Update as of March 3, 2022: Trend Micro has released a new blog entitled: Cyberattacks are Prominent in the Russia-Ukraine Conflict. In addition to detailed overviews of some of the threats, at the bottom of the article is the updated list of known IOCs - sourced by both Trend Micro and industry partners - for cyberthreats that are suspected to be associated with or linked to the ongoing Russia-Ukraine conflict. The blog page will continue to be updated with new IOCs as they become available.
In light of this, Trend Micro has put together a list of some very relevant guidance and advisories from various government cyber-security agencies around the globe. While these may not be specific to any particular threat, the recommendations and guidance given by these various agencies are best practices for organizations looking to increase their security posture.
In addition to the general recommendations below, Trend Micro has published the following blog with some our own best practices: Global Cyberattacks: Managing Risk in Chaotic Times.
Government Agency General Recommendation Chart
Please note that is not an exhaustive list and users are encouraged to visit their local or national government cyber security agency website to see if any specific information has been posted or updated as new information is available (including but not limited to new IOCs and TTPs if applicable).Country | Agency | Article |
Australia | ACSC | 2022-02: Australian organisations should urgently adopt an enhanced cyber security posture |
Canada | Cyber Centre | How to identify misinformation, disinformation, and malinformation (ITSAP.00.300) |
Canada | Cyber Centre | Application allow list (ITSAP.10.095) |
France | ANSSI | TENSIONS INTERNATIONALES : RENFORCEMENT DE LA VIGILANCE CYBER |
Netherlands | NCSC | Guide to Cyber Security Measures |
New Zealand | NCSC | General Security Advisory: Understanding and preparing for cyber threats relating to tensions between Russia and Ukraine |
United Kingdom | NCSC | Actions to take when the cyber threat is heightened |
United States | CISA | SHIELDS UP |
United States | CISA | Implement Cybersecurity Measures Now to Protect Against Potential Critical Threats |
United States | CISA | Understanding and Mitigating Russian State-Sponsored Cyber Threats to U.S. Critical Infrastructure |