You are here

Cybersecurity

Partner Report – Advisory on PRC State-Sponsored Group (APT 40) Emphasizes Importance of Patching

In a notification published today, CISA has collaborated with the Australian Signals Directorate’s Australian Cyber Security Centre (ASD's ACSC) to release an advisory, People’s Republic of China (PRC) Ministry of State Security APT40 Tradecraft in Action (AA24-190A) outlining a PRC state-sponsored cyber group’s activity.

(TLP:CLEAR) Threat Advisory – Another Phishing Campaign Impersonates State CDC Drinking Water Program

WaterISAC has been made aware of a second phishing attempt against Maine water operators. This time the campaign also targeted well drillers. The campaign was reported to the Maine CDC Drinking Water Program on June 24, 2024, and was observed using a similar template as the prior attempt reported in January 2024 – Threat Advisory – Phishing Campaign Impersonates State CDC Drinking Water Program.

Cyber Resilience - Why Modern Hacktivism Matters to Water and Wastewater Utilities

A recent post by Google Cloud’s Mandiant discusses the how the global revival of hacktivism requires increased vigilance from defenders. This increased vigilance includes defenders of the water and wastewater systems sector, as it has seen multiple attacks from the modern hacktivist classification of threat actors in recent months.

Cyber Resilience – As Snowflake Continues to Snowball

A recent post by Cisco Talos Intelligence considers the many implications and follow-on attacks originating from leaked and/or stolen credentials for the Snowflake cloud data platform and reminds us that this is indicative of a much larger issue. Talos points out that the Snowflake incident isn’t an outlier but is just another incident in the long line of identity access and credential theft incidents.

CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – June 27, 2024

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS security advisories, along with additional alerts, updates, and bulletins:

ICS Advisories

CISA Releases Seven Industrial Control Systems Advisories for products used across multiple sectors, please check these latest advisories for specific equipment used across your ICS/SCADA environments and address accordingly:

Pages

Subscribe to Cybersecurity