WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships Supplemental Cyber Highlights – December 19, 2024
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – December 19, 2024

Author: Chase Snow

Created: Thursday, December 19, 2024 - 13:58

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure Resilience

  • Researchers reveal OT-specific malware in use and in development | Help Net Security
  • New Malware Can Kill Engineering Processes in ICS Environments | Infosecurity Magazine
  • New Forescout research details persistent malware threats to OT/ICS engineering workstations | Industrial Cyber
  • How to Create an Effective Merged IT/OT SOC | Industrial Cyber

IT Vulnerability Security Updates

  • Patch Alert: Critical Apache Struts Flaw Found, Exploitation Attempts Detected | The Hacker News
  • BeyondTrust fixes critical vulnerability in remote access, support solutions (CVE-2024-12356) | Help Net Security
  • Fortinet Patches Critical FortiWLM Vulnerability | SecurityWeek
  • Chrome 131 Update Patches High-Severity Memory Safety Bugs | SecurityWeek  

IT Malware, Threats & Risks

  • Phishing Attacks Double in 2024 | Infosecurity Magazine  
  • APT29 Hackers Target High-Value Victims Using Rogue RDP Servers and PyRDP | The Hacker News
  • Midnight Blizzard Taps Phishing Emails, Rogue RDP Nets | Dark Reading
  • Silent Heists: The Danger of Insider Threats | Tripwire  

Ransomware

  • Ransomware in 2024: New players, bigger payouts, and smarter tactics | Help Net Security
  • Clop is back to wreak havoc via vulnerable file-transfer software | Cyberscoop
  • Dragos reports ransomware shifts in Q3, with hackers picking operational sabotage over financial extortion | Industrial Cyber

Cyber Resilience, General Awareness, & AI

  • US considers banning TP-Link routers over cybersecurity risks | Bleeping Computer
  • AI Regulation Gets Serious in 2025 – Is Your Organization Ready? | SecurityWeek

Related Resources

(TLP:CLEAR) FIRESTARTER Backdoor and Updated Emergency Directive for CISCO Firepower and Secure Firewall Devices

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:GREEN) FBI FLASH – Newly Observed Ransomware Variant Black Shrantac Threat to U.S. Entities

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Likely PRC State-Sponsored Activity Observed in the Water Sector – DocuSign Phishing Tactics Identified

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar