WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships (TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – May 8, 2025
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

(TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – May 8, 2025

TLP:CLEAR

Author: April Zupan

Created: Thursday, May 8, 2025 - 15:31

Categories: Cybersecurity, Intelligence, OT-ICS Security

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS security advisories, along with additional alerts, updates, and bulletins:

ICS Advisories:

On May 8, 2025, CISA Released Five Industrial Control Systems Advisories for products used across multiple sectors. Please check these latest advisories for specific equipment used across your ICS/SCADA environments and address accordingly:

  • ICSA-25-128-01 Horner Automation Cscape
  • ICSA-25-128-02 Hitachi Energy RTU500 series
  • ICSA-25-128-03 Mitsubishi Electric CC-Link IE TSN
  • ICSA-25-093-01 Hitachi Energy RTU500 Series (Update A) – Used in Energy
  • ICSMA-25-128-01 Pixmeo OsiriX MD

On May 6, 2025, CISA Released Three Industrial Control Systems Advisories for products used across multiple sectors. Please check these latest advisories for specific equipment used across your ICS/SCADA environments and address accordingly:

  • ICSA-25-126-01 Optigo Networks ONS NC600
  • ICSA-25-126-02 Milesight UG65-868M-EA – Used in Energy
  • ICSA-25-126-03 BrightSign Players

Additional Alerts, Updates, and Bulletins:

  • CISA Adds Two Known Exploited Vulnerabilities to Catalog
  • CISA Adds One Known Exploited Vulnerability to Catalog
  • CISA Adds One Known Exploited Vulnerability to Catalog
  • Unsophisticated Cyber Actor(s) Targeting Operational Technology
  • CISA Adds Two Known Exploited Vulnerabilities to Catalog

Related WaterISAC PIRs: 6, 8

Related Resources

(TLP:CLEAR) FIRESTARTER Backdoor and Updated Emergency Directive for CISCO Firepower and Secure Firewall Devices

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:GREEN) FBI FLASH – Newly Observed Ransomware Variant Black Shrantac Threat to U.S. Entities

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Likely PRC State-Sponsored Activity Observed in the Water Sector – DocuSign Phishing Tactics Identified

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar