Moody’s Report – Utilities Cyber Readiness Tied to Scale and Business Model
What: New report from ratings agency Moody’s confirms larger, vertically integrated utilities more cyber resilient.
What: New report from ratings agency Moody’s confirms larger, vertically integrated utilities more cyber resilient.
The U.S. Department of Energy (DOE) has announced a new program for operational technology security managers in the energy sector to engage with cyber and national security experts across the government. Named the “OT Defender Fellowship,” participants will spend one year in the program to gain a greater understanding of the adversaries’ strategies and how U.S. government cyber operators defend the nation.
In an homage to Alex Trebek, what is: Ransomware gangs not honoring ransom payments for stolen data? While this is not an entirely surprising development, it is a little confusing. It hasn’t been since the early days of ransomware attacks where amateur groups did not honor their “promise” to discontinue an attack or unlock files after payment. It’s been quite a few years since ransomware groups realized they needed to protect their credibility in order to profit.
It has been a bit of a whirlwind in ransomware this past week. Bits have been circulating about Ryuk reaping the rewards from its wreckage, a new strain detonating within an hour after gaining access to the network, and an indiscriminate sample with a version to infect Linux. BleepingComputer has those details and much more in its recent “The Week in Ransomware” series for November 6, 2020.
The Cybersecurity and Infrastructure Security Agency (CISA) and government and industry partners recently published the Building A More Resilient ICT Supply Chain: Lessons Learned During The COVID-19 Pandemic report, which examines how the COVID-19 pandemic impacted the logistical supply chains of information and communication technology companies and provides recommendations to increase supply chain resilience.
November 5, 2020
November 4, 2020
November 5, 2020
CISA has updated this advisory with additional information on affected products and mitigation measures. Read the advisory at CISA.
August 4, 2020
November 5, 2020
CISA has updated this advisory with additional information on affected products and mitigation measures. Read the advisory at CISA.
June 16, 2020
CISA has updated this advisory with additional information on mitigation measures. Read the advisory at CISA.
June 10, 2020
CISA has published an advisory on improper restriction of operations within the bounds of a memory buffer, session fixation, NULL pointer dereference, improper access control, argument injection, and resource management errors vulnerabilities in Mitsubishi Electric GT14 Model of GOT1000 Series products.