WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts Supplemental Cyber Highlights – August 22, 2023
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – August 22, 2023

Author: Jennifer Walker

Created: Tuesday, August 22, 2023 - 16:18

Categories: Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

The following posts are useful for general awareness of current threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure

  • Cybersecurity Funding for State, Local, and Tribal Nations and Electric Utilities (Cisco)
  • Energy One reports cyber attack on corporate systems in Australia, UK; affects UK critical infrastructure operators (Industrial Cyber)
  • The Philosophy and History Behind Compliance, And Its Necessity for Protecting Critical Infrastructure (Industrial Defender)
  • Lack of UPS Maintenance Leads to Failures (ISS Source)
  • Visibility Is Just Not Enough to Secure Operational Technology Systems (Dark Reading)

IT Vulnerabilities & Threats

  • Another Ivanti (formerly MobileIron Sentry) vulnerability, patch ‘em if ya got ‘em! Ivanti Ships Urgent Patch for API Authentication Bypass Vulnerability (Security Week)
  • Cisco Patches High-Severity Vulnerabilities in Enterprise Applications (Security Week)
  • Companies Respond to ‘Downfall’ Intel CPU Vulnerability (Security Week)
  • Alarming lack of cybersecurity practices on world’s most popular websites (Security Affairs)
  • Catching up with WoofLocker, the most elaborate traffic redirection scheme to tech support scams (Malwarebytes)

Ransomware

  • Cuba Ransomware Deploys New Tools: Targets Critical Infrastructure Sector in the U.S. and IT Integrator in Latin America (BlackBerry)
    • “Cuba’s initial access vector appears to be compromised admin credentials via RDP, not involving brute forcing.”
  • Microsoft: BlackCat’s Sphynx ransomware embeds Impacket, RemCom (Bleeping Computer)
  • H1 2023: Ransomware’s Pivot to Linux and Vulnerable Drivers (Recorded Future)
  • Resilience, Recovery Strategies to Combat Ransomware and Extortion (Claroty Nexus)
  • THREAT ANALYSIS: Assemble LockBit 3.0 (Cyber Reason)

Cyber Resilience

  • Check this out for added controls on physical security: Demystifying Duo APIs: Advanced Security with Duo Integrations (Cisco)
  • IT’s rising role in physical security technology (HelpNetSecurity)
  • Ultimate New Hire Onboarding Checklist: Your Roadmap to Success (HackRead)
  • There are some good ideas, including a test out option for security awareness training (mostly for the security staff): Tasks that bog down security teams (and what to do about them) (CSO Online)

Technical Posts (for security analysts, sysadmins, and other nerds)

  • Securely implementing Active Directory on Windows Server 2019 (AT&T Cybersecurity)
  • Unveiling the Hidden Risks of Routing Protocols (Dark Reading)
  • Volatility Workbench: Empowering memory forensics investigations (AT&T Cybersecurity)
  • SystemBC Malware Activity (SANS Internet Storm Center)
  • Gone Phishing: An Analysis of a Targeted User Attack (Huntress)

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated June 11, 2026)

Jun 11, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

Tip of the Week – June 11, 2026

Jun 11, 2026 in Cybersecurity
Members Only

(TLP:GREEN) FBI Report – Elevated Cyber Risk to Utility Providers Supporting FIFA World Cup 2026 Tournament Events

Jun 11, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident
Traffic Light Protocol (TLP)

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar