Siemens SIMATIC S7-300 and S7-400 CPUs (Update A) (ICSA-20-252-02)
October 13, 2020
CISA has updated this advisory with additional details on the affected products. Read the advisory at CISA.
September 9, 2020
October 13, 2020
CISA has updated this advisory with additional details on the affected products. Read the advisory at CISA.
September 9, 2020
WaterISAC personnel briefed during a webinar with EPA on October 7.
The U.S. Department of Homeland Security Cybersecurity and Infrastructure Security Agency (CISA) has published an alert on recently-observed activity involving an advanced persistent threat actor exploiting multiple legacy vulnerabilities in combination with a newer privilege escalation vulnerability – CVE-2020-1472 – in Windows Netlogon. CISA explains this is a commonly-used tactic, known as “vulnerability chaining,” in which multiple vulnerabilities are exploited in the course of a single intrusion to compromise a network or application.
QNAP Systems has released security updates to address vulnerabilities in QNAP Helpdesk. An attacker could exploit these vulnerabilities to take control of an affected QNAP network-attached storage (NAS) device. CISA encourages users and administrators to review QNAP Security Advisory QSA-20-08 and apply the necessary updates.
Welcome back to ‘15 Cybersecurity Fundamentals Awareness Month’ (15CFAM), WaterISAC’s supplement to National Cybersecurity Awareness Month (NCSAM). 15CFAM aims to walk through WaterISAC’s 15 Cybersecurity Fundamentals for Water and Wastewater Utilities. Today we saunter among safeguarding systems from unauthorized access and exposure from cyber and physical threats.
CISA has published an advisory on an improper authorization vulnerability in Johnson Controls Sensormatic Electronics American Dynamics Victor Web Client. All versions up to and including v5.4.1 are affected. Successful exploitation of this vulnerability could allow a remote unauthenticated attacker to delete arbitrary files on the system or render the system unusable through a denial-of-service attack. Johnson Controls recommends users upgrade all versions of victor Web Client to v5.6. CISA also recommends a series of measures to mitigate this vulnerability.
The U.S. Department of Homeland Security Cybersecurity and Information Security Agency (CISA) has released an infographic mapping analysis of 44 of its Risk and Vulnerability Assessments (RVAs) conducted in Fiscal Year 2019 to the MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK) Framework. The infographic identifies routinely successful attack paths CISA observed during RVAs conducted across multiple sectors. Cyber attackers can use these attack paths to compromise organizations.
Today the U.S. Department of Homeland Security (DHS) released Homeland Threat Assessment, an unclassified document that provides information into the department’s current threat priorities. The document includes only one reference to water but many references to critical infrastructure security generally, particularly with respect to cybersecurity. The report noted that Russia, China and North Korea have varying abilities to conduct cyber attacks against critical infrastructure.
Welcome back to our homage to National Cybersecurity Awareness Month (NCSAM) with the WaterISAC ‘15 Cybersecurity Fundamentals Awareness Month’ (15CFAM) where we walk through WaterISAC’s 15 Cybersecurity Fundamentals for Water and Wastewater Utilities. Today we are touching on risk assessments.
The U.S. Department of Homeland Security Cybersecurity and Infrastructure Security Agency (CISA) has published an alert on the Emotet malware. In the alert, CISA states that since August there has been a significant increase in malicious cyber actors targeting state and local governments with Emotet phishing emails. It emphasizes that this increase has rendered Emotet one of the most prevalent ongoing threats.