Search Results

The default setting for search results displays All Content. If you prefer to see recent content only, please adjust the date filter.

210 Results Found

Public

HC3 TLP Clear: Sector Alert - Critical Vulnerability in Cisco Emergency Responder Platform, October 6, 2023

Cisco recently released an update which fixes a critical vulnerability in their Emergency Responder communications platform.
Public

HC3 TLP Clear Sector Alert: WS_FTP Critical Vulnerabilities – September 29, 2023

Progress Software, the maker of the MOVEit file transfer software which was widely exploited by the CL0P ransomware-as-a-service (Raas) group, has released a new advisory regarding multiple vulnerabilities in the WS_FTP Server, a file transfer product.
Public

HC3 TLP Clear Analyst Note: LokiBOt Malware – September 29, 2023

Active since 2015 and among the most prevalent and persistent strains of malware families since 2018
Public

TLP Clear PIN: Two or More Ransomware Variants Impacting the Same Victims and Data Destruction Trends

The Federal Bureau of Investigation (FBI) is releasing this Private Industry Notification to highlight emerging ransomware trends and encourage organizations to implement the recommendations in the “Mitigations” section to reduce the likelihood and impact of ransomware incidents.
Public

Cyber Advisory TLP Clear People's Republic of China-Linked Cyber Actors Hide in Router Firmware September 2023

Executive Summary The United States National Security Agency (NSA), the U.S. Federal Bureau of Investigation (FBI), the U.S.
Public

HC3: Monthly Cybersecurity Vulnerability Bulletin August Vulnerabilities of Interest to the Health Sector

In August 2023, vulnerabilities to the health sector have been released that require attention. This includes the monthly Patch Tuesday vulnerabilities released by several vendors on the second Tuesday of each month, along with mitigation steps and patches.
Public

HC3 TLP Clear Sector Alert Lazarus Group Exploits ManageEngine Vulnerability

Cisco Talos has published an open-source report regarding the North Korean state-sponsored actor, the Lazarus Group, reported to be targeting internet backbone infrastructure and healthcare entities in Europe and the United States.
Public

CISA TLP Clear: Continuous Diagnostics and Mitigation Program

This document refines and clarifies the CDM Program’s Identity and Access Management (IDAM) scope by providing a reference for how CDM IDAM capabilities may integrate into an agency’s ICAM architecture. A description of the federal ICAM practice area, including how ICAM services and components implement ICAM use cases, is provided, along with a description of related CDM capabilities. For each CDM ICAM capability, assumptions and constraints are made in reference to agency capabilities.
Public

NSA/FBI/CISA Cybersecurity Information Sheet TLP Clear: Contextualizing Deepfake Threats to Organizations

Threats from synthetic media, such as deepfakes, present a growing challenge for all users of modern technology and communications, including National Security Systems (NSS), the Department of Defense (DoD), the Defense Industrial Base (DIB), and national critical infrastructure owners and operators.
Public

HC3 TLP Clear Sector Alert Akira Ransomware- September 12, 2023

Akira is a Ransomware-as-a-Service (RaaS) group that started operations in March 2023.