Threat Awareness – Dropbox Discloses Breach of Digital Signature Service Affecting All Users
WaterISAC is sharing this for member awareness. Utilities using Dropbox Sign (with or without an account) are encouraged to review and address accordingly.
WaterISAC is sharing this for member awareness. Utilities using Dropbox Sign (with or without an account) are encouraged to review and address accordingly.
Today, Andrew Scott, Associate Director for China Operations at CISA, drew more attention to the threat posed by China on critical infrastructure in a blog post.
Yesterday, CISA and a cadre of U.S.
Earlier this week,DHS marked the 180-day mark of President Biden’s Executive Order (EO) 14110, “Safe, Secure, and Trustworthy Development and Use of Artificial Intelligence (AI)” by unveiling new resources to address threats posed by AI including:
In a recent blog post, CISA staff drew awareness to CISA’s Ransomware Vulnerability Warning Pilot (RVWP), a tool used to proactively reduce risk through direct communication with federal government, state, local, tribal, territorial (SLTT) government, and critical infrastructure entities to help combat ransomware.
Verizon released its 2024 Verizon Data Breach Investigations Report yesterday, the 17th edition of one of the most sought-after annual reports – the DBIR – which catalogs and analyzes the past year’s trends in cyber crime and provides a comprehensive view of the global threat landscape. This year’s 100-page report covers cyber incidents and data breaches between November 1, 2022, and October 31, 2023, and includes a record 10,626 confirmed data breaches and 30,500 total incidents in its data set.
CISA ICS Vulnerability Advisories and Alerts, Updates, and Bulletins – May 2, 2024
The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, as well as alerts, updates, and bulletins:
ICS Vulnerability Advisories:
Today, the White House issued the National Security Memorandum (NSM) on Critical Infrastructure Security and Resilience. This much-anticipated memorandum replaces Presidential Policy Directive 21 (PPD-21), which was issued more than a decade ago to establish national policy on critical infrastructure security and resilience. The NSM will help ensure U.S. critical infrastructure can provide the nation a strong and innovative economy, protect American families, and enhance our collective resilience to disasters before they happen.
The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.
Critical Infrastructure
WaterISAC is providing this for your awareness only.