Agencies issue cyber advisory on best practices for network defense

The FBI and Department of Homeland Security today released recommendations to help organizations secure their networks from ongoing cyber threats from the Russian Foreign Intelligence Service, which recently exploited software updates to the widely used SolarWinds information technology performance-monitoring platform.
鈥淭his joint advisory provides analysis of the tactics, techniques and procedures of the adversary and details specific steps to help identify corrupted software updates,鈥 said John Riggi, AHA senior advisor for cybersecurity and risk. 鈥淐orrupted updates from 鈥榯rusted鈥 sources are extremely difficult to defend against, but implementing some of the advisory鈥檚 recommendations, such as auditing log files to identify attempts to access privileged certificates and creation of fake identities, will help mitigate the threat.鈥
For more on the SolarWinds breach, see the recent AHA and Health Information Sharing and Analysis Center (Health-ISAC) white paper or contact Riggi at jriggi@aha.org.