The following posts are useful for general awareness of current threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.
Critical Infrastructure
- Exploitation of Recent Cisco IOS XE Vulnerabilities Spikes (Security Week)
- "Sierra:21" vulnerabilities impact critical infrastructure routers (Bleeping Computer)
- Hackers breach US govt agencies using Adobe ColdFusion exploit (Bleeping Computer)
IT Vulnerabilities & Threats
- Atlassian fixes four critical RCE vulnerabilities, patch quickly! (Help Net Security)
- Russia's AI-Powered Disinformation Operation Targeting Ukraine, U.S., and Germany (The Hacker News)
- Governments spying on Apple, Google users through push notifications - US senator (Reuters)
Ransomware
- LockBit Remains Top Global Ransomware Threat (Infosecurity Magazine)
- How to use intelligence on failed ColdFusion attack to bolster your ransomware defenses (SC Media)