sensitive documents to ChatGPT and failed a polygraph test administered by CISA staff when he sought access to records.

Chief Information Officer Bob Costello announced this week on LinkedIn that he was “stepping away from federal service.” Politico previously reported that Costello had been asked to resign or accept a different position within DHS.

As of Tuesday afternoon, CISA’s website said it was last updated on Feb. 17 due to a “lapse in federal funding” and is not being actively managed.

DHS said Feb. 17 that the agency would cancel cybersecurity assessments, among other trainings and engagements.

“As the lapse goes on, CISA’s lack of involvement in these key areas will lead to a future threat or an increased area of weakness,” its website reads.

Lawmakers have also flagged concerns about the U.S. preparedness as the shutdown drags on.

House Appropriations Committee Chairman Tom Cole wrote last month that CISA’s personnel are already “stretched thin” and that a shutdown would hinder the country’s ability to protect critical infrastructure and hospitals.

Defense Department CTO Emil Michael: We can’t be reliant on any one AI provider anymore

Rising cyber threat

Even during the country’s ongoing Internet shutdown, cybersecurity experts said groups will continue to operate through proxies and VPNs.

CrowdStrike‘s counter-adversary operations lead, Adam Meyers, said Monday that the Austin-based firm had seen a surge in claims of network and server disruptions from Iran-linked groups that could target financial sectors and critical infrastructure.

John Hultquist, chief analyst of Google‘s Threat Intelligence Group, told CNBC in a statement Tuesday that while Iran has a history of exaggerating attacks, and claims should be taken with a “grain of salt,” they could seriously impact businesses.

JPMorgan Chase CEO Jamie Dimon told CNBC’s Leslie Picker on Monday that banks may be targets and said he expects a rise in cyber or terrorist attacks globally.

“We always try to prepare for that,” he said, adding that he considers cyber “one of the highest risks banks bear.”

Iran has proved it can break through against U.S. targets and in 2024 claimed responsibility for hacking the emails of several staffers tied to President Donald Trump’s campaign.

In 2012 and 2013, the country was behind a massive denial of service attack on major banks that crashed websites, CNBC previously reported.

Hultquist said Tuesday that the cyber threat from Iran follows a “familiar pattern.”

“We expect Iran to target the U.S., Israel, and Gulf Cooperation Council (GCC) countries with disruptive cyberattacks, focusing on targets of opportunity and critical infrastructure,” he said.



Source

AI’s next bottleneck: Why even the best chips made in the U.S. take a round trip to Taiwan
Technology

AI’s next bottleneck: Why even the best chips made in the U.S. take a round trip to Taiwan

An underappreciated step in the chipmaking process is poised to become the next bottleneck for artificial intelligence. Every microchip used to power artificial intelligence must be put into hardware that can interact with the outside world. But right now, almost all of this chipmaking step, known as advanced packaging, happens in Asia, and capacity is […]

Read More
Alibaba launches data center with 10,000 of its own chips as China ramps up AI push
Technology

Alibaba launches data center with 10,000 of its own chips as China ramps up AI push

Samuel Boivin | Nurphoto | Getty Images Alibaba and China Telecom are launching a data center in southern China powered by the e-commerce giant’s own chips, as the country ramps up its focus on homegrown AI infrastructure. The facility, announced on Tuesday, will feature 10,000 of Alibaba’s Zhenwu semiconductors which are designed for AI training […]

Read More
Google CEO Sundar Pichai says ‘AI shift’ opens opportunities to invest in startups
Technology

Google CEO Sundar Pichai says ‘AI shift’ opens opportunities to invest in startups

With Alphabet poised to earn potentially $100 billion or more from its 2015 bet on Elon Musk’s SpaceX, Google CEO Sundar Pichai said the explosion of artificial intelligence has opened the door to more startup investments. “You know SpaceX, Anthropic and so on so, I think now with the AI shift, there are more opportunities […]

Read More