US cybersecurity officials said work is underway to stand up new and expanded government–industry mechanisms for sharing threat intelligence, with a particular focus on AI security and operational technology (OT) risks to critical infrastructure. CISA executive assistant director Nick Andersen said an AI Information-Sharing and Analysis Center (AI-ISAC) ordered by the White House is still in an “ongoing policy dialogue” phase, with stakeholders trying to resource the effort and avoid duplicating existing private-sector information-sharing initiatives; he also said there is no launch timeline and described the effort as moving through a “pre-decisional” process. In parallel, Andersen said DHS/CISA is planning a replacement for the disbanded Critical Infrastructure Partnership Advisory Council (CIPAC), aiming to correct gaps in the prior structure—particularly the lack of an explicit cybersecurity charter—and to enable more targeted focus groups on issues such as undersea cables and OT systems.
Separately, the White House Office of the National Cyber Director said it is developing an AI security policy framework intended to embed security controls into AI “tech stacks” in coordination with the Office of Science and Technology Policy, citing risks such as data poisoning and the potential for agentic capabilities to accelerate intrusions. In the private sector, the Manufacturing ISAC (MFG-ISAC) reported increased collaboration to address rising threats to manufacturing, including OT-focused initiatives such as tabletop exercises, OT training, and development of incident response playbooks and OT threat guidelines, alongside preparation for updated CMMC requirements—reinforcing the broader push toward structured, sector-based information sharing and readiness for critical-infrastructure cyber threats.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
8 events from the most recent confirmed update back to the earliest known activity.
DHS said it is reestablishing a formal cybersecurity information-sharing mechanism for critical infrastructure through the Alliance of National Councils for Homeland Operational Resilience – Critical Infrastructure, or ANCHOR-CI. Managed by CISA, the program will replace CIPAC functions with sector-specific, cross-sector, industry, and regional councils and is exempt from the Federal Advisory Committee Act due to the sensitivity of discussions.
National Cyber Director Sean Cairncross said ONCD is also preparing a short National Cyber Strategy focused on offensive cyber operations, deregulation, and workforce development, but its release has been delayed. He said it would be released 'sooner rather than later' without giving a date.
CISA said it is working on a replacement for CIPAC to enable broader and more targeted discussions on cybersecurity and operational technology risks, including issues such as undersea cables. Officials said the new structure is intended to improve engagement and give more critical infrastructure stakeholders a substantive voice.
CISA said stakeholders are engaged in ongoing policy discussions to stand up the AI-ISAC ordered by the White House, but officials said there is no current timeline for completion or launch. The effort was described as pre-decisional and aimed at avoiding duplication of existing private-sector information-sharing initiatives.
The White House Office of the National Cyber Director, working closely with the Office of Science and Technology Policy, began developing an AI security policy framework intended to build security into U.S.-led AI technology stacks. Officials said the effort is meant to make security foundational to AI innovation rather than a barrier.
The Department of Homeland Security disbanded the Critical Infrastructure Partnership Advisory Council, prompting work on a replacement structure for critical infrastructure cybersecurity and OT discussions. The exact date was not specified in the references.
Anthropic said in November that suspected Chinese hackers used its AI tool to automate a large portion of a hacking operation targeting about 30 organizations worldwide. The disclosure highlighted the growing risk of agentic AI being used to scale cyber operations.
The White House directed the creation of an AI-focused Information Sharing and Analysis Center to monitor and share information on AI-related cyber threats, vulnerabilities, and incidents across government and industry. The order was described in February 2026 as having been issued the previous year.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
6 references tracked. Mallory keeps watching after this page renders.
hipaajournal.com
Open sourcescworld.com
Open sourcecyberscoop.com
Open sourcecyberscoop.com
Open sourcenextgov.com
Open sourcenextgov.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.