WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships Supplemental Cyber Highlights – August 10, 2023
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – August 10, 2023

Author: Jennifer Walker

Created: Thursday, August 10, 2023 - 18:06

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

ICS/OT/SCADA Vulnerabilities & Threats

  • Some of you may know this guy! Water Sector Cyber Risk with Gus Serino (Unsolicited Response Podcast)
  • Why ICS Vulnerabilities Do Matter (Claroty)
  • OPC UA Deep Dive Series: A One-of-a-Kind OPC UA Exploit Framework (Claroty’s Team 82)

IT Vulnerabilities & Threats

  • Citrix Zero-Day: 7K Instances Remain Exposed, 460 Compromised (Dark Reading)
  • Downfall attacks can gather passwords, encryption keys from Intel processors (HelpNetSecurity)
  • New ‘Inception’ Side-Channel Attack Targets AMD Processors (Security Week)
  • Digital assets continue to be prime target for malvertisers (Malwarebytes)
  • QakBot Malware Operators Expand C2 Network with 15 New Servers (The Hacker News)
  • A couple of blasts from the past:
    • Why Shellshock Remains a Cybersecurity Threat After 9 Years (Dark Reading)
    • CVE-2017-11882: five years of exploitation (Kaspersky)

Technical Posts (for security analysts, sysadmins, and other nerds)

  • Databases beware: Abusing Microsoft SQL Server with SQLRecon (IBM Security Intelligence)
  • LOLBAS in the Wild: 11 Living-Off-The-Land Binaries That Could Be Used for Malicious Purposes (The Hacker News)
  • Clustering attacker behavior reveals hidden patterns (Sophos)

Cyber Resilience & General Awareness

  • The Power of Resilience: What America can learn from our partners in Ukraine (CISA)
  • 10 Key Controls to Show Your Organization Is Worthy of Cyber Insurance (Dark Reading)

Related Resources

(TLP:CLEAR) FIRESTARTER Backdoor and Updated Emergency Directive for CISCO Firepower and Secure Firewall Devices

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:GREEN) FBI FLASH – Newly Observed Ransomware Variant Black Shrantac Threat to U.S. Entities

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Likely PRC State-Sponsored Activity Observed in the Water Sector – DocuSign Phishing Tactics Identified

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar