CISA’s early-warning system helped critical orgs close 852 ransomware holes

Interview As ransomware gangs step up their attacks against healthcare, schools, and other US critical infrastructure, CISA is ramping up a program to help these organizations fix flaws exploited by extortionists in the first place.

The US government’s cybersecurity nerve center launched its Ransomware Vulnerability Warning Pilot scheme in January 2023, and during its first year the system sent out 1,754 notifications to vital entities operating internet-accessible vulnerable devices. The idea being that those orgs shut the identified holes ASAP to avoid being held to ransom.

“We proactively look for these vulnerabilities, and make notifications to critical infrastructure organizations to let them know that the vulnerabilities in question are being exploited by ransomware threat groups, and that they should remediate those vulnerabilities as soon as possible,” Gabe Davis, CISA’s acting risk intelligence and operations section chief, told The Register in an interview you can watch below.

Youtube Video

According to the Homeland Security agency almost half (852, or 49 percent) of these notifications resulted in organizations either patching, taking systems briefly offline to fix the issue, or in some other way mitigating exploitable flaws.

The pilot program came out of the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) that President Biden signed into law in March 2022. It’s set to launch as a fully automated warning system by the end of next year.

This is one of the many tools CISA offers to Americans to help them combat ransomware and other cyber threats, according to Davis.

“In the spirit of NBA playoff season, I’m going to use the analogy of a full-court press,” he said. “We’re going to continue doing all the things to try to impact the capability of these threat actors to operate and make it financially and operationally difficult for them to execute on these organizations.” ®

Note: This article have been indexed to our site. We do not claim legitimacy, ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
What Exactly Is Blockchain? thumbnail

What Exactly Is Blockchain?

Chinnapong/Shutterstock Cryptocurrency has taken the world by storm, with people making and losing fortunes according to the value of Bitcoin, Ethereum, Dogecoin, Shiba Inu, and countless others. While cryptocurrency may get the lion's share of media coverage, closely associated is blockchain technology, on which cryptocurrency transactions are registered. The two go hand-in-hand, but blockchain has…
Read More
GNOME 42带来新的屏幕截图应用 界面大改 thumbnail

GNOME 42带来新的屏幕截图应用 界面大改

去年Google Summer of Code期间,GNOME开发了一个更新的屏幕截图和屏幕记录器用户界面,这个改进后的截图/截屏用户界面在本周被合并到GNOME 42中。在此之前,GNOME允许屏幕录制,但这是通过组合键来完成而不是通过GNOME Screenshot用户界面。 只有键盘快捷键才能调出的屏幕录制启动很显然对用户不是很友好,不仅如此,GNOME截屏应用还缺乏在替代品中发现的各种功能。GNOME 42的这个新实现能够从一个单一的用户界面提供屏幕截图和屏幕录像,它本身已经是GNOME Shell的一部分。新的屏幕截图界面在代码审查了五个月后于本周被合并,同时也取决于各种Mutter的变化,今天合并的是新用户界面的截屏部分。通过GSoC学生开发者Ivan Molodetskikh的这篇博文,可以了解到更多关于这个新的GNOME屏幕截图界面的细节:https://imolodetskikh.wordpress.com/2021/06/29/gsoc-2021-gnome-shell-screenshot-ui/在即将于3月23日发布的GNOME 42.0中,可以看到这个新的用户界面和许多其他功能。了解更多:https://gitlab.gnome.org/GNOME/gnome-shell/-/merge_requests/1954
Read More
Index Of News
Total
0
Share