FBI, CISA, and MS-ISAC Release #StopRansomware: LockBit 3.0

The Federal Bureau of Investigation (FBI), CISA, and the Multi-State Information Sharing and Analysis Center (MS-ISAC) has released a joint cybersecurity advisory (CSA), #StopRansomware: LockBit 3.0. This joint advisory details…

Comments Off on FBI, CISA, and MS-ISAC Release #StopRansomware: LockBit 3.0

#StopRansomware: LockBit 3.0

SUMMARY Note: this joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for network defenders that detail ransomware variants and ransomware threat actors. These #StopRansomware…

Comments Off on #StopRansomware: LockBit 3.0

WaterISAC Releases Advisory for Microsoft DCOM Patch

The Water Information Sharing and Analysis Center (WaterISAC) has released an advisory, Potential for Mandatory Microsoft DCOM Patch to Disrupt SCADA. ICS/OT/SCADA engineers and operators should assess the use of…

Comments Off on WaterISAC Releases Advisory for Microsoft DCOM Patch

Beware of Bank-Related Scams

In light of recent bank failures, CISA warns consumers to beware of potential scams requesting your money or sensitive personal information. Exercise caution in handling emails with bank-related subject lines,…

Comments Off on Beware of Bank-Related Scams

CISA Announces Ransomware Vulnerability Warning Pilot

Today, CISA is announcing the creation of the Ransomware Vulnerability Warning Pilot (RVWP). Through the RVWP, CISA:      Proactively identifies information systems—belonging to critical infrastructure entities—that contain vulnerabilities commonly…

Comments Off on CISA Announces Ransomware Vulnerability Warning Pilot

Fortinet Releases March 2023 Vulnerability Advisories

Fortinet has released its March 2023 Vulnerability Advisories to address vulnerabilities affecting multiple products. An attacker could exploit one of these vulnerabilities to take control of an affected system.    CISA encourages…

Comments Off on Fortinet Releases March 2023 Vulnerability Advisories

Vulnerability Summary for the Week of February 6, 2017

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source & Patch Info dotnetnuke -- dotnetnuke The installation wizard in DotNetNuke (DNN) before 7.4.1 allows remote attackers to reinstall the…

Comments Off on Vulnerability Summary for the Week of February 6, 2017

Vulnerability Summary for the Week of January 8, 2018

  High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source & Patch Info advantech -- webaccess A SQL Injection issue was discovered in WebAccess versions prior to 8.3. WebAccess…

Comments Off on Vulnerability Summary for the Week of January 8, 2018