WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships (TLP:CLEAR) Updated Joint Cybersecurity Advisory – Scattered Spider
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

(TLP:CLEAR) Updated Joint Cybersecurity Advisory – Scattered Spider

TLP:CLEAR

Author: Chase Snow

Created: Thursday, July 31, 2025 - 15:03

Categories: Cybersecurity, Federal & State Resources, Security Preparedness

Summary: On Tuesday, CISA, the FBI, and several other federal and international partners released an updated joint Cybersecurity Advisory (CSA) on Scattered Spider—a cyber threat group targeting commercial facilities sectors and subsectors. The update to this advisory provides updated tactics, techniques, and procedures (TTPs) obtained through FBI investigations conducted through June 2025.

Analyst Note: While Scattered Spider is focused on financial services, they are also known to conduct attacks across many different critical infrastructure sectors including energy and government facilities. They are known for sophisticated social engineering attacks and espionage activities. The FBI and CISA encourage critical infrastructure organizations to implement the recommendations in the Mitigations section of this CSA to reduce the likelihood and impact of a cyber attack by Scattered Spider threat actors.

In November 2023, FS-ISAC developed a useful mitigation guide for defending against Scattered Spider and BlackCat Ransomware. This guide can prove very useful when combined with the new TTPs provided in the updated CSA.

Original Source: https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-320a

Mitigation Recommendations:

  • Scattered Spider & BlackCat Ransomware: Mitigation Guidance

Related WaterISAC PIRs: 6, 6.1, 7, 7.1, 10, 12

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 1, 2026)

May 1, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

Tip of the Week – April 30, 2026

Apr 30, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) Cyber Readiness Institute Joins WaterISAC as a Community Partner to Strengthen Cyber Readiness Across the Water Sector

Apr 30, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar