WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships Supplemental Cyber Highlights – September 5, 2023
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Supplemental Cyber Highlights – September 5, 2023

Author: April Zupan

Created: Tuesday, September 5, 2023 - 17:40

Categories: Cybersecurity

The following posts are useful for general awareness of current threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure Resilience

  • Nozomi finds vulnerabilities in SEL software applications used in engineering workstations (Industrial Cyber)
  • The Essential Guide to the NIST SP 800-82 document (Industrial Cyber)
  • Securing the future: Safeguarding cyber-physical systems (CSO Online)
  • A Brief History of ICS-Tailored Attacks (Dark Reading)

IT Vulnerabilities & Threats

  • Exploit released for critical VMware SSH auth bypass vulnerability (Bleeping Computer)
  • Okta: Hackers target IT help desks to gain Super Admin, disable MFA (Bleeping Computer)
  • Chrome extensions can steal plaintext passwords from websites (Bleeping Computer)
  • What’s in a NoName? Researchers see a lone-wolf DDoS group (The Record)
  • How attackers exploit QR codes and how to mitigate the risk (CSO Online)
  • Why is .US Being Used to Phish So Many of Us? (Krebs on Security)
  • Prompt injection could be the SQL injection of the future, warns NCSC (Malwarebytes)

Ransomware Awareness

  • Hacker group compromises MSSQL servers to deploy FreeWorld ransomware (CSO Online)

Cyber Resilience & General Awareness

  • House cyber committee chair seeks update from CISA on info-sharing relationships (SC Media)
  • How companies can get a grip on ‘business email compromise’ (Check Point)
  • Understand the fine print of your cyber insurance policies (Help Net Security)
  • Data Protection Best Practices (Mandiant)
  • Revisiting Traditional Security Advice for Modern Threats (Mandiant)
  • Supply chain related security risks, and how to protect against them (Malwarebytes)
  • How to stop your site from being a partner in crime (Kaspersky)
  • 2023 Cost of a Data Breach: Key Takeaways (Tripwire)

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 1, 2026)

May 1, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

Tip of the Week – April 30, 2026

Apr 30, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) Cyber Readiness Institute Joins WaterISAC as a Community Partner to Strengthen Cyber Readiness Across the Water Sector

Apr 30, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar