CISA Alert AA22-131A – Protecting against cyber threats to managed service providers and their customers. [CISA Cybersecurity Alerts]
CyberWire Daily
N2K Networks, Inc.
4.8 • 1.1K Ratings
🗓️ 12 May 2022
⏱️ 4 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | You're listening to the CyberWire Network, powered by N2K. |
| 0:07.0 | This is a SISA Cybersecurity Alert. |
| 0:16.0 | ID number Alpha Alpha 2-2 TAC 131 Alpha. |
| 0:20.0 | Original release date, May 11, 2022. |
| 0:24.0 | The cybersecurity authorities of the UK, Australia, Canada, New Zealand, and the US have observed a recent increase in malicious |
| 0:34.0 | cyber activity against managed service providers, also called MSPs. |
| 0:39.0 | Allied cybersecurity authorities expect state-sponsored cyber actors to increase their targeting of |
| 0:43.6 | MSPs in an attempt to exploit provider-customer trust relationships. This |
| 0:48.4 | advisory includes security guidance tailored for both MSPs and their |
| 0:52.1 | customers. MSPs and their customers. |
| 0:53.0 | MSPs and their customers should implement the baseline security measures and |
| 0:57.4 | operational controls listed in this alert. |
| 0:59.7 | MSP customers should |
| 1:03.8 | immediately review their contractual agreements and specify that their MSP |
| 1:04.1 | takes the necessary mitigation actions. |
| 1:06.6 | These discussions should result in a re-evaluation of security |
| 1:09.4 | processes and contractual commitments to accommodate customer risk tolerance. |
| 1:14.7 | In their effort to compromise MSPs, malicious cyber actors exploit vulnerable devices and |
| 1:19.6 | internet facing services, conduct brute force attacks, and use fishing techniques. |
| 1:24.9 | MSPs and their customers should ensure they are mitigating these attack methods. |
| 1:29.2 | Useful mitigation resources on initial compromise attack methods are listed in the alert documentation and the show notes. |
| 1:35.0 | It can be months before incidents are detected. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from N2K Networks, Inc., and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of N2K Networks, Inc. and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

