Podcasts/N2K Networks/CISA Cybersecurity Alerts
CISA Alert AA23-165A – Understanding Ransomware Threat Actors: LockBit.
CISA Cybersecurity AlertsbyN2K Networks

CISA Alert AA23-165A – Understanding Ransomware Threat Actors: LockBit.

0:000:00
CISA, FBI, the MS-ISAC, and international partners are releasing this Cybersecurity Advisory to detail LockBit ransomware incidents and provide recommended mitigations to enable network defenders to proactively improve their organization’s defenses against this ransomware operation. AA23-165A Alert, Technical Details, and Mitigations Stopransomware.gov is a whole-of-government approach that gives one central location for ransomware resources and alerts. See the Center for Internet Security (CIS) Critical Security Controls (CIS Controls) https://www.cisecurity.org/insights/white-papers/cis-community-defense-model-2-0 for information on strengthening an organization’s cybersecurity posture through implementing a prescriptive, prioritized, and simplified set of best. See the CIS Community Defense Model 2.0 (CDM 2.0) for the effectiveness of the CIS Controls against the most prevalent types of attacks and how CDM 2.0 can be used to design, prioritize, implement, and improve an organization’s cybersecurity program. See Blueprint for Ransomware Defense for a clear, actionable framework for ransomware mitigation, response, and recovery built around the CIS Controls. No-cost cyber hygiene services: Cyber Hygiene Services and Ransomware Readiness Assessment. U.S. DIB sector organizations may consider signing up for the NSA Cybersecurity Collaboration Center’s DIB Cybersecurity Service Offerings, including Protective Domain Name System services, vulnerability scanning, and threat intelligence collaboration for eligible organizations. For more information on how to enroll in these services, email [email protected]  To report incidents and anomalous activity or to request incident response resources or technical assistance related to these threats, contact CISA at [email protected], or call (888) 282-0870, or report incidents to your local FBI field office. Learn more about your ad choices. Visit megaphone.fm/adchoices
🏢 N2K Networks57 Episodes0 Subscribers0 Total Listens

Episode Playlist

25 Episodes
CISA Alert AA23-165A – Understanding Ransomware Threat Actors: LockBit.
Jun 15, 2023

CISA Alert AA23-165A – Understanding Ransomware Threat Actors: LockBit.

CISA Alert AA23-158A – #StopRansomware: CL0P Ransomware Gang Exploits CVE-2023-34362 MOVEit Vulnerability.
Jun 9, 2023

CISA Alert AA23-158A – #StopRansomware: CL0P Ransomware Gang Exploits CVE-2023-34362 MOVEit Vulnerability.

CISA Alert AA23-144A – People's Republic of China state-sponsored cyber actor living off the land to evade detection.
May 25, 2023

CISA Alert AA23-144A – People's Republic of China state-sponsored cyber actor living off the land to evade detection.

CISA Alert AA23-136A – #StopRansomware: BianLian Ransomware Group.
May 18, 2023

CISA Alert AA23-136A – #StopRansomware: BianLian Ransomware Group.

CISA Alert AA23-131A – Malicious Actors Exploit CVE-2023-27350 in PaperCut MF and NG.
May 12, 2023

CISA Alert AA23-131A – Malicious Actors Exploit CVE-2023-27350 in PaperCut MF and NG.

CISA Alert AA23-129A – Hunting Russian intelligence “Snake” malware.
May 11, 2023

CISA Alert AA23-129A – Hunting Russian intelligence “Snake” malware.

CISA Alert AA23-108A – APT28 exploits known vulnerability to carry out reconnaissance and deploy malware on Cisco routers.
Apr 20, 2023

CISA Alert AA23-108A – APT28 exploits known vulnerability to carry out reconnaissance and deploy malware on Cisco routers.

CISA Alert AA23-075A – #StopRansomware: LockBit 3.0.
Mar 18, 2023

CISA Alert AA23-075A – #StopRansomware: LockBit 3.0.

