The following posts are useful for general awareness of current threats, vulnerabilities, guidance, and other cyber-related news or updates. These resources have been curated by the WaterISAC analyst team as items of broad relevance and benefit that do not need supplemental analysis at this time.
Critical Infrastructure
- Iranian hacker group CyberAv3ngers allegedly breach Municipal Water Authority of Aliquippa (Industrial Cyber)
- New WEF paper lays down five guiding principles to bring about cybersecurity across OT environments (Industrial Cyber)
- THE HACK OF MSP PROVIDER CTS POTENTIALLY IMPACTED HUNDREDS OF UK LAW FIRMS (Security Affairs)
- OT Cybersecurity Best Practices for SMBs: System Hardening for an OT Environment (Dragos)
- Part 2 – What Does “Know” Mean? (Dale Peterson)
- Part 3: Creating An OT Asset Inventory (Dale Peterson)
- Even gas pumps aren't safe from cyberattacks at the moment (TechRadar Pro)
IT Vulnerabilities & Threats
- Malware that steals Facebook accounts (Kaspersky)
- N. Korean Hackers Distribute Trojanized CyberLink Software in Supply Chain Attack (The Hacker News)
Ransomware
Cyber Resilience
- AWS Kill Switch: Open-source incident response tool (Help Net Security)
- Building cyber resilience for tomorrow’s threats (Help Net Security)