Sophisticated, high-impact ransomware incidents against critical infrastructure organizations increased globally in 2021, according to a new advisory by cybersecurity authorities in the United States, Australia and United Kingdom. The FBI, Cybersecurity and Infrastructure Security Agency and National Security Agency observed incidents against 14 of the 16 U.S. critical infrastructure sectors, notes the advisory, which includes recommended actions to help organizations protect against the latest ransomware trends. 

John Riggi, national advisor for cybersecurity and risk at the AHA, said, “This report is especially useful as it combines the collective knowledge and intelligence on ransomware trends of not only multiple U.S. agencies, but also of our trusted allies in the U.K. and Australia. This is one of the best U.S. government public advisories I have seen on ransomware. It includes a very comprehensive list of risk mitigation tactics, such as multi-factor authentication, highly secure off-line backups, up-to-date patching and more. The report also provides links to helpful ransomware resources and identifies trends such as ransomware gangs aggressively targeting cloud services and mission-critical third-party service providers.”

For more on this or other cyber and risk issues, contact Riggi at jriggi@aha.org
 

Headline
The Administration for Strategic Preparedness and Response has released a new cybersecurity module for organizations to conduct risk assessments. The free…
Perspective
Public
As the world has learned in recent years, today’s conflicts are fought with many weapons, and cyber warfare is an integral part of the arsenal.As of this…
Headline
The FBI is reminding critical infrastructure organizations to implement mitigations from a June 2025 fact sheet on potential actions by Iranian-affiliated…
Headline
The Cybersecurity and Infrastructure Security Agency Feb. 26 released a report that updates findings from last year on RESURGE malware used to gain covert…
Headline
U.S. and international agencies Feb. 25 released guidance on protecting Cisco Software-defined Wide-area Networking systems from exploitation by malicious…
Headline
The National Security Agency has released two phases of its Zero Trust Implementation Guidelines for organizations to improve their zero trust architecture.…