CISA, FBI, EPA and U.S. Government Partners Warn of Iranian Threats to Critical Infrastructure
CISA, FBI, EPA and U.S. Government Partners Warn of Iranian Threats to Critical Infrastructure
CISA, FBI, EPA and U.S. Government Partners Update
The Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), Environmental Protection Agency (EPA), and other U.S. government partners have published an important update regarding Iranian-affiliated threat actors targeting critical infrastructure. 🚨
This advisory warns U.S. organizations about ongoing cyber activities that exploit Programmable Logic Controllers (PLC) across various sectors. The update includes:
- Indicators of compromise and detection guidance.
- Recommended mitigations to enhance resilience against these threats.
Key Highlights:
- The advisory expands its scope to include targeting of manufacturers such as Schneider Electric and Siemens, emphasizing the need for operational technology (OT) owners to restrict internet access and ensure secure PLC deployment.
- Iranian-affiliated actors have disrupted PLCs in multiple sectors, including Water and Wastewater Systems, Energy, and Government Services, leading to operational disruptions and financial losses.
Recommended Mitigations:
- Review PLC manufacturer’s previously issued guidance to ensure security of OT deployments.
- Strictly control network access to PLC devices.
- Validate project files running PLCs for unauthorized changes.
- Ensure service providers are informed of active threats targeting internet-connected PLC devices.
Stay informed and protect your organization from these evolving threats! 💪
This post is licensed under CC BY 4.0 by the author.