H-ISAC TLP White UPDATE: Ongoing Progress MOVEit Transfer Vulnerabilities Discovered

June 30, 2023

Organizations should ensure network defense and incident response teams are on call in the run-up to federal holidays and long weekends.  Based on long-standing threat actor tactics, techniques, and procedures (TTPs), serious cyberattacks have occurred over holidays and long weekends in the past.  Previous high-profile attacks, such as the breach of Kaseya Virtual System Administrator (VSA) by REvil Ransomware occurred over the long weekend of the 2021 July Fourth holiday. Additionally, REvil was successful in deploying ransomware against an entity in the Food and Agriculture sector on the Memorial Day Weekend of 2023 halting shipments from global meat production facilities.