Star Support

We Love Our Clients!

ISC Releases Security Advisories for Multiple Versions of BIND 9

Original release date: September 22, 2022 The Internet Systems Consortium (ISC) has released security advisories that address vulnerabilities affecting multiple versions of the ISC’s Berkeley Internet Name Domain (BIND) 9. A remote attacker could exploit these vulnerabilities to potentially cause denial-of-service conditions. For advisories addressing lower severity vulnerabilities, see the BIND 9 Security Vulnerability Matrix.  […]

ISC Releases Security Advisories for Multiple Versions of BIND 9 Read More »

CISA Releases Three Industrial Control Systems Advisories

Original release date: September 22, 2022 CISA has released three Industrial Control Systems (ICS) advisories on September 22, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisory for technical details and mitigations: ICSA-22-265-01 Measuresoft ScadaPro Server ICSA-20-212-02

CISA Releases Three Industrial Control Systems Advisories Read More »

AA22-265A: Control System Defense: Know the Opponent

Original release date: September 22, 2022 Summary Traditional approaches to securing OT/ICS do not adequately address current threats. Operational technology/industrial control system (OT/ICS) assets that operate, control, and monitor day-to-day critical infrastructure and industrial processes continue to be an attractive target for malicious cyber actors. These cyber actors, including advanced persistent threat (APT) groups, target

AA22-265A: Control System Defense: Know the Opponent Read More »

Microsoft Releases Out-of-Band Security Update for Microsoft Endpoint Configuration Manager

Original release date: September 21, 2022 Microsoft has released a security update to address a vulnerability in Microsoft Endpoint Configuration Manager, versions 2103-2207. An attacker could exploit this vulnerability to obtain sensitive information. The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review Microsoft’s Security Advisory for CVE-2022-37972 and apply the necessary updates.

Microsoft Releases Out-of-Band Security Update for Microsoft Endpoint Configuration Manager Read More »

AA22-264A: Iranian State Actors Conduct Cyber Operations Against the Government of Albania

Original release date: September 21, 2022 Summary The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) are releasing this joint Cybersecurity Advisory to provide information on recent cyber operations against the Government of Albania in July and September. This advisory provides a timeline of activity observed, from initial access to

AA22-264A: Iranian State Actors Conduct Cyber Operations Against the Government of Albania Read More »

CISA Releases Eight industrial Control Systems Advisories

Original release date: September 19, 2022 | Last revised: September 20, 2022 CISA has released eight (8) Industrial Control Systems (ICS) advisories on September 20, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisories for technical details

CISA Releases Eight industrial Control Systems Advisories Read More »

CISA Releases Eleven Industrial Control Systems Advisories

Original release date: September 15, 2022 CISA has released eleven (11) Industrial Control Systems (ICS) advisories on September 15, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisories for technical details and mitigations: ICSA-22-258-01 Siemens Mobility CoreShield

CISA Releases Eleven Industrial Control Systems Advisories Read More »

AA22-257A: Iranian Islamic Revolutionary Guard Corps-Affiliated Cyber Actors Exploiting Vulnerabilities for Data Extortion and Disk Encryption for Ransom Operations

Original release date: September 14, 2022 Summary Actions to take today to protect against ransom operations: • Keep systems and software updated and prioritize remediating known exploited vulnerabilities. • Enforce MFA. • Make offline backups of your data. This joint Cybersecurity Advisory (CSA) is the result of an analytic effort among the Federal Bureau of

AA22-257A: Iranian Islamic Revolutionary Guard Corps-Affiliated Cyber Actors Exploiting Vulnerabilities for Data Extortion and Disk Encryption for Ransom Operations Read More »

CISA Releases Four Industrial Control Systems Advisories

Original release date: September 8, 2022 CISA released four Industrial Control Systems (ICS) advisories on September 08, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisories for technical details and mitigations: ICSA-22-251-01 MZ Automation GmbH libIEC61850 ICSMA-22-251-01

CISA Releases Four Industrial Control Systems Advisories Read More »

AA22-249A: #StopRansomware: Vice Society

Original release date: September 6, 2022 Summary Actions to take today to mitigate cyber threats from ransomware: • Prioritize and remediate known exploited vulnerabilities. • Train users to recognize and report phishing attempts. • Enable and enforce multifactor authentication. Note: This joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for

AA22-249A: #StopRansomware: Vice Society Read More »