Posts

Showing posts from February, 2022

2022 Week 8 and 9

 Summary A lot of news from the last 2 weeks.  I am trying to be more timely with these summaries as the war in Ukraine is in progress.  There has been observed quite a bit of activity around SLTT and infrastuctre targets.   News SLTT The Cybersecurity and Infrastructure Security Agency (CISA) of the United States (U.S.) released a list of free cybersecurity tools and services for SLTT's that they pledge to keep updated.  The goal is to help better the overall cybersecurity posture of U.S. critical infrastructure sectors and as such are usable by those out of the SLTT arena. https://www.bleepingcomputer.com/news/security/cisa-compiles-list-of-free-cybersecurity-tools-and-services/?&web_view=true Tool: https://www.cisa.gov/free-cybersecurity-services-and-tools CISA also released a bulletin outlining APT group MuddyWater and their attempt to target SLTT and critical infrastructure entities.   https://www.cisa.gov/uscert/ncas/current-activity/2022/02/24/iranian-government-sponsore

2022 Week 7 Security Summary

  Summary Sorry for the late release.  There was so little news I debated doing a 2-week report but decided Monday morning that the week of the 8th might turn out to be pretty busy. The news of most interest is that we have seen a lot of increase in attacks against all aspects of critical infrastructure and with the threat of war in the Euro-Asian theater this is probably only going to increase. News News that spans all of the areas of this blog points out that we are increasingly seeing attacks against critical infrastructure sectors .  Once upon a time, these were generally considered off-limits by attackers and state actors as disruptions to these could affect lives or the supply chain and lead to very active state-sponsored reprisals.  The article points out that in the US alone attacks were launched against 14 of the 16 critical sectors last year (2021).  https://www.scmagazine.com/analysis/cloud-security/so-called-red-lines-increasingly-crossed-by-ransomware-groups-in-critical-in

2022 Week 6 Security Summary

Summary This week we saw a wide array of news about cyber security.   News SLTT Pellissippi State Community College was the victim of a ransomware attack that apparently was trying to encrypt data.  They report they did not pay the ransom and are working to figure out the extent of data that was accessed. https://www.securityweek.com/tennessee-community-college-suffers-ransomware-attack?&web_view=true https://www.infosecurity-magazine.com/news/tennessee-college-hit-ransomware/ Infosec Institute is offering scholarships to 15 people from underrepresented groups in the infosec/cybersecurity industry.  It expands on their Accelerate Scholarship Program.   https://www.infosecurity-magazine.com/news/infosec-announces-new/ https://www.infosecinstitute.com/scholarship-opportunities-for-aspiring-cybersecurity-professionals/?utm_source=newswire&utm_medium=pr&utm_campaign=accelerate&utm_content=women#women Clario researchers discovered an unsecured Microsoft Azure blob repository