Cyber Security Alerts & Threat Intelligence
Stay up to date with the latest security alerts and threat intelligence updates
Latest Alerts
AA22-257A: Iranian Islamic Revolutionary Guard Corps-Affiliated Cyber Actors Exploiting Vulnerabilities for Data Extortion and Disk Encryption for Ransom Operations
Original release date: September 14, 2022 Summary Actions to take today to protect against ransom operations: • Keep systems and software updated and prioritize remediating known exploited vulnerabilities. • Enforce MFA. • Make offline backups of your data. This joint Cybersecurity Advisory (CSA) is the result of an analytic effort among the Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA), U.S. Cyber Command (USCC) – Cyber National Mission Force (CNMF), the Department of the Treasury (Treasury), the Australian Cyber Security Centre (ACSC), the Canadian Centre for Cyber Security (CCCS), and the…
Microsoft Releases September 2022 Security Updates
Original release date: September 13, 2022 Microsoft has released updates to address multiple vulnerabilities in Microsoft software. An attacker can exploit some of these vulnerabilities to take control of an affected system. CISA encourages users and administrators to review Microsoft’s September 2022 Security Update Guide and Deployment Information and apply the necessary updates. This product is provided subject to this Notification and this Privacy & Use policy.
Vulnerability Summary for the Week of September 5, 2022
Original release date: September 12, 2022 High Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no high vulnerabilities recorded this week. Back to top Medium Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no medium vulnerabilities recorded this week. Back to top Low Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no low vulnerabilities recorded this week. Back to top Severity Not Yet Assigned Primary Vendor — Product Description Published CVSS Score Source & Patch…
Vulnerability Summary for the Week of August 29, 2022
Original release date: September 6, 2022 | Last revised: September 8, 2022 High Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no high vulnerabilities recorded this week. Back to top Medium Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no medium vulnerabilities recorded this week. Back to top Low Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no low vulnerabilities recorded this week. Back to top Severity Not Yet Assigned Primary Vendor — Product Description…
CISA Releases Four Industrial Control Systems Advisories
Original release date: September 8, 2022 CISA released four Industrial Control Systems (ICS) advisories on September 08, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisories for technical details and mitigations: ICSA-22-251-01 MZ Automation GmbH libIEC61850 ICSMA-22-251-01 Baxter Sigma Spectrum Infusion Pumps ICSMA-21-152-01 Hillrom Medical Device Management (Update B) ICSA-22-242-10 PTC Kepware KEPServerEX (Update A) This product is provided subject to this Notification and this Privacy & Use policy.
AA22-249A: #StopRansomware: Vice Society
Original release date: September 6, 2022 Summary Actions to take today to mitigate cyber threats from ransomware: • Prioritize and remediate known exploited vulnerabilities. • Train users to recognize and report phishing attempts. • Enable and enforce multifactor authentication. Note: This joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for network defenders that detail various ransomware variants and ransomware threat actors. These #StopRansomware advisories include recently and historically observed tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) to help organizations protect against ransomware. Visit stopransomware.gov to see all #StopRansomware advisories and to learn…
CISA Releases Five Industrial Control Systems Advisories
Original release date: September 6, 2022 CISA has released five Industrial Control Systems (ICS) advisories on September 06, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisories for technical details and mitigations: ICSA-22-249-01 Triangle Microworks Library ICSA-22-249-02 AVEVA Edge 2020 R2 SP12020 R2 ICSA-22-249-03 Cognex 3D-A1000 Dimensioning System ICSA-22-249-04 Hitachi Energy TXpert Hub CoreTec 4 ICSA-21-252-02 Delta Electronics DOPSoft 2 (Update A) This product is provided subject to this Notification and this Privacy & Use policy.
Vulnerability Summary for the Week of August 22, 2022
Original release date: August 29, 2022 | Last revised: August 30, 2022 High Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no high vulnerabilities recorded this week. Back to top Medium Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no medium vulnerabilities recorded this week. Back to top Low Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info There were no low vulnerabilities recorded this week. Back to top Severity Not Yet Assigned Primary Vendor — Product Description…
CISA Releases 12 Industrial Control Systems Advisories
Original release date: August 29, 2022 | Last revised: August 30, 2022 CISA has released 12 Industrial Control Systems (ICS) advisories on August 30, 2022. These advisories provides timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisories for technical details and mitigations: ICSA-22-242-01 Hitachi Energy FCP ICSA-22-242-02 Hitachi Energy GWS ICSA-22-242-03 Hitachi Energy MSM ICSA-22-242-04 Hitachi Energy RTU500 series ICSA-22-242-05 Fuji Electric D300win ICSA-22-242-06 Honeywell ControlEdge ICSA-22-242-07 Honeywell Experion LX ICSA-22-242-08 Honeywell Trend Controls ICSA-22-242-09 Omron CX-Programmer ICSA-22-242-10 PTC Kepware KEPServerEX ICSA-22-242-11 Sensormatic Electronics…
Ransomware Attacks are on the Rise
Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.
Ransomware Attacks are on the Rise
Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Tens of thousands of cameras have failed to patch a critical, 11-month-old CVE, leaving thousands of organizations exposed.
Need Expert Cybersecurity Guidance?
Our US-based Security Operations Center is ready to help protect your organization.
