CISA, FBI, MS-ISAC, and ASD’s ACSC Release Advisory on LockBit Affiliates Exploiting Citrix Bleed

CISA, FBI, MS-ISAC, and ASD’s ACSC Release Advisory on LockBit Affiliates Exploiting Citrix Bleed 11/21/2023 12:00 PM EST Today, the Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), Multi-State Information Sharing & Analysis Center (MS-ISAC), and Australian Signals Directorate’s Australian Cyber Security Center (ASD’s ACSC) released a joint Cybersecurity Advisory (CSA), #StopRansomware: …

FBI and CISA Release Advisory on Scattered Spider Group

FBI and CISA Release Advisory on Scattered Spider Group 11/16/2023 11:00 AM EST Today, the Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) released a joint Cybersecurity Advisory (CSA) on Scattered Spider—a cybercriminal group targeting commercial facilities sectors and subsectors. The advisory provides tactics, techniques, and procedures (TTPs) obtained through …

CISA, FBI, and MS-ISAC Release Advisory on Rhysida Ransomware

CISA, FBI, and MS-ISAC Release Advisory on Rhysida Ransomware 11/15/2023 11:00 AM EST Today, the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the Multi-State Information Sharing and Analysis Center (MS-ISAC) released a joint Cybersecurity Advisory (CSA), #StopRansomware: Rhysida Ransomware, to disseminate known Rhysida ransomware indicators of compromise (IOCs), detection …

VMware Releases Security Update for Cloud Director Appliance

VMware Releases Security Update for Cloud Director Appliance 11/14/2023 06:00 PM EST VMware has released a security advisory addressing a vulnerability in VMWare Cloud Director Appliance. Cyber threat actors may exploit this vulnerability to take control of an affected system. CISA encourages users and administrators to review the following VMware security advisory and apply the …

CISA Releases Update to Royal Ransomware Advisory

CISA Releases Update to Royal Ransomware Advisory 11/13/2023 02:00 PM EST Today, the Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) released an update to joint Cybersecurity Advisory (CSA) #StopRansomware: Royal Ransomware. The updated advisory provides network defenders with additional information on tactics, techniques, and procedures (TTPs) and indicators of compromise …

CISA Releases One Industrial Control Systems Advisory

CISA Releases One Industrial Control Systems Advisory 11/07/2023 07:00 AM EST CISA released one Industrial Control Systems (ICS) advisory on November 7, 2023. This advisory provides timely information about current security issues, vulnerabilities, and exploits surrounding ICS.  ICSA-23-311-01 GE MiCOM S1 Agile CISA encourages users and administrators to review the newly released ICS advisory for …

Atlassian Releases Security Advisory for Confluence Data Center and Server

Atlassian Releases Security Advisory for Confluence Data Center and Server 11/02/2023 05:00 PM EDT Atlassian released a security advisory to address a vulnerability (CVE-2023-22518) affecting Confluence Data Center and Server. A cyber actor could exploit this vulnerability to obtain sensitive information. CISA encourages users and administrators to review CVE-2023-22518 – Improper Authorization Vulnerability In Confluence Data …

VMware Releases Advisory for VMware Tools Vulnerabilities

VMware Releases Advisory for VMware Tools Vulnerabilities 10/30/2023 05:00 PM EDT VMware released a security advisory addressing multiple vulnerabilities (CVE-2023-34057, CVE-2023-34058) in VMware Tools. A cyber actor could exploit one of these vulnerabilities to take control of an affected system. CISA encourages users and administrators to review the VMware advisory VMSA-2023-0024 and apply the necessary updates. …

CISA Releases One Industrial Control Systems Advisory

CISA Releases One Industrial Control Systems Advisory 10/24/2023 08:00 AM EDT CISA released one Industrial Control Systems (ICS) advisory on October 24, 2023. This advisory provides timely information about current security issues, vulnerabilities, and exploits surrounding ICS.  ICSA-23-297-01 Rockwell Automation Stratix 5800 and Stratix 5200 CISA encourages users and administrators to review the newly released …

CISA Updates Guidance for Addressing Cisco IOS XE Web UI Vulnerabilities

CISA Updates Guidance for Addressing Cisco IOS XE Web UI Vulnerabilities 10/24/2023 09:30 AM EDT Today, CISA updated its guidance addressing two vulnerabilities, CVE-2023-20198 and CVE-2023-20273, affecting Cisco’s Internetworking Operating System (IOS) XE Software Web User Interface (UI). The guidance now notes that Cisco has fixed these vulnerabilities for the 17.9 Cisco IOS XE software …