CISA adds a Google vulnerability to the Known Exploited Vulnerabilities Catalog and Cuba Ransomware

The US government Cybersecurity and Infrastructure Security Agency (CISA) has added a Google vulnerability to its Known Exploited Vulnerabilities Catalog.

CISA Adds One Known Exploited Vulnerability to Catalog | CISA

CISA also published a detailed advisory last week examining all aspects of the Cuba Ransomware as part of its #StopRansomware campaign.

#StopRansomware: Cuba Ransomware | CISA

This is particularly useful as it looks at how organisations are infected by the ransomware and offers mitigation – if you know how it happens you can defend against it.

Clive Catton MSc (Cyber Security) – by-line and other articles

My advice: Either you or your IT support need to check whether these issues impact your systems. You need to have a master document that details your systems, hardware, software, online, networks, back-ups, suppliers etc – so when cyber security (or operational) issues arise you and your support teams can quickly check if you are affected. From there you can take fast, effective action.

CISA also releases industrial control system advisories – if you are responsible for these types of systems you should monitor their news page:

Current Activity | CISA