WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts (TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – May 8, 2025
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

(TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – May 8, 2025

TLP:CLEAR

Author: April Zupan

Created: Thursday, May 8, 2025 - 15:31

Categories: Cybersecurity, Intelligence, OT-ICS Security

The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS security advisories, along with additional alerts, updates, and bulletins:

ICS Advisories:

On May 8, 2025, CISA Released Five Industrial Control Systems Advisories for products used across multiple sectors. Please check these latest advisories for specific equipment used across your ICS/SCADA environments and address accordingly:

  • ICSA-25-128-01 Horner Automation Cscape
  • ICSA-25-128-02 Hitachi Energy RTU500 series
  • ICSA-25-128-03 Mitsubishi Electric CC-Link IE TSN
  • ICSA-25-093-01 Hitachi Energy RTU500 Series (Update A) – Used in Energy
  • ICSMA-25-128-01 Pixmeo OsiriX MD

On May 6, 2025, CISA Released Three Industrial Control Systems Advisories for products used across multiple sectors. Please check these latest advisories for specific equipment used across your ICS/SCADA environments and address accordingly:

  • ICSA-25-126-01 Optigo Networks ONS NC600
  • ICSA-25-126-02 Milesight UG65-868M-EA – Used in Energy
  • ICSA-25-126-03 BrightSign Players

Additional Alerts, Updates, and Bulletins:

  • CISA Adds Two Known Exploited Vulnerabilities to Catalog
  • CISA Adds One Known Exploited Vulnerability to Catalog
  • CISA Adds One Known Exploited Vulnerability to Catalog
  • Unsophisticated Cyber Actor(s) Targeting Operational Technology
  • CISA Adds Two Known Exploited Vulnerabilities to Catalog

Related WaterISAC PIRs: 6, 8

Related Resources

(TLP:CLEAR) Vulnerability Notification – Active Exploitation of Check Point VPN Authentication Bypass Vulnerability, CVE-2026-50751

Jun 10, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) WaterISAC – EPA: National Security Information Sharing Bulletin – Q2 2026

Jun 10, 2026 in Cybersecurity, Federal & State Resources, Physical Security, Security Preparedness
Members Only

(TLP:AMBER) New IOCs (Stryker) and Malware Analysis Report (F5 BIG-IP)

Jun 5, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident
Traffic Light Protocol (TLP)

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar