WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships Supplemental Cyber Highlights – January 23, 2024
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – January 23, 2024

Author: Chase Snow

Created: Tuesday, January 23, 2024 - 20:16

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure

  • Addressing complexities of zero trust implementation in OT/ICS environments to bolster cybersecurity (Industrial Cyber)
  • CISA’s 2023 Year in Review highlights efforts to safeguard critical infrastructure, manage cyber and physical risks (Industrial Cyber)

IT Vulnerabilities/Security Updates

  • Protecting Your Network Security from Ivanti Zero-Day Threat (TrendMicro)
  • High-Severity Vulnerability Patched in Splunk Enterprise (Security Week)
  • ~40,000 Attacks in 3 Days: Critical Confluence RCE Under Active Exploitation (The Hacker News)

IT Malware/Threats/Risks

  • Data of 15 million Trello users scraped and offered for sale (HelpNetSecurity)
  • Invoice Phishing Alert: TA866 Deploys WasabiSeed & Screenshotter Malware (The Hacker News)
  • iPhone, Android Ambient Light Sensors Allow Stealthy Spying (Dark Reading)
  • Conditional QR Code Routing Attacks (Checkpoint)

Ransomware

  • Kasseika Ransomware Deploys BYOVD Attacks, Abuses PsExec and Exploits Martini Driver (TrendMicro)
  • Threat Assessment: BianLian (Unit 42)

Cyber Resilience

  • Why cyberattacks mustn’t be kept secret (HelpNetSecurity)
  • Best practices to implement self-doxxing in organizations (AT&T)
  • Top Unexpected Ways to Utilise a Password Manager for Enhanced Security and Organisation (IT Security Guru)
  • Resolving Top Security Misconfigurations: What you need to know (Tripwire)

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 1, 2026)

May 1, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

Tip of the Week – April 30, 2026

Apr 30, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) Cyber Readiness Institute Joins WaterISAC as a Community Partner to Strengthen Cyber Readiness Across the Water Sector

Apr 30, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar