TECHNICAL ADVISORIES

CISA & Joint Cybersecurity Advisories

Official joint cybersecurity alerts issued by the United States and international partners, cross-referenced with judicial case records.

Key Facts

  • Government technical alerts issued by CISA, FBI, NSA, and allied partners.
  • Cross-referenced directly against criminal indictments and sanctions records.
  • Identifies exploited CVEs and corresponding MITRE ATT&CK techniques.
Advisory ID Title & Scope Source Agency Publication Date Exploited CVEs Linked Cases
AA20-352A Advanced Persistent Threat Compromise of Government Agencies, Critical Infrastructure, and Private Sector CISA 2020-12-17 CVE-2020-10148 SolarWinds Orion Supply Chain Intrusion (APT29 / SVR)
AA21-131A DarkSide Ransomware: Best Practices for Preventing Business Disruption from Ransomware Attacks CISA & FBI 2021-05-11 N/A Colonial Pipeline DarkSide Ransomware Attack
AA23-335A IRGC-Affiliated Cyber Actors Exploit Unitronics PLCs in Water and Wastewater Systems CISA, FBI & NSA 2023-12-01 N/A U.S. v. IRGC Actors (CyberAv3ngers Critical Infrastructure Attacks)
AA24-057A Understanding and Mitigating Russian State-Sponsored Cyber Threats to U.S. Critical Infrastructure CISA, FBI & NSA 2024-02-27 CVE-2023-38606 U.S. v. Andrienko et al. (Sandworm / GRU Unit 74455) , U.S. v. Netyksho et al. (APT28 / GRU Unit 26165 DNC Hack) , U.S. & International Action: Dmitry Badin (German Bundestag Hack)
AA24-060A ALPHV BlackCat Ransomware Deployment Targeting Healthcare Organizations CISA & FBI 2024-02-29 CVE-2024-21412 ALPHV / BlackCat Ransomware Attack on Change Healthcare