WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts Supplemental Cyber Highlights – December 17, 2024
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partnerships
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – December 17, 2024

Author: Chase Snow

Created: Tuesday, December 17, 2024 - 14:00

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure Resilience

  • 2024 in retrospect: Lessons learned and cyber strategies shaping future of critical infrastructure | Industrial Cyber
  • CISA’s 2024 Year in Review document details cyber defense, infrastructure protection milestones | Industrial Cyber
  • Statement from President Joe Biden on the 50th Anniversary of the Safe Drinking Water Act | The White House
  • Efforts to Secure US Telcos Beset by Salt Typhoon Might Fall Flat | Dark Reading

IT Vulnerability Security Updates

  • Windows kernel bug now exploited in attacks to gain SYSTEM privileges | Bleeping Computer
  • Citrix shares mitigations for ongoing Netscaler password spray attacks | Bleeping Computer
  • Critical Vulnerabilities Found in Ruijie Reyee Cloud Management Platform | SecurityWeek
  • Critical OpenWrt Vulnerability Exposes Devices to Malicious Firmware Injection | The Hacker News

IT Malware, Threats & Risks

  • Google Calendar Notifications Bypassing Email Security Policies | Check Point
  • PHP backdoor looks to be work of Chinese-linked APT group | Cyberscoop
  • Russian cyberspies target Android users with new spyware | Bleeping Computer  
  • PUMAKIT, a sophisticated rootkit that uses advanced stealth mechanisms | Security Affairs
  • Malvertising on steroids serves Lumma infostealer | Help Net Security  

Ransomware

  • Clop ransomware claims responsibility for Cleo data theft attacks | Bleeping Computer  
  • Akira and RansomHub Surge as Ransomware Claims Reach All-Time High | Infosecurity Magazine

Cyber Resilience, General Awareness, & AI

  • The shifting security landscape: 2025 predictions and challenges | Help Net Security
  • Overlooking platform security weakens long-term cybersecurity posture | Help Net Security
  • Link Trap: GenAI Prompt Injection Attack | Trendmicro

Related Resources

Tip of the Week – May 14, 2026

May 14, 2026 in Cybersecurity, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 14, 2026)

May 14, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) Non-Human Identities (NHIs) Are Growing Faster Than Most Security Programs

May 14, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar