WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships Supplemental Cyber Highlights – January 9, 2025
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – January 9, 2025

Author: Chase Snow

Created: Thursday, January 9, 2025 - 13:34

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure Resilience

  • The Role of Cybersecurity in Protecting Critical Infrastructure: Focus on Energy and Water Sectors | SOC Radar
  • Cyber Threats Rising: US Critical Infrastructure Under Increasing Attack in 2025 | Tripwire
  • CISA’s Greene details focus on strengthening cybersecurity resilience with KEV Catalog, CPGs, PRNI initiatives | Industrial Cyber
  • Ransomware Targeting Infrastructure Hits Telecom Namibia | Dark Reading

IT Vulnerability Security Updates

  • CVE-2025-0282: Ivanti Connect Secure Zero-Day Vulnerability Exploited In The Wild | Tenable
  • SonicWall urges admins to patch exploitable SSLVPN bug immediately | Bleeping Computer
  • Palo Alto Networks Patches High-Severity Vulnerability in Retired Migration Tool | SecurityWeek
  • BIOS flaws expose iSeq DNA sequencers to bootkit attacks | Bleeping Computer
  • Android patches several vulnerabilities in first security update of 2025 | CyberScoop
  • Chrome 131, Firefox 134 Updates Patch High-Severity Vulnerabilities | SecurityWeek
  • GFI KerioControl Firewall Vulnerability Exploited in the Wild | SecurityWeek

IT Malware, Threats & Risks

  • Top 5 Malware Threats to Prepare Against in 2025 | The Hacker News
  • The top target for phishing campaigns | Help Net Security
  • Microsoft moves to disrupt hacking-as-a-service scheme that’s bypassing AI safety measures | CyberScoop

Cyber Resilience, General Awareness, & AI

  • The ongoing evolution of the CIS Critical Security Controls | Help Net Security
  • AI-supported spear phishing fools more than 50% of targets | Malwarebytes Labs

Related Resources

(TLP:CLEAR) FIRESTARTER Backdoor and Updated Emergency Directive for CISCO Firepower and Secure Firewall Devices

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:GREEN) FBI FLASH – Newly Observed Ransomware Variant Black Shrantac Threat to U.S. Entities

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Likely PRC State-Sponsored Activity Observed in the Water Sector – DocuSign Phishing Tactics Identified

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar