You are here

Cybersecurity

(TLP:CLEAR) CISA Tackles the Software Understanding Gap, Considerations for Utilities

Summary: Yesterday, CISA published a blog post reemphasizing their efforts to close the software understanding gap. This comes out of a national effort to enhance the ability to construct and analyze software to understand its functionality, safety, and security before organizations place it into use, both as producers and consumers of software.

(TLP CLEAR) Weekly Vulnerabilities to Prioritize – August 21, 2025

The below vulnerabilities have been identified by WaterISAC analysts as important for water and wastewater utilities to prioritize in their vulnerability management efforts. WaterISAC shares critical vulnerabilities that affect widely used products and may be under active exploitation. WaterISAC draws additional awareness in alerts and advisories when vulnerabilities are confirmed to be impacting, or have a high likelihood of impacting, water and wastewater utilities.

(TLP:CLEAR) Foundations for OT Cybersecurity: Asset Inventory Guidance for Owners and Operators

Summary: Yesterday, CISA, the EPA, and other federal partners released comprehensive guidance to help operational technology (OT) owners and operators across all critical infrastructure sectors create and maintain OT asset inventories and supplemental taxonomies.

Analyst Note: An asset inventory is a regularly updated, structured list of an organization's systems, hardware, and software. It includes a categorization system—a taxonomy—that classifies assets based on their importance and function.

(TLP:CLEAR) Weekly Vulnerabilities to Prioritize – August 14, 2025

The below vulnerabilities have been identified by WaterISAC analysts as important for water and wastewater utilities to prioritize in their vulnerability management efforts. WaterISAC shares critical vulnerabilities that affect widely used products and may be under active exploitation. WaterISAC draws additional awareness in alerts and advisories when vulnerabilities are confirmed to be impacting, or have a high likelihood of impacting, water and wastewater utilities.

Pages

Subscribe to Cybersecurity