For CIRMA Liability-Auto-Property pool members:
All Cyber Liability incidents should be reported immediately to Cynthia Mancini, LAP Claims Unit Manager at:
Business: 203-498-3019 Cell: 203-804-5917 (For After-Hours Emergencies) Email: cmancini@ccm-ct.org(Additional contact is Cathy Gambrell, Sr. Technical Claim Manager, at 203-946-3750.)
CIRMA places a comprehensive Cyber Insurance program through an A.M. Best A rated carrier for our Liability-Auto-Property (LAP) Pool Members to help protect them in the event of a cyber event. CIRMA LAP Pool Members have access to liability coverage, forensics investigation and breach management services from best-in-class breach responders with experience in computer forensics, data breach notification, credit and ID monitoring, and legal counsel. View the flyer
CIRMA has also developed a number of risk management resources, including regional training programs and E-Learning Center training, and cybersecurity whitepaper to help our members manage this risk. CIRMA's Cyber News & Alerts service provides IT departments and municipal and school leaders current cyber alerts from MS-ISAC, the Multi State Information Sharing and Analysis Center and U.S. Homeland Security. > Click here to SUBSCRIBE to CIRMA's Cyber News and Alerts Today!
The Cyber Disruption Response Plan will be incorporated as an annex to the State Response Framework, and is a roadmap for state, local, and private sector entities on how and when to report a cyber incident, as well as an outline of emergency response actions to be taken depending on the severity of the disruption and its potential impact on the state and its communities. The CDRP is a companion document to the Cyber Incident Response Plan, which outlines specific technical response actions. The Quick Reference Guide consists of two charts found in the CDRP, and is intended to provide readily available guidance in a fast moving incident. The Communications Flow Matrix outlines the flow of information in situations that are likely to affect public health, safety, or confidence. It is recommended that you add contact information for the key partners to whom you would report a cyber incident, including the CT Intelligence Center, which can be reached at CTIC@ct.gov. The Cyber Security Threat Level Matrix is a summary of the five distinct cyber threat levels, and provides general guidance regarding the communication and anticipated response activities for each of the levels. The CDRP provides more detailed response actions for each threat level. Cyber Security Response PlanCyber Response Quick Response Quick Reference
New Election Security Resources
The Center for Internet Security released A Handbook for Elections Infrastructure Security aimed at providing a tool for both election officials and their technical staff. The handbook is broken into three parts that address the risks to elections infrastructure, the architecture of elections systems, and security best practices and controls. The best practices and controls take into account associated implementation costs and are tiered according to asset class (Device, Process, Software, User), priority (high and medium), and the applicable CIS Control(s). The handbook also provides security best practice examples from state and local organizations, as well as procurement guidance and links to additional security resources. For assistance implementing these recommendations and best practices, CIS provides an Excel worksheet to guide technical staff through the process.
CYBER SECURITY WEBINARS
CIRMA Cyber Webinar Series: PHISHING> Click here to view the WEBINAR According to experts, local public entities are often specifically targeted for cyber-attacks due to the vulnerable and open nature of their operations. Cyber-attacks, data theft, ransomware, spoofing, and phishing incidents are escalating in type, number, and creativity -- with cyber criminals exploiting human nature as much as the technical vulnerabilities of hardware and software systems. The CIRMA Cyber Webinar Series will address each of the most common forms of cyber-attacks affecting Connecticut municipalities, beginning with phishing attacks.
CIRMA Cyber Webinar Series: SOCIAL ENGINEERING> click here to view the WEBINAR Social Engineering is quickly becoming one of the leading forms of manipulation by cyber criminals. Through social engineering cyber criminals take advantage of human interaction to use personal information to gain your trust. With the vulnerability of local public entities due to the open nature of their operations, it is ever so important to be educated on the type of information you put on the web that could end in you being a target for a cyber-attack. This final segment of the CIRMA Cyber Webinar Series will help you to tighten up your personal accounts and bring tips on how to recognizing false communication to help to avoid your networks being compromised.
CYBERSECURITY RESOURCES & BULLETINS
Federal Bureau of Investigation - Public Service Announcement12-15-20 - Transition to Distance Learning Creates Opportunities for Cyber Actors to Disrupt Instruction and Steal Data
U.S. Department of Homeland Security - CISA Cyber + Infrastructure
New Jersey Cybersecurity & Communications Integration Cell (NJCCIC):
Multi-State Information Sharing and Analysis Center (MS-ISAC):
Cybersecurity and Infrastructure Security Agency (CISA):
03-02-21 - Multiple Vulnerabilities in Microsoft Exchange Server Could Allow for Arbitrary Code Execution - March 2, 2021 - PATCH NOW
02-09-21 - Critical Patches Issued for Microsoft Products - February 9, 2021 - PATCH NOW
02-03-21 - Multiple Vulnerabilities in Cisco VPN Routers Could Allow for Arbitrary Code Execution, February 3, 2021 - PATCH NOW
01-12-21 - Critical Patches Issued for Microsoft Products, January 12, 2021 - PATCH NOW
01-02-21 - MS-ISAC End-of-Support Software Report List
12-08-20 - Critical Patches Issued for Microsoft Products, December 8, 2020 - PATCH NOW
11-12-20 - MS-ISAC Monthly Cybersecurity Newsletter - November 2020
11-10-20 - Critical Patches Issued for Microsoft Products, November 10, 2020 - PATCH NOW
10-13-20 - Critical Patches Issued for Microsoft Products, October 13, 2020 - PATCH NOW
To receive the Green Alerts listed below, please email Jacqueline Smith, Marketing & Creative Design Associate, at jsmith@ccm-ct.org
03-01-21 - Malware IPs and Domains Observed by MS-ISAC
02-22-21 - Malware IPs and Domains Observed by MS-ISAC
02-16-21 - Malware IPs and Domains Observed by MS-ISAC
02-09-21 - FBI Private Industry Notification (PIN: 20210909-01)
02-08-21 - Malware IPs and Domains Observed by MS-ISAC
02-01-21 - Monthly Scanning and Exploiting IPs Observed by MS-ISAC - 1/01/21 - 1/31/21
01-25-21 - Malware IPs and Domains Observed by MS-ISAC
01-21-21 - MS-ISAC Long-Form Analytic Report (LFAR): CTAs to Target Constituents & SLTTs Distributing Vaccine with Fraud
01-20-21 - Malware IPs and Domains Observed by MS-ISAC
01-11-21 - Malware IPs and Domains Observed by MS-ISAC
01-04-21 - Monthly Scanning and Exploiting IPs Observed by MS-ISAC - 12/01/20 - 12/31/20
12-21-20 - Malware IPs and Domains Observed by MS-ISAC
12-14-20 - Malware IPs and Domains Observed by MS-ISAC
12-07-20 - Malware IPs and Domains Observed by MS-ISAC
11-30-20 - Malware IPs and Domains Observed by MS-ISAC
11-23-20 - Malware IPs and Domains Observed by MS-ISAC
11-16-20 - Malware IPs and Domains Observed by MS-ISAC
11-09-20 - Malware IPs and Domains Observed by MS-ISAC
11-03-20 - Malware IPs and Domains Observed by MS-ISAC
10-26-20 - Malware IPs and Domains Observed by MS-ISAC
10-21-20 - Malware IPs and Domains Observed by MS-ISAC
10-13-20 - Malware IPs and Domains Observed by MS-ISAC
10-05-20 - Malware IPs and Domains Observed by MS-ISAC
CIRMA Cyber Security Whitepaper
Cyber Security - PDF
E-Learning Center ProgramTo help address the growing challenge of cyber threats and computer security, CIRMA's updated E-Learning Center now provides two informative high-quality trainings free to CIRMA members: 1. Computer Security Basics 2. Cybersecurity Threats to Public EntitiesHow to get startedVisit CIRMA E-Learning Center to log in and take the courses. CIRMA offers nearly 330 E-Learning training courses on a large variety of topics. Click here to download a current list of available topics. If you are not currently registered, please email your contact information to Martin Connelly at mconnelly@ccm-ct.org or call 203-946-3743.
Download The Many Faces of Cybercrimes (pdf)