You are here

Cybersecurity

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – March 7, 2024

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – March 7, 2024

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, as well as alerts, updates, and bulletins:

ICS Vulnerability Advisories:

CISA Releases One Industrial Control Systems Advisory

Ransomware Incident Awareness – Timeline of Events in Fulton County Incident and Main Takeaways for Utilities

Fulton County, the largest county in Georgia, is still recovering from its January cyber incident. LockBit, the ransomware gang that took credit for the attack, posted a timer on its criminal website demanding payment – all this despite having its criminal infrastructure disrupted by the FBI in late February.

(Update: March 5, 2024) Incident Awareness – Large Municipal Electric and Water Utility Experiences Ransomware Incident

Muscatine Power and Water (MPW) sent out breach notification letters last week informing impacted customers that their personal information may have been stolen in the cybersecurity incident on January 26. MPW stated that attackers were able to access names, social security numbers, driver’s licenses, and telephone service data (telephone number, minutes of usage, billed amount etc.) for 36,955 people.

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – March 5, 2024

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – March 5, 2024

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, as well as alerts, updates, and bulletins:

ICS Vulnerability Advisories:

CISA Releases Three Industrial Control Systems Advisories

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – February 29, 2024

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – February 29, 2024

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, as well as alerts, updates, and bulletins:

ICS Vulnerability Advisories:

CISA Releases Two Industrial Control Systems Advisories

Passthrough: Threat Actors Exploit Multiple Vulnerabilities in Ivanti Connect Secure and Policy Secure Gateways

CISA released a joint Cybersecurity Advisory (CSA) today in coordination with the FBI, MS-ISAC, and multiple international partners to emphasize that cyber threat actors continue exploiting previously identified vulnerabilities in Ivanti Connect Secure and Ivanti Policy Secure gateways. The advisory was developed with the cooperation of Volexity, Ivanti, Mandiant, and other industry partners.

Passthrough: CISA, FBI, and MS-ISAC Release Advisory on Phobos Ransomware

Today, CISA, the FBI, and MS-ISAC released a joint Cybersecurity Advisory (CSA), #StopRansomware: Phobos Ransomware, to disseminate known tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs), which are from incident response investigations tied to Phobos ransomware activity from as recently as February, 2024.

Vulnerability Awareness – Exploitation Broadens in ConnectWise ScreenConnect Flaws

Two recently resolved vulnerabilities in ConnectWise ScreenConnect, tracked as CVE-2024-1709 and CVE-2024-1708 (CVSS scores of 10 and 8.4, respectively) are being exploited by more and more threat actors. This greater interest among varied threat actors is broadening the threat and escalating urgency of remediation. Affected versions include ScreenConnect 23.9.7 and earlier versions.

Report To the President – Strategy for Cyber-Physical Resilience: Fortifying Our Critical Infrastructure for a Digital World

The President’s Council of Advisors on Science and Technology (PCAST) released a report on fortifying the nation’s cyber-physical systems (attached). These systems are the integrated digital and infrastructural resources that are crucial to Americans’ daily lives, including the electrical grid, public water systems, internet and telecommunications, banking systems, air traffic control, and much more.

Pages

Subscribe to Cybersecurity