Cybersecurity Threats

The CIS® and MS-ISAC® cybersecurity professionals analyze risks and alert members to current online security threats.

Timely updates when you need to take action

Subscribe to Advisories
Low
Guarded
Elevated
High
Severe

Explanation of the Current Alert Level of GUARDED

The alert level is the overall current threat level.

On August 3, the Cyber Threat Alert Level was evaluated and is remaining at Blue (Guarded) due to vulnerabilities in Samba, Grails and Google products. On July 29, the MS-ISAC released an advisory for multiple vulnerabilities in Samba, the most severe of which could allow for privilege escalation. On July 30, the MS-ISAC released an advisory for a vulnerability in the Grails framework, which could allow for remote code execution. On August 2, the MS-ISAC released 2 advisories for multiple vulnerabilities in Google Android OS and Google Chrome, the most severe of which could allow for remote code execution. Organizations and users are advised to update and apply all appropriate vendor security patches to vulnerable systems and to continue to update their antivirus signatures daily. Another line of defense includes user awareness training regarding the threats posed by attachments and hypertext links contained in emails especially from un-trusted sources.

Read more about our approach

Latest Advisory

Multiple Vulnerabilities in Cisco Small Business RV Series Routers Could Allow for Remote Code Execution
4 Aug 2022
Multiple vulnerabilities have been discovered in Cisco Small Business RV Series Routers, the most severe of which could allow for remote code exe...
Read the details
Our MS-ISAC Advisories

Advisories Released (Last 12 Months)

Monthly Advisory Count April 2022 

Hot Topic
Hot Topic
 
Monthly Advisories July 2022

In Q2 2019 the MS-ISACobserved a 55% increase in the quantity of reported breaches when compared to the previous quarter and 53% decrease year to year. The significant decrease year to year is attributed to the absence of third-party breaches affecting multiple educational entities. The education sector experienced the most breaches, accounting for 71% of the breaches in Q2. The most prolific identified vector in Q2 was phishing, accounting for a combined 30% of reported breaches. The MS-ISAC did not identify any reports of W2 phishing scams affecting SLTT governments in Q2 2019, scams of this nature typically phase out in the second half the year.

Top Malware Last Month
  1. Shlayer
  2. CoinMiner
  3. NanoCore
  4. Agent Tesla
  5. Jupyter
  6. Hupigon
  7. ZeuS
  8. Blaknight
  9. CryptoWall
  10. ZLoader
Take Control of Your Organization's Security
Security Operations Center

The information on this page is maintained by our Security Operations Center, which is part of MS-ISAC and EI-ISAC.