US Agencies Update Shields Up Guidance Amid Russian Malware Threats

CISA and the FBI update their Shields Up webpage with new defensive recommendations as Russian state-sponsored wiper malware targets Ukrainian organizations. Officials urge all US businesses to immediately assess and bolster their cybersecurity postures.

CISA and the FBI issue a joint advisory highlighting Russian state-sponsored cyberactivity that utilizes WhisperGate and HermeticWiper malware to target Ukrainian organizations. In response to these ongoing threats, the agencies update the Shields Up webpage to provide corporate leaders with essential recommendations to protect their critical assets and networks.

Although officials state there is no credible threat to the United States at this time, they warn that such destructive malware presents a direct risk to daily operations by compromising the availability of critical data. CISA director Jen Easterly emphasizes that the agency works closely with the Joint Cyber Defense Collaborative, international CERT partners, and the FBI to rapidly share threat intelligence and help organizations reduce their cyber risk.

The malicious software involved in these attacks specifically targets Windows devices by manipulating the master boot record, which causes complete system boot failure. WhisperGate operates in two stages by corrupting the master boot record and encrypting files, while HermeticWiper similarly renders targeted devices entirely inoperable despite displaying fake ransomware notes to deceive victims.

Read More at the original source →