You are here

Cybersecurity

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – March 5, 2024

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – March 5, 2024

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, as well as alerts, updates, and bulletins:

ICS Vulnerability Advisories:

CISA Releases Three Industrial Control Systems Advisories

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – February 29, 2024

CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – February 29, 2024

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, as well as alerts, updates, and bulletins:

ICS Vulnerability Advisories:

CISA Releases Two Industrial Control Systems Advisories

Passthrough: Threat Actors Exploit Multiple Vulnerabilities in Ivanti Connect Secure and Policy Secure Gateways

CISA released a joint Cybersecurity Advisory (CSA) today in coordination with the FBI, MS-ISAC, and multiple international partners to emphasize that cyber threat actors continue exploiting previously identified vulnerabilities in Ivanti Connect Secure and Ivanti Policy Secure gateways. The advisory was developed with the cooperation of Volexity, Ivanti, Mandiant, and other industry partners.

Passthrough: CISA, FBI, and MS-ISAC Release Advisory on Phobos Ransomware

Today, CISA, the FBI, and MS-ISAC released a joint Cybersecurity Advisory (CSA), #StopRansomware: Phobos Ransomware, to disseminate known tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs), which are from incident response investigations tied to Phobos ransomware activity from as recently as February, 2024.

Vulnerability Awareness – Exploitation Broadens in ConnectWise ScreenConnect Flaws

Two recently resolved vulnerabilities in ConnectWise ScreenConnect, tracked as CVE-2024-1709 and CVE-2024-1708 (CVSS scores of 10 and 8.4, respectively) are being exploited by more and more threat actors. This greater interest among varied threat actors is broadening the threat and escalating urgency of remediation. Affected versions include ScreenConnect 23.9.7 and earlier versions.

Report To the President – Strategy for Cyber-Physical Resilience: Fortifying Our Critical Infrastructure for a Digital World

The President’s Council of Advisors on Science and Technology (PCAST) released a report on fortifying the nation’s cyber-physical systems (attached). These systems are the integrated digital and infrastructural resources that are crucial to Americans’ daily lives, including the electrical grid, public water systems, internet and telecommunications, banking systems, air traffic control, and much more.

Passthrough: FBI Cyber Global Cyber Experts in Your Local Community

FBI Cyber put together new info graphics on FBI Cyber Threat Response and Fact vs Fiction. They include helpful information to help organizations and users understand the proper supportive role that the FBI employs when assisting during an intrusion and helps to discard common misconceptions surrounding what FBI Cyber actually does. They also provide useful pre-intrusion and post-intrusion tips for properly reporting and responding to cyber intrusions including how to contact FBI Cyber.

(Update February 29, 2024) Joint Cybersecurity Advisory – #StopRansomware: ALPHV Blackcat

CISA, the FBI, and the Department of Health and Human Services (HHS) released an update to the joint advisory #StopRansomware: ALPHV Blackcat to provide new indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs) associated with the ALPHV Blackcat ransomware as a service (RaaS). ALPHV Blackcat affiliates have been observed primarily targeting the healthcare sector.

Pages

Subscribe to Cybersecurity