CISA Alert AA23-074A – Threat actors exploit progress telerik vulnerability in U.S. government IIS server.
Mar 16, 2023

CISA Alert AA23-074A – Threat actors exploit progress telerik vulnerability in U.S. government IIS server.

CISA Alert AA23-061A – #StopRansomware: Royal ransomware.
Mar 3, 2023

CISA Alert AA23-061A – #StopRansomware: Royal ransomware.

CISA Alert AA23-061A – #StopRansomware: Royal ransomware.
Mar 3, 2023

CISA Alert AA23-061A – #StopRansomware: Royal ransomware.

CISA Alert AA23-059A – CISA red team shares key findings to improve monitoring and hardening of networks.
Mar 3, 2023

CISA Alert AA23-059A – CISA red team shares key findings to improve monitoring and hardening of networks.

CISA Alert AA23-059A – CISA red team shares key findings to improve monitoring and hardening of networks.
Mar 3, 2023

CISA Alert AA23-059A – CISA red team shares key findings to improve monitoring and hardening of networks.

CISA Alert AA23-040A – #StopRansomware: ransomware attacks on critical infrastructure fund DPRK malicious cyber activities.
Feb 10, 2023

CISA Alert AA23-040A – #StopRansomware: ransomware attacks on critical infrastructure fund DPRK malicious cyber activities.

CISA Alert AA23-039A – ESXiArgs ransomware virtual machine recovery guidance.
Feb 9, 2023

CISA Alert AA23-039A – ESXiArgs ransomware virtual machine recovery guidance.

CISA Alert AA23-025A – Protecting against malicious use of remote monitoring and management software
Jan 26, 2023

CISA Alert AA23-025A – Protecting against malicious use of remote monitoring and management software

CISA Alert AA22-335A – #StopRansomware: Cuba Ransomware
Dec 7, 2022

CISA Alert AA22-335A – #StopRansomware: Cuba Ransomware

CISA Alert AA22-321A – #StopRansomware: Hive Ransomware.
Nov 17, 2022

CISA Alert AA22-321A – #StopRansomware: Hive Ransomware.

CISA Alert AA22-320A – Iranian government-sponsored APT actors compromise federal network, deploy crypto miner, credential harvester.
Nov 16, 2022

CISA Alert AA22-320A – Iranian government-sponsored APT actors compromise federal network, deploy crypto miner, credential harvester.

CISA Alert AA22-294A – #StopRansomware: Daixin Team.
Oct 23, 2022

CISA Alert AA22-294A – #StopRansomware: Daixin Team.

CISA Alert AA22-279A – Top CVEs actively exploited by People’s Republic of China state-sponsored cyber actors.
Oct 7, 2022

CISA Alert AA22-279A – Top CVEs actively exploited by People’s Republic of China state-sponsored cyber actors.

CISA Alert AA22-277A – Impacket and exfiltration tool used to steal sensitive information from defense industrial base organization.
Oct 4, 2022

CISA Alert AA22-277A – Impacket and exfiltration tool used to steal sensitive information from defense industrial base organization.

CISA Alert AA22-265A – Control system defense: know the opponent.
Sep 22, 2022

CISA Alert AA22-265A – Control system defense: know the opponent.

CISA Alert AA22-264A – Iranian state actors conduct cyber operations against the government of Albania.
Sep 22, 2022

CISA Alert AA22-264A – Iranian state actors conduct cyber operations against the government of Albania.

CISA Alert AA22-257A – Iranian Islamic Revolutionary Guard Corps-Affiliated Cyber Actors Exploiting Vulnerabilities for Data Extortion and Disk Encryption for Ransom Operations.
Sep 15, 2022

CISA Alert AA22-257A – Iranian Islamic Revolutionary Guard Corps-Affiliated Cyber Actors Exploiting Vulnerabilities for Data Extortion and Disk Encryption for Ransom Operations.

Вам также может понравиться