WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships (TLP:CLEAR) Supplemental Cyber Highlights – January 30, 2025
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

(TLP:CLEAR) Supplemental Cyber Highlights – January 30, 2025

TLP:CLEAR

Author: Chase Snow

Created: Thursday, January 30, 2025 - 13:52

Categories: Cybersecurity, OT-ICS Security, Security Preparedness

The following posts are useful for general awareness of current cyber threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.

Critical Infrastructure Resilience

  • Building Automation Protocols Increasingly Targeted in OT Attacks: Report | SecurityWeek
  • Need to build robust industrial supply chain security while considering emerging technologies | Industrial Cyber
  • Threat Actors Exploit Government Website Vulnerabilities for Phishing Campaigns | Cofense
  • National security risks in routers, modems targeted in bipartisan Senate bill | CyberScoop

IT Vulnerability Security Updates

  • More than 2,000 SonicWall devices vulnerable to critical zero-day | The Record
  • Apple fixes this year’s first actively exploited zero-day bug | Bleeping Computer
  • Hackers exploit critical unpatched flaw in Zyxel CPE devices | Bleeping Computer
  • VMware fixed a flaw in Avi Load Balancer | Security Affairs
  • Critical Cacti Security Flaw (CVE-2025-22604) Enables Remote Code Execution | The Hacker News

IT Malware, Threats & Risks

  • Cybersecurity crisis in numbers | Help Net Security
  • CrowdStrike Highlights Magnitude of Insider Risk | Dark Reading

Ransomware

  • Ransomware gang uses SSH tunnels for stealthy VMware ESXi access | Bleeping Computer
  • 58% of Ransomware Victims Forced to Shut Down Operations | Infosecurity Magazine
  • Lynx Ransomware Group ‘Industrializes’ Cybercrime With Affiliates | Dark Reading
  • New Hellcat Ransomware Gang Employs Humiliation Tactics | Infosecurity Magazine

Cyber Resilience, General Awareness, & AI

  • FBI seizes major cybercrime forums in coordinated domain takedown | CyberScoop
  • Cyber Insights 2025: Social Engineering Gets AI Wings | SecurityWeek
  • AI in Cybersecurity: What’s Effective and What’s Not – Insights from 200 Experts | The Hacker News

Related WaterISAC PIRs: 6, 7, 8, 10, 12

Related Resources

(TLP:CLEAR) FIRESTARTER Backdoor and Updated Emergency Directive for CISCO Firepower and Secure Firewall Devices

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:GREEN) FBI FLASH – Newly Observed Ransomware Variant Black Shrantac Threat to U.S. Entities

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Likely PRC State-Sponsored Activity Observed in the Water Sector – DocuSign Phishing Tactics Identified

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar