CISA and FBI Release Joint Advisory on Iranian APT Actor Targeting Voter Registration DataCISA All NCAS Products

Original release date: October 30, 2020The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have released a joint cybersecurity advisory on an Iranian advanced persistent threat (APT) actor targeting U.S. state websites, including elections websites to obtain voter registration data. Using the Acunetix vulnerability scanner, this actor disseminated election-related disinformation […]

CISA and FBI Release Joint Advisory on Iranian APT Actor Targeting Voter Registration DataCISA All NCAS Products Read More »

Microsoft Warns of Continued Exploitation of CVE-2020-1472CISA All NCAS Products

Original release date: October 29, 2020Microsoft has released a blog post on cyber threat actors exploiting CVE-2020-1472, an elevation of privilege vulnerability in Microsoft’s Netlogon. A remote attacker can exploit this vulnerability to breach unpatched Active Directory domain controllers and obtain domain administrator access. The Cybersecurity and Infrastructure Security Agency (CISA) has observed nation state

Microsoft Warns of Continued Exploitation of CVE-2020-1472CISA All NCAS Products Read More »

CISA and CNMF Identify a New Malware Variant: ZebrocyCISA All NCAS Products

Original release date: October 29, 2020Content: The Cybersecurity and Infrastructure Security Agency (CISA) and the Department of Defense (DOD) Cyber National Mission Force (CNMF) have identified a malware variant—referred to as Zebrocy—used by a sophisticated cyber actor. In addition, U.S. Cyber Command has released the malware sample to the malware aggregation tool and repository, VirusTotal.

CISA and CNMF Identify a New Malware Variant: ZebrocyCISA All NCAS Products Read More »

MAR-10310246-1.v1 – ZEBROCY BackdoorCISA All NCAS Products

Original release date: October 29, 2020Notification This report is provided “as is” for informational purposes only. The Department of Homeland Security (DHS) does not provide any warranties of any kind regarding any information contained herein. The DHS does not endorse any commercial product or service referenced in this bulletin or otherwise. This document is marked

MAR-10310246-1.v1 – ZEBROCY BackdoorCISA All NCAS Products Read More »

MAR-10310246-2.v1 – PowerShell Script: ComRATCISA All NCAS Products

Original release date: October 29, 2020 Notification This report is provided “as is” for informational purposes only. The Department of Homeland Security (DHS) does not provide any warranties of any kind regarding any information contained herein. The DHS does not endorse any commercial product or service referenced in this bulletin or otherwise. This document is

MAR-10310246-2.v1 – PowerShell Script: ComRATCISA All NCAS Products Read More »

CISA, FBI, and CNMF Identify a New Malware Variant: ComRATCISA All NCAS Products

Original release date: October 29, 2020The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the Department of Defense Cyber National Mission Force (CNMF) have identified a malware variant—referred to as ComRAT—used by the Russian-sponsored advanced persistent threat (APT) actor Turla. In addition, U.S. Cyber Command has released the malware sample

CISA, FBI, and CNMF Identify a New Malware Variant: ComRATCISA All NCAS Products Read More »

Ransomware Activity Targeting the Healthcare and Public Health SectorCISA All NCAS Products

Original release date: October 28, 2020This advisory uses the MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK®) version 7 framework. See the ATT&CK for Enterprise version 7 for all referenced threat actor tactics and techniques. This joint cybersecurity advisory was coauthored by the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI),

Ransomware Activity Targeting the Healthcare and Public Health SectorCISA All NCAS Products Read More »

Ransomware Activity Targeting the Healthcare and Public Health SectorCISA All NCAS Products

Original release date: October 28, 2020The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the U.S. Department of Health and Human Services (HHS) have credible information of an increased and imminent cybercrime threat to U.S. hospitals and healthcare providers.     CISA, FBI, and HHS have released AA20-302A Ransomware Activity

Ransomware Activity Targeting the Healthcare and Public Health SectorCISA All NCAS Products Read More »

North Korean Advanced Persistent Threat Focus: KimsukyCISA All NCAS Products

Original release date: October 27, 2020This advisory uses the MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK®) version 7 framework. See the ATT&CK for Enterprise version 7 for all referenced threat actor tactics and techniques. This joint cybersecurity advisory was coauthored by the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI),

North Korean Advanced Persistent Threat Focus: KimsukyCISA All NCAS Products Read More »

Microsoft Releases Security Update for EdgeCISA All NCAS Products

Original release date: October 26, 2020Microsoft has released a security update to address vulnerabilities in Edge (Chromium-based). An attacker could exploit some of these vulnerabilities to take control of an affected system. The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the latest entry for Microsoft Security Advisory ADV200002 apply the

Microsoft Releases Security Update for EdgeCISA All NCAS Products Read More »

Scroll to Top