You are here

Cybersecurity

Cyber Incident: Wastewater Agency in Paris, France Reports Attack

On Friday, a wastewater agency in Paris, France that manages nearly 275 miles of pipes and services nine million people filed a complaint with the judicial police and National Commission on Informatics and Liberty (CNIL) following the discovery of a cyber attack. The impacted agency, “Service public de l'assainissement francilien” (SIAAP) is the Greater Paris Sanitation Authority.

CISA Launches Targeted Pilot Program for Critical Infrastructure, including Water and Wastewater Sector

In response to cyber attacks that have intensified in both volume and impact and the vulnerabilities within the nation’s critical infrastructure, CISA has announced the beginning a new pilot program that is focused on certain sectors. The water and wastewater sector is among them and can expect to be offered “cutting-edge” cybersecurity services, such as CISA’s Protective Domain Name System (DNS) Resolver.

Joint Cybersecurity Advisory – #StopRansomware: LockBit 3.0 Ransomware Affiliates Exploit Citrix Bleed Vulnerability

Today, CISA, the FBI, the Multi-State Information Sharing & Analysis Center (MS-ISAC), and the Australian Signals Directorate’s Australian Cyber Security Center (ASD’s ACSC) released a joint Cybersecurity Advisory (CSA), #StopRansomware: LockBit Ransomware Affiliates Exploit CVE 2023-4966 Citrix Bleed Vulnerability (along with an accompanying analysis report MAR-10478915-1.v1 Citrix Bleed), in response to LockBit 3.0 ransomware affiliates and multiple threat actor groups exploiting CVE-2023-4966.

Patch Now: Critical Vulnerability Exposes CrushFTP Users to Severe Risks  

A critical vulnerability (CVE-2023-43177) in CrushFTP allows hackers to access files, execute code, and steal passwords. Although a fix was issued in version 10.5.2, a recent public exploit by Converge demands immediate updates for CrushFTP users. This exploit lets attackers read, delete files, and potentially gain total control over systems using specific web ports and functions in CrushFTP.

Joint Cybersecurity Advisory – #StopRansomware: Rhysida Ransomware

Yesterday, CISA, the FBI, and the Multi-State Information Sharing and Analysis Center (MS-ISAC) released a joint Cybersecurity Advisory (CSA), “#StopRansomware: Rhysida Ransomware”, to provide network defenders with known Rhysida ransomware indicators of compromise (IOCs), detection methods, and tactics, techniques, and procedures (TTPs) identified through investigations as recently as September 2023.

Pages

Subscribe to Cybersecurity