CISA, the FBI, and international partners issued “Communicating Under Pressure: Best Practices for Service Providers,” directing providers to deliver immediate, actionable, accurate, transparent, and continuously updated communications during IT and operational-technology outages. The guidance applies to disruptions caused by cyberattacks, human error, equipment failures, and natural hazards, and calls for clear separation of confirmed facts from uncertainties while balancing legal, operational-security, law-enforcement, and containment requirements.
The agencies warned that outages can cascade through interconnected critical infrastructure, causing broad public disruption and uncertainty. Organizations are advised to establish crisis-communications plans, tailor updates to affected audiences, and maintain backup communication channels in case telecommunications systems are unreliable. The guidance was informed in part by Cloudflare’s nearly six-hour November 2025 outage, while industry observers cautioned that voluntary recommendations will require executive commitment and external accountability to overcome legal- and public-relations-driven disclosure practices.

See the actors and campaigns active against you right now.
2 events from the most recent confirmed update back to the earliest known activity.
CISA, the FBI, and international partners issued "Communicating Under Pressure: Best Practices for Service Providers," guidance for crisis communications during IT and OT outages. The guidance emphasizes timely, accurate, transparent and actionable updates, including backup communications planning and coordination with legal, operational-security, containment, and law-enforcement needs.
A Cloudflare outage disrupted services for almost six hours. Cloudflare acknowledged the incident, apologized to users, provided updates, and said it intended to publish a detailed postmortem.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.