WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships Supplemental Cyber Highlights – June 27, 2024
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – June 27, 2024

Author: Jennifer Walker

Created: Thursday, June 27, 2024 - 17:56

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure

  • Siemens Sicam Vulnerabilities Could Facilitate Attacks on Energy Sector | SecurityWeek
  • CDK expects car dealership system outage to last until at least June 30 | TheRecord
  • Evolve Bank Data Leaked After LockBit’s ‘Federal Reserve Hack’ | SecurityWeek
  • Hacking a $100K Gas Chromatograph without Owning One | Claroty

IT Vulnerabilities & Security Updates

  • Progress Software elevates severity of new MOVEit bug to ‘critical’ as exploit attempts jump | TheRecord
  • Exploit for critical Fortra FileCatalyst Workflow SQLi flaw released | BleepingComputer
  • Multiple vulnerabilities in TP-Link Omada system could lead to root access | Cisco Talos Intelligence
  • Recent Zyxel NAS Vulnerability Exploited by Botnet | SecurityWeek

IT Malware, Threats & Risks

  • Snowflake isn’t an outlier, it’s the canary in the coal mine | Cisco Talos Intelligence
  • Attackers in Profile: menuPass and ALPHV/BlackCat | TrendMicro
  • Why MFA alone will no longer suffice | SCMagazine
  • The Growing Threat of Malware Concealed Behind Cloud Services | Fortinet
  • Scarlet Goldfinch: Taking flight with NetSupport Manager | Red Canary
  • Malvertising Campaign Leads to Execution of Oyster Backdoor | Rapid7
  • I am Goot (Loader) | Cybereason

Breaches/Incidents

  • Polyfill.io JavaScript supply chain attack impacts over 100K sites | BleepingComputer
  • Polyfill claims it has been ‘defamed’, returns after domain shut down | BleepingComputer
  • Cloudflare: We never authorized polyfill.io to use our name | BleepingComputer

Cyber Resilience

  • How to boost your incident response readiness | Microsoft
  • Practical Guidance For Securing Your Software Supply Chain | TheHackerNews
  • Executives bullish about AI capabilities, but worry about data privacy and security | SCMagazine
  • Continuous red-teaming is your only AI risk defense | CSOOnline

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 1, 2026)

May 1, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

Tip of the Week – April 30, 2026

Apr 30, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) Cyber Readiness Institute Joins WaterISAC as a Community Partner to Strengthen Cyber Readiness Across the Water Sector

Apr 30, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar