Search Results

The default setting for search results displays All Content. If you prefer to see recent content only, please adjust the date filter.

56 Results Found

Public

HC3 TLP White Sector Alert: CISA and NSA Release Joint Cybersecurity Information Sheet on Selecting and Hardening VPNs

In August, 2020, a significant number of vulnerabilities in common information systems relevant to the healthcare sector have been disclosed to the public.
Public

TLP White HC3: Alert Amplify Alert: No Fix for Azure Active Directory Password Brute-Forcing Flaw September 28, 2021

A newly discovered bug in Microsoft Azure's Active Directory implementation enables a single-factor brute-forcing of an Active Directory instance without authentication. Currently there is no available patch for this vulnerability.
Public

HC3 Sector Alert TLP White: Cisco HyperFlex HX RCE Vulnerabilities

On May 5, 2021 Cisco advisories disclosed multiple vulnerabilities in their products.
Public

HC3 TLP White Alert: Ransomware Awareness for Holidays and Weekends September 1, 2021

The FBI and CISA stated that in the “last several months” they have observed an increase of “highly impactful” ransomware attacks occurring during holidays or generally when people are out of the office.
Public

HC3 TLP White Alert: Indicators of Compromise Associated with OnePercent Group Ransomware - August 24, 2021

The FBI shared indicators of compromise (IOCs) associated with the ransomware threat actors the OnePercent Group.
Public

HC3 TLP White Alert: BadAlloc Vulnerability Affecting BlackBerry QNX RTOS - August 18, 2021

Executive Summary BlackBerry identified the following products are affected by an integer overflow vulnerability (CVE-2021-22156) with CVSS Score 9.0: BlackBerry QNX Software Development
Public

HHS OCIO HC3 TLP White Threat Briefing – Qbot/QakBot August 5, 2021

Please see the attached HHS Office of the Chief Information Officer HC3 Threat Briefing – Qbot/QakBot. You may distribute through your appropriate channels for the level of information as marked (TLP: WHITE)
Public

HC3 TLP White Alert: Top Routinely Exploited Vulnerabilities of 2020 and 2021

Executive Summary The recently released Joint Cybersecurity Advisory coauthored by the U.S. Cybersecurity and Infrastructure Security Agency, U.S. Federal Bureau of Investigation, U.K.
Public

HC3 TLP White Alert: PrintNightmare, Windows Print Spooler Service Vulnerability (Update 1) - July 15, 2021

PrintNightmare is the name given to a critical remote code execution vulnerability in the Windows Print spooler service.
Member

HC3: TLP Green Alert – Joint Cybersecurity Advisory – North Korean Cyber Actors Targeting Vaccine and Virology Orgs 

Executive Summary A joint alert published on June 9, 2021, by the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the United Kingdo