WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships Supplemental Cyber Highlights – November 30, 2023
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – November 30, 2023

Author: April Zupan

Created: Thursday, November 30, 2023 - 17:11

Categories: Cybersecurity

The following posts are useful for general awareness of current threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure

  • What You Need to Know about the Pennsylvania Water Authority’s Breach (Check Point)
  • Iranian Hackers Exploit PLCs in Attack on Water Authority in U.S. (The Hacker News)
  • Slovenian Electrical Utility HSE Suffers Ransomware Attack (Dark Reading)
  • Understanding OT Cybersecurity Risks in the Energy Sector (Fortinet)

IT Vulnerabilities & Threats

  • New BlackBerry Threat Report Reveals 70% Surge in Novel Malware Attacks (BlackBerry)
  • Exploiting IP-video Surveillance Systems Is Not Only a Cybersecurity Threat (Otorio)
  • Exploitation of Critical ownCloud Vulnerability Begins (Security Week)
  • New BLUFFS attack lets attackers hijack Bluetooth connections (Bleeping Computer)
  • Okta: October data breach affects all customer support system users (Bleeping Computer)
  • Zoom Vulnerability Allowed Hackers to Take Over Meetings, Steal Data (Hackread)

Ransomware

  • Ransomware gangs and Living Off the Land (LOTL) attacks: A deep dive (Malwarebytes)
  • Black Basta ransomware made over $100 million from extortion (Bleeping Computer)
  • DJVU Ransomware’s Latest Variant ‘Xaro’ Disguised as Cracked Software (The Hacker News)

Cyber Resilience

  • CISA plans to launch ReadySetCyber tool in early 2024 to integrate cybersecurity into business decisions (Industrial Cyber)
  • Organizations can’t ignore the surge in malicious web links (Help Net Security)
  • What cybersecurity pros can learn from first responders (Security Intelligence)
  • Rise of the cyber CPA: What it means for CISOs (CSO Online)

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated April 30, 2026)

Apr 30, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

Tip of the Week – April 30, 2026

Apr 30, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) Cyber Readiness Institute Joins WaterISAC as a Community Partner to Strengthen Cyber Readiness Across the Water Sector

Apr 30, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar