WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts Supplemental Cyber Highlights – February 20, 2024
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – February 20, 2024

Author: Chase Snow

Created: Tuesday, February 20, 2024 - 19:51

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure

  • Cactus ransomware gang claims the theft of 1.5TB of data from Energy management and industrial automation firm Schneider Electric | Security Affairs
  • Pennsylvania county pays $350,000 cyberattack ransom | The Record
  • Massive utility scam campaign spreads via online ads | Malwarebytes Labs
  • US House Committee holds hearing on protecting communications networks from foreign threats | Industrial Cyber
  • North Korean hackers linked to defense sector supply-chain attack | Bleeping Computer

IT Vulnerabilities

  • Over 28,500 Exchange servers vulnerable to actively exploited bug | Bleeping Computer
  • Critical ConnectWise ScreenConnect vulnerabilities fixed, patch ASAP! | Help Net Security
  • CISA: Cisco ASA/FTD bug CVE-2020-3259 exploited in ransomware attacks | Security Affairs
  • RCE vulnerabilities fixed in SolarWinds enterprise solutions | Help Net Security
  • Over 13,000 Ivanti gateways vulnerable to actively exploited bugs | Bleeping Computer

IT Malware, Threats & Risks

  • Malvertising: This cyberthreat isn’t on the dark web, it’s on Google | Malwarebytes Labs
  • Clean links and sophisticated scams mark new era in email attacks | Help Net Security
  • New Qbot malware variant uses fake Adobe installer popup for evasion | Bleeping Computer
  • USPS scam smishing campaigns could move to cloud with SNS Sender | SC Media

General Awareness & Resilience

  • Remote Access Trojan (RAT): Types, Mitigation & Removal | Sucuri
  • How to Defend Against the 10 Most Dangerous Privileged Attack Vectors | Heimdal
  • How to Perform User Access Reviews: Template, Process, Checklist | Heimdal
  • FBI Dismantles Ubiquiti Router Botnet Controlled by Russian Cyberspies | Security Week

Related Resources

Tip of the Week – May 14, 2026

May 14, 2026 in Cybersecurity, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 14, 2026)

May 14, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) Non-Human Identities (NHIs) Are Growing Faster Than Most Security Programs

May 14, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar