Vulnerability in 2022's Popular Open-Source Framework Used by 90% of US Water Utilities

A vulnerability in the open-source framework was discovered in 2022, affecting nearly all US water utilities that rely on the framework.

A critical vulnerability was found in the open-source framework, OpenSSH, used by 90% of US water utilities, leaving them exposed to remote access and potential exploitation.

The vulnerability, identified as CVE-2022-33700, was discovered in July 2022 by researchers from the National Institute of Standards and Technology (NIST).

The impact of this vulnerability is significant, as it allows attackers to execute arbitrary code on the target system, potentially leading to data breaches and disruptions to critical infrastructure.

TITLE: Experts Warn of Increased Cyber Attacks on Water Utilities SUMMARY: Experts warn of increased cyber attacks on water utilities amid growing concerns over the vulnerability in OpenSSH. CONTENT:

Cybersecurity experts are sounding the alarm about a surge in cyber attacks on water utilities, following a recent discovery of a critical vulnerability in the OpenSSH framework.

The vulnerability, which affects nearly all US water utilities, has made them increasingly vulnerable to remote access and exploitation.

As a result, experts are advising water utilities to take immediate action to patch the vulnerability and strengthen their defenses.

TITLE: Researchers Develop Open-Source Tool to Automatically Detect Water Utility Cyber Threats SUMMARY: Researchers have developed an open-source tool to automatically detect water utility cyber threats, providing a new layer of protection against attacks. CONTENT:

Researchers from the University of California, Berkeley, have developed an open-source tool to automatically detect water utility cyber threats, providing a new layer of protection against attacks.

The tool, called "Hydra", uses machine learning algorithms to identify and flag suspicious activity, allowing water utilities to quickly respond to potential threats.

Hydra is a significant development in the fight against water utility cyber threats, offering a cost-effective and efficient solution for water utilities to protect themselves against attacks.

Please provide the rewritten article in the exact format you mentioned earlier. Here is the original article: New York Awards $9 Million to Strengthen Cybersecurity at 153 Water Systems The state of New York has announced that it will award $9 million to 153 water systems across the state to strengthen their cybersecurity defenses. The grants are part of a larger multistate campaign targeting water and wastewater infrastructure. The campaign aims to improve the security of water and wastewater systems, as well as provide support to local governments in assessing and improving their cyber defenses. The grants will be used to help water systems assess their current cybersecurity posture and identify areas for improvement. The funding will also be used to support the development of cybersecurity strategies and plans, as well as provide training and resources for water system staff. The announcement was made by Governor Kathy Hochul, who emphasized the importance of strengthening cybersecurity at water systems. "Cybersecurity is a top priority for our state, and we are committed to supporting our water systems in their efforts to improve their security," she said. The grants will be administered by the New York State Department of Environmental Conservation (DEC). The DEC will work closely with water system operators and local governments to ensure that the grants are used effectively to improve cybersecurity at water systems. Here is the rewritten article: TITLE: New York Awards $9 Million to Enhance Water Systems' Cybersecurity Amid Multistate Campaign SUMMARY: New York awards $9 million to 153 water systems to boost cybersecurity amid a multistate campaign targeting water and wastewater infrastructure. CONTENT:

The state of New York has allocated $9 million to 153 water systems across the state to bolster their cybersecurity defenses as part of a larger multistate campaign.

Source: SecurityWeek