Labor Day Weekend Guidance in Anticipation of Increased Cyberattacks Over Holidays

Clark Hill PLC
Contact

On Aug. 31, the Federal Bureau of Investigation (FBI) and the Cybersecurity Infrastructure Security Agency (CISA) issued a Joint Cybersecurity Advisory urging organizations to ensure they protect themselves against ransomware attacks during holidays and weekends – when offices are normally closed.

The Joint Cybersecurity Advisory explains that while there are no specific threat reports indicating a cyberattack will occur over the coming Labor Day weekend, there has been a rise in cyberattacks during holidays. CISA and the FBI explain that entities should be especially diligent in network defense practices based on recent threat actor tactics, techniques, and procedures (TTPs). The Joint Cybersecurity Advisory advises organizations to engage in preemptive threat hunting on their networks. For indicators of suspicious activity that threat hunters should look for and recent examples of holiday cyberattacks, view the Joint Cybersecurity Advisory.

In conjunction with the Joint Cybersecurity Advisory, CISA issued an Alert recommending that organizations identify IT security employees to be available and “on call” during holidays in the event of a ransomware attack. Additional actions that organizations can take that may reduce their risks and impacts of compromise include the following:

  • Make an offline backup of your data.
  • Do not click on suspicious links.
  • If using Remote Desktop Protocol (RDP), or other potentially risky services, disable if possible and secure and monitor if necessary.
  • Update your operating system and software; scan for vulnerabilities.
  • Use strong passwords, consider changing them now.
  • Implement and use multi-factor authentication wherever possible.
  • Secure your network(s): implement segmentation, filter traffic, and scan ports.
  • Secure your user accounts.
  • Have a hard copy of your incident response plan, and review and update where needed.

For more resources see the Alert (AA21-243A) issued by CISA in conjunction with the Joint Cybersecurity Advisory discussed above.

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© Clark Hill PLC | Attorney Advertising

Written by:

Clark Hill PLC
Contact
more
less

PUBLISH YOUR CONTENT ON JD SUPRA NOW

  • Increased visibility
  • Actionable analytics
  • Ongoing guidance

Clark Hill PLC on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide