• The Industrial Control Systems Joint Working Group (ICSJWG)—a collaborative and coordinating body for Industrial Control Systems hosted by CISA and driven by the community—is currently accepting abstracts for the 2020 Fall Virtual Meeting, September 22–23, 2020.
    Wednesday, September 9, 2020 - 14:00
  • The Cybersecurity and Infrastructure Security Agency (CISA) has released its five-year industrial control systems (ICS) strategy: Securing Industrial Control Systems: A Unified Initiative. The strategy—developed in collaboration with industry and government partners—lays out CISA's plan to improve, unify, and focus the effort to secure ICS and protect critical infrastructure.
    Tuesday, July 7, 2020 - 12:52
  • Andrew Ginter of Waterfall Security Solutions will present on Secure Operations Technology on November 13, 2019 from 1 p.m. to 2:15 p.m. EST
    Monday, October 14, 2019 - 10:53
  • The newsletter highlights the 2019 Biannual Meeting in Springfield, Mass., upcoming ICS Events, training, technology updates, National Cybersecurity Awareness Month, and articles of interest provided by the ICS Community. Get involved! Article submissions for the December 2019 edition are currently being accepted for review until December 9, 2019.
    Monday, October 14, 2019 - 10:48
  • The Industrial Control Systems Joint Working Group (ICSJWG)—a collaborative and coordinating body for Industrial Control Systems hosted by CISA and driven by the community—is still accepting abstracts for the 2019 Fall Meeting in Springfield, Massachusetts, August 27–29, 2019.
    Thursday, July 25, 2019 - 10:57
  • The Water Information Sharing and Analysis Center (WaterISAC) recently released an updated cybersecurity fundamentals guide for water and wastewater utilities. The guide includes cybersecurity best practices, grouped into 15 categories, to help sector utilities reduce exploitable weaknesses and attacks. WaterISAC is a CISA partner focused on protecting Water and Wastewater Systems Sector utilities from all hazards.
    Wednesday, July 17, 2019 - 21:34
  • The Cybersecurity and Infrastructure Security Agency (CISA) is excited to announce the relaunch of the newly integrated us-cert.gov website! On June 25, us-cert.gov and ics-cert.us-cert.gov were consolidated into a single us-cert.gov site—a comprehensive, easy-to-navigate website with an updated look and feel.
    Tuesday, June 25, 2019 - 22:26
  • Microsoft has released security updates to address a remote code execution vulnerability (CVE-2019-0708) in Remote Desktop Services.
    Monday, May 20, 2019 - 10:55
  • The Industrial Control Systems Joint Working Group (ICSJWG)—a collaborative and coordinating body operating under the Critical Infrastructure Partnership Advisory Council framework—will hold the 2019 ICSJWG Spring Meeting in Kansas City, Mo, April 23–25, 2019. ICSJWG facilitates information sharing to reduce the risk to the Nation’s industrial control systems.
    Wednesday, April 17, 2019 - 14:25
  • ICSJWG 2019 Spring Meeting – Registration now open and Call for Abstract deadline extended!
    Additional information regarding the event can be located at the ICSJWG Website:
    Thursday, March 7, 2019 - 13:53
  • This updated malware analysis report is a follow-up to the updated malware analysis report titled MAR-17-352-01 HatMan - Safety System Targeted Malware (Updated A) that was published April 10, 2018, on the ICS-CERT website.
    Friday, March 1, 2019 - 15:15
  • The Cybersecurity and Infrastructure Security Agency (CISA) has added an additional session to the virtual awareness briefing on Chinese malicious cyber activity targeting managed service providers.
    Tuesday, February 12, 2019 - 11:24
  • The Cybersecurity and Infrastructure Security Agency (CISA) will conduct a series of virtual awareness briefings on Chinese malicious cyber activity targeting managed service providers (MSPs).
    Wednesday, January 30, 2019 - 11:44
  • DHS is committed to assisting manufacturers with security of their products through a steady stream of vulnerability information.
    Tuesday, September 18, 2018 - 13:03
  • NCCIC has released the Recommended Practice: Updating Antivirus in an Industrial Control System document.
    Thursday, August 2, 2018 - 10:16
  • NIST is releasing a publication that will help organizations prepare better against potentially destructive attacks to the collection of hardware and firmware components of a computer system, also called the platform. Special Publication 800-193, Platform Firmware Resiliency Guidelines provides technical guidelines and recommendations supporting resiliency of platform firmware and data against such attacks.
    Friday, May 4, 2018 - 14:36
  • This paper is intended to provide an understanding of the possible effects of the April 6, 2019 GPS Week Number Rollover on Coordinated Universal Time derived from GPS devices.
    Tuesday, April 10, 2018 - 10:21
  • The National Institute of Standards and Technology (NIST) released the initial public draft of NIST Special Publication 800-160 Volume 2, Systems Security Engineering: Cyber Resiliency Considerations for the Engineering of Trustworthy Secure Systems.
    Wednesday, March 21, 2018 - 10:29
  • MAR-17-352-01 HatMan—Safety System Targeted Malware. This malware analysis report discusses the components and capabilities of the HatMan malware and some potential mitigations. Media reporting also refers to this malware as both TRITON and TRISIS.
    Monday, December 18, 2017 - 16:46
  • This paper is intended as a best practices guide to be used for the upcoming Leap Second event scheduled for Saturday, 31 December 2016.
    Thursday, October 13, 2016 - 17:47