We assist critical infrastructure owners and operators to understand risk and meet regulatory requirements – for the shared benefit of all Australians.
❗ ALERT ❗ We are aware of malicious cyber actors targeting Cisco SD-WANs globally. Along with our partners we have released a Cisco SD-WAN Threat Hunt Guide to support network detection of and response to the actors. Read the full alert and hunt guide 👉https://t.co/KXFGzKOS61
❗ ALERT ❗ We are aware of a vulnerability in the Microsoft Windows Server Update Service. The vulnerability impacts Microsoft Windows Server Update Service in Windows Server (2012, 2016, 2019, 2022 and 2025).
Read the full alert �� https://t.co/olx3rvkPuT
❗ALERT❗ We are aware of multiple vulnerabilities impacting Cisco ASA 5500-X Series models. Affected organisations should investigate environments for potential malicious activity and consult Cisco for guidance and mitigation advice. Read the full alert 👉https://t.co/9KziM9A1wI
❗ ALERT ❗ We are aware of active exploitation of a vulnerability in SonicWall SSL VPNs. Organisations should consult the vendor for mitigation advice, including changing passwords after updating firmware. Read the full alert 👉 https://t.co/rQcJ5DqQkP
❗ ALERT ❗ We are aware of multiple vulnerabilities impacting NetScaler ADC and NetScaler Gateway. Organisations should review their networks for vulnerable instances and update software to a newer version 👉 https://t.co/L0wlb8EhL2
❗ ALERT ❗ ASD’s ACSC is aware of a vulnerability affecting instances of Microsoft Office SharePoint Server products. Organisations should take immediate action 👉 https://t.co/HB1ATIHewP
The Department of Home Affairs is pleased to announce that the Cyber and Infrastructure Security Centre has changed to the Critical Infrastructure Security Centre, reflecting the important connection to the all-hazards approach to critical infrastructure security and resilience.
❗ ALERT ❗ There are 2 vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM). Australian organisations should review their networks for the use of Ivanti EPMM and apply the latest patches available.
Read the full alert 👉 https://t.co/AH5WdBXyqb
📢 3 days left to participate in the consultation on the Guiding Principles to embed Zero Trust Culture!
For more information visit: https://t.co/ipSiTbU25W
Consultation on the Guiding Principles to embed Zero Trust Culture closes in one week!
As part of our commitment to uplifting the Australian Government’s cyber security, we've released a consultation paper that considers the changing risk and increased vulnerabilities posed by the evolving threat landscape.
We're seeking views and input from past, present and future Commonwealth providers, cyber security subject matter experts and organisations, who are planning, or who have commenced, similar cyber resilience uplift programs. Have your say by 28 February 2025.
Visit: https://t.co/pPmnjjYCZ0
Join us for our new episode of Critical Conversations as we dive into Operation JETENGINE, an ABF operation which aims to identify, monitor and disrupt criminality within the aviation supply chain across Victoria and Tasmania.
Listen today👉 https://t.co/9BcG9it7tW
Enabling organisations to uplift their cyber security using #ZeroTrust and #Secure-by-Design is a core priority for us. If you manage networks or procure IT, we want your insights to provide relevant, meaningful guidance.
Have your say 👉 https://t.co/xt7N4I6scN
On Tuesday 11 Feb, 1 – 2pm AEDT, we will host our 2nd Deep Dive into the draft Telecommunications Rules which support the implementation of the Security of Critical Infrastructure & Other Legislation (Enhanced Response and Prevention) Act 2024.
Register👉 https://t.co/Hyczms9DCx
Formal consultation on the Subordinate Legislation to the Cyber Security Act and the Security of Critical Infrastructure Act will close on Friday 14 February at 5pm AEDT. ����
Provide your submission here👉 https://t.co/eB2WyAX4F2
If you missed our first deep dive on the Draft Cyber Security (Cyber Incident Review Board) Rules 2024 to be made under the Cyber Security Act 2024, we’re hosting a second session on Friday 7 February, 10am – 11am AEDT.
To register to attend👉 https://t.co/o1YB7PMcQQ
If you missed our first deep dive on the Draft Cyber Security (Ransomware Reporting) Rules 2024 to be made under the Cyber Security Act 2024, we’re hosting a second session on Wednesday 5 Feb, 1pm – 2pm AEDT.
Register to attend 👉https://t.co/NtRHV2Tee4
The Trusted Information Sharing Network (TISN) is holding a Town Hall regarding the DeepSeek AI app on Monday 3 February. This event is exclusive to TISN members.
To join the TISN, apply here 👉 https://t.co/8RVwdPamV0
If you missed our first deep dive on the Draft Cyber Security (Security Standards for Smart Devices) Rules 2024 to be made under the Cyber Security Act 2024, we’re hosting a second session on Monday 3 Feb, 1pm – 2pm AEDT.
Register to attend 👉https://t.co/HsdG8o9SAr
The Critical 5 (C5) is a partnership with the governments of 🇦🇺🇨🇦🇳🇿🇬🇧🇺🇸 🤝
C5 countries have recently released a joint statement on the shared commitment to critical infrastructure security and resilience 👉https://t.co/DIwAoJBe9m
We are hosting a Deep Dive into the draft Telecommunications Rules to support the implementation of the Security of Critical Infrastructure and Other Legislation (ERP) Act 2024 on Thurs 30 Jan 1pm – 2pm AEDT. ☎️
For all Deep Dive sessions & to register👉https://t.co/hBvCmQwDPj
Register now for the Deep Dive into the Cyber Incident Review Board to be established under the Cyber Security Act 2024 on Tuesday 28 January, 1:30pm – 2:30pm AEDT.
For a list of all upcoming Deep Dive sessions & to register👉 https://t.co/OELYNwOWhc