Access publications and alerts / Alerts and advisories / Archived alerts and advisories / Vulnerability Affecting BlackBerry QNX RTOS Vulnerability Affecting BlackBerry QNX RTOS 17 Aug 2021 Advisory Advisory on the BlackBerry QNX BadAlloc vulnerability (CVE-2021-22156), affecting a widely used real-time operating system. Review and update affected systems.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / 2021-006: ASD's ACSC Ransomware Profile - Lockbit 2.0 2021-006: ASD's ACSC Ransomware Profile - Lockbit 2.0 05 Aug 2021 Advisory The LockBit ransomware restricts access to corporate files and systems by encrypting them into a locked and unusable format. Victims receive instructions on how to engage with the offenders after encryption. LockBit affiliates have successfully deployed ransomware on corporate systems in a variety of countries and sectors, including Australia, where the Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) is aware of numerous incidents since 2020. LockBit affiliates are known to implement the ‘double extortion’ technique by uploading stolen and sensitive victim information to their dark web site ‘LockBit 2.0’, and threatening to sell and/or release this information if their ransom demands are not met.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / LockBit 2.0 ransomware incidents in Australia LockBit 2.0 ransomware incidents in Australia 05 Aug 2021 Alert Alert warns LockBit 2.0 ransomware is targeting Australian organisations, detailing attack methods, indicators of compromise and mitigation advice
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / SonicWall devices targeted with ransomware utilising stolen credentials SonicWall devices targeted with ransomware utilising stolen credentials 15 Jul 2021 Alert Alert on SonicWall devices being targeted for ransomware. ASD’s ACSC is aware of related malicious activity affecting Australian organisations.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / Kaseya VSA Supply-Chain Ransomware Attack Kaseya VSA Supply-Chain Ransomware Attack 03 Jul 2021 Alert Patch now available for Kaseya VSA platform.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / Advisory 2021-004: Active exploitation of ForgeRock Access Manager / OpenAM servers Advisory 2021-004: Active exploitation of ForgeRock Access Manager / OpenAM servers 09 Jul 2021 Advisory Advisory on active exploitation of ForgeRock Access Manager and OpenAM servers, detailing vulnerabilities, attack methods, risks, and mitigation guidance.