WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts Supplemental Cyber Highlights – January 23, 2025
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partnerships
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – January 23, 2025

TLP:CLEAR

Author: Chase Snow

Created: Thursday, January 23, 2025 - 14:26

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure Resilience

  • From qualitative to quantifiable: Transforming cyber risk management for critical infrastructure | CyberScoop
  • DNV report highlights increased OT cybersecurity investment in energy sector due to escalating threats | Industrial Cyber
  • Trump administration dismantles CSRB, leaves future of cybersecurity oversight in question | Industrial Cyber

IT Vulnerability Security Updates

  • Oracle Releases January 2025 Patch to Address 318 Flaws Across Major Products | The Hacker News
  • 48,000+ internet-facing Fortinet firewalls still open to attack | Help Net Security
  • SonicWall SMA appliances exploited in zero-day attacks (CVE-2025-23006) | Help Net Security
  • MasterCard DNS Error Went Unnoticed for Years | Krebs on Security

IT Malware, Threats & Risks

  • Major Cybersecurity Vendors’ Credentials Found on Dark Web | Infosecurity Magazine  
  • Will 2025 See a Rise of NHI Attacks? | Dark Reading  
  • Mirai botnet behind the largest DDoS attack to date | Help Net Security

Ransomware

  • Ransomware Attacks Surge to Record High in December 2024 | Infosecurity Magazine
  • Two ransomware groups abuse Microsoft’s Office 365 platform to gain access to target organizations | Security Affairs
  • Ransomware gangs pose as IT support in Microsoft Teams phishing attacks | Bleeping Computer

Cyber Resilience, General Awareness, & AI

  • Cloudflare mitigated a record-breaking 5.6 Tbps DDoS attack | Bleeping Computer
  • Iran and Russia deepen cyber ties with new agreement | The Record
  • Invisible Prompt Injection: A Threat to AI Security | Trendmicro

Related Resources

Tip of the Week – May 14, 2026

May 14, 2026 in Cybersecurity, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 14, 2026)

May 14, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) Non-Human Identities (NHIs) Are Growing Faster Than Most Security Programs

May 14, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar