Bolstering Cybersecurity Resilience in the Public Sector
ID: cb52c074-d175-56c2-a5a3-248e02cdc920
STIX ID: report--cb52c074-d175-56c2-a5a3-248e02cdc920
Feed Name: LevelBlue SpiderLabs Blog
This Trustwave SpiderLabs briefing summarizes public-sector-focused cyber threats observed through H1 2025, highlighting a rise in ransomware/extortion (including RaaS and attacks on third-party providers), supply-chain breaches (MOVEit, GoAnywhere), rapid exploitation of zero-day SharePoint and Citrix vulnerabilities by state-linked actors, and numerous phishing/BEC campaigns (callback phishing, DocuSign abuse, SVG redirectors, credential-harvesting pages). The report provides concrete incident examples (Balada Injector website compromise, GