| Date | Source | Type | Title | Author |
|---|---|---|---|---|
| Dec 31, 2024 | NSA | Guidance | CSI: Commercial National Security Algorithm Suite 2.0 (CNSA 2.0) FAQ (December 2024 Update) This information may be useful more generally, especially for those who interact with NSS, DoD, or DIB systems. Future cryptographic algorithms Q: To whom are these requirements addressed? These are mainly addressed to the following audiences: National Security System (NSS) owners and operators, who need to know the requirements for their systems Vendors, who need to know what to implement to meet NSS requirements NSA is not using these req… | NSA, NSM |
| Dec 20, 2024 | CISA | Alert | Fortinet Releases Security Updates for FortiManager A remote cyber threat actor could exploit this vulnerability to take control of an affected system. Users and administrators are encouraged to review the following Fortinet Security Bulletin and apply the necessary updates: This product is provided subject to this Notification and this Privacy & Use policy. | CISA |
| Dec 20, 2024 | CERT-EU | Advisory | 2024-120: Critical Vulnerabilities in Sophos Firewall These flaws could allow attackers to escalate privileges or The vulnerability CVE-2024-12727, with a CVSS score of 9.8, is a pre-auth SQL injection vulnerability in the email protection feature allowing access to the reporting database of Sophos Firewall. If exploited, this vulnerability could lead to remote code execution on the affected device. | CERT-EU |
| Dec 19, 2024 | CISA | Alert | CISA Releases Eight Industrial Control Systems Advisories These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-24-354-01 Hitachi Energy RTU500 series CMU ICSA-24-354-02 Hitachi Energy SDM600 ICSA-24-354-03 Delta Electronics DTM Soft ICSA-24-354-04 Siemens User Management Component ICSA-24-354-05 Tibbo AggreGate Network Manager ICSA-24-354-06 Schneider Electric Accutech Manager ICSA-24-354-07 Schneider Electric Modicon Controllers… | CISA |
| Dec 18, 2024 | CISA | Alert | CISA Releases Best Practice Guidance for Mobile Communications The guidance was crafted in response to identified cyber espionage activity by People’s Republic of China (PRC) government-affiliated threat actors targeting commercial telecommunications infrastructure , specifically addressing “highly targeted” individuals who are in senior government or senior political positions and likely to possess information of interest to these threat actors. | CISA |
| Dec 18, 2024 | CISA | Guidance | Mobile Communications Best Practice Guidance This guidance was crafted in response to identified cyber espionage activity conducted by nation-state affiliated cyber threat actors, particularly from the People’s Republic of China (PRC) government-affiliated threat actors targeting commercial telecommunications infrastructure , as well as other malicious cyber threat actors seeking to compromise end-to-end encrypted communications. | CISA |
| Dec 18, 2024 | NSA | Advisory | CSA: IRGC-Affiliated Cyber Actors Exploit PLCs in Multiple Sectors, Including U.S. Water and Wastewater Systems Facilities (December 2024 update) IRGC-Affiliated Cyber Actors Exploit PLCs in Multiple Sectors, Including US Water and | CCCS, CISA, EPA, FBI, NCSC, NSA |
| Dec 17, 2024 | CISA | Alert | CISA Releases Five Industrial Control Systems Advisories These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-24-352-01 ThreatQuotient ThreatQ Platform ICSA-24-352-02 Hitachi Energy TropOS Devices Series 1400/2400/6400 ICSA-24-352-03 Rockwell Automation PowerMonitor 1000 Remote ICSA-24-352-04 Schneider Electric Modicon ICSMA-24-352-01 BD Diagnostic Solutions Products This product is provided subject to this Notification and this… | CISA |
| Dec 17, 2024 | CISA | Alert | CISA Issues BOD 25-01, Implementing Secure Practices for Cloud Services Today, CISA issued Binding Operational Directive (BOD) 25-01, Implementing Secure Practices for Cloud Services to safeguard federal information and information systems. This Directive requires federal civilian agencies to identify specific cloud tenants, implement assessment tools, and align cloud environments to CISA’s Secure Cloud Business Applications (SCuBA) secure configuration baselines. | CISA |
| Dec 17, 2024 | CISA | Alert | CISA and ONCD Release Playbook for Strengthening Cybersecurity in Federal Grant Programs for Critical Infrastructure This guide is for federal grant program managers, critical infrastructure owners and operators, and organizations such as state, local, tribal, and territorial governments who subaward grant program funds, and grant program recipients. The guide includes: Recommended actions to incorporate cybersecurity into grant programs throughout the grant management lifecycle. | CISA, ONCD |
| Dec 16, 2024 | CISA | Alert | CISA Requests Public Comment for Draft National Cyber Incident Response Plan Update The draft requests public comment on the National Cyber Incident Response Plan (NCIRP)—public comment period begins today and concludes on January 15, 2025. As of January 3, 2025: The public comment period has been extended and now concludes on February 14, 2025. | CISA, ONCD |
| Dec 13, 2024 | CISA | Alert | CISA and EPA Release Joint Fact Sheet Detailing Risks Internet-Exposed HMIs Pose to WWS Sector This joint fact sheet provides Water and Wastewater Systems (WWS) facilities with recommendations for limiting the exposure of Human Machine Interfaces (HMIs) and securing them against malicious cyber activity. HMIs enable operational technology owners and operators to read supervisory control and data acquisition systems connected to programmable logic controllers. | CISA, EPA |
| Dec 12, 2024 | CISA | Alert | CISA Releases Ten Industrial Control Systems Advisories These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-24-347-01 Siemens CPCI85 Central Processing/Communication ICSA-24-347-02 Siemens Engineering Platforms ICSA-24-347-03 Siemens RUGGEDCOM ROX II ICSA-24-347-04 Siemens Parasolid ICSA-24-347-05 Siemens Engineering Platforms ICSA-24-347-06 Siemens Simcenter Femap ICSA-24-347-07 Siemens Solid Edge SE2024 ICSA-24-347-09 Siemens… | CISA |
| Dec 12, 2024 | CISA | Alert | Apple Releases Security Updates for Multiple Products A cyber threat actor could exploit some of these vulnerabilities to take control of an affected system. This product is provided subject to this Notification and this Privacy & Use policy. | CISA |
| Dec 12, 2024 | CERT-EU | Advisory | 2024-103: Critical Vulnerabilities in CUPS By chaining the vulnerabilities (CVE-2024-47076, CVE-2024-47175, CVE-2024-47176 and CVE-2024-47177) together, an attacker could potentially achieve remote code execution [1]. Exploitation of these vulnerabilities is possible through the following chain of events: 1. | CERT-EU |
| Dec 12, 2024 | CERT-EU | Advisory | 2024-062: Vulnerabilities in Chrome and Chromium based Browsers Chromium-based browsers are The vulnerabilities patched in this update include: Users are strongly advised to update their Chromium-based browsers to the latest version available. | CERT-EU |
| Dec 11, 2024 | CERT-EU | Advisory | 2024-119: Critical Vulnerability in Ivanti Products These flaws could allow attackers to escalate privileges or execute arbitrary code [1,2]. The vulnerability CVE-2024-11639, with a CVSS score of 10.0, is an authentication bypass in the CSA admin web console permitting remote unauthenticated attackers to gain administrative The vulnerability CVE-2024-11772, with a CVSS score of 9. | CERT-EU |
| Dec 11, 2024 | JPCERT/CC | Alert | Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB24-92) Vulnerabilities exists in Adobe Acrobat, a PDF file creation and conversion software, and Adobe Acrobat Reader, a PDF file viewing software. As a result, an attacker may execute arbitrary code by convincing a user to open contents leveraging the vulnerability. | JPCERT/CC |
| Dec 10, 2024 | CISA | Alert | Ivanti Releases Security Updates for Multiple Products Ivanti released security updates to address vulnerabilities in Ivanti Cloud Service Application, Ivanti Desktop and Server Management (DSM), Ivanti Connect Secure and Police Secure, Ivanti Sentry, and Ivanti Patch SDK. Ivanti Cloud Service Application Ivanti Desktop and Server Management (DSM) Ivanti Connect Secure and Policy Secure Ivanti Patch SDK (This also affects Ivanti Endpoint Manager (EPM), Ivanti Security Controls, Ivanti Neurons Agent,… | CISA |
| Dec 10, 2024 | CISA | Alert | Microsoft Releases December 2024 Security Updates Microsoft released security updates to address vulnerabilities in multiple Microsoft products. A cyber threat actor could exploit some of these vulnerabilities to take control of an affected system. Microsoft Security Update Guide for December This product is provided subject to this Notification and this Privacy & Use policy. | CISA, JPCERT/CC |
| Dec 10, 2024 | CISA | Alert | Adobe Releases Security Updates for Multiple Products A cyber threat actor could exploit some of these vulnerabilities to take control of an affected system. Adobe Product Security Updates for December This product is provided subject to this Notification and this Privacy & Use policy. | CISA |
| Dec 10, 2024 | CISA | Alert | CISA Releases Seven Industrial Control Systems Advisories These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-24-345-01 MOBATIME Network Master Clock ICSA-24-345-02 Schneider Electric EcoStruxure Foxboro DCS Core Control Services ICSA-24-345-03 Schneider Electric FoxRTU Station ICSA-24-345-04 National Instruments LabVIEW ICSA-24-345-05 Horner Automation Cscape ICSA-24-345-06 Rockwell Automation Arena ICSA-24-338-01 Ruijie Reyee O… | CISA |
| Dec 5, 2024 | CISA | Alert | CISA Releases Two Industrial Control Systems Advisories These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-24-340-01 AutomationDirect C-More EA9 Programming Software ICSA-24-340-02 Planet Technology Planet WGS-804HPT This product is provided subject to this Notification and this Privacy & Use policy. | CISA |
| Dec 5, 2024 | CISA | Alert | Cisco Releases Security Updates for NX-OS Software A cyber threat actor could exploit this vulnerability to take control of an affected system. Cisco NX-OS Software Image Verification Bypass Vulnerability This product is provided subject to this Notification and this Privacy & Use policy. | CISA |
| Dec 5, 2024 | CISA | Alert | ASD’s ACSC, CISA, and US and International Partners Release Guidance on Choosing Secure and Verifiable Technologies Today, CISA—in partnership with the Australian Signals Directorate Australian Cyber Security Centre (ASD ACSC), and other international partners—released updates to a Secure by Design Alert, Choosing Secure and Verifiable Technologies . Partners that provided recommendations in this alert include: The Canadian Centre for Cyber Security (CCCS). | ASD/ACSC, CISA |
| Dec 4, 2024 | CISA | Alert | CISA Releases New Public Version of CDM Data Model Document Version 5.0.1 aligns with fiscal year 2023 Federal Information Security Modernization Act (FISMA) metrics. The CDM Data Model Document provides a comprehensive description of a common data schema to ensure that prescribed diagnostic activities within CDM solutions are consistent across all participating federal agencies. | CISA |
| Dec 4, 2024 | NCSC | Guidance | Asset Discovery on MyNCSC Asset Discovery is now available to all Organisation Administrators using MyNCSC. This page explains how Asset Discovery could enhance awareness of your shadow IT. Many organisations which participated in the Asset Discovery pilot found it to be a valuable addition to their security toolkit. | NCSC-UK |
| Dec 3, 2024 | CISA | Alert | CISA Releases Eight Industrial Control Systems Advisories These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-24-338-01 Ruijie Reyee OS ICSA-24-338-02 Siemens RUGGEDCOM APE1808 ICSA-24-338-03 Open Automation Software ICSA-24-338-04 ICONICS and Mitsubishi Electric GENESIS64 Products ICSA-24-338-05 Fuji Electric Monitouch V-SFT ICSA-24-338-06 Fuji Electric Tellus Lite V-Simulator ICSA-22-307-01 ETIC Telecom Remote Access Server (RA… | CISA |
| Dec 3, 2024 | NSA | Alert | CISA and Partners Release Joint Guidance on PRC-Affiliated Threat Actor Compromising Networks of Global Telecommunications Providers Today, CISA—in partnership with the National Security Agency (NSA), the Federal Bureau of Investigation (FBI), and international partners—released joint guidance, Enhanced Visibility and Hardening Guidance for Communications Infrastructure . | CISA, FBI, NSA |
| Dec 3, 2024 | NSA | Guidance | Enhanced Visibility and Hardening Guidance for Communications Infrastructure The authoring agencies are releasing this guide to highlight this threat and provide network engineers and defenders of communications infrastructure with best practices to strengthen their visibility and harden their network devices against successful exploitation carried out by PRC-affiliated and other malicious cyber actors. | ASD/ACSC, CISA, FBI, NCSC-NZ, NSA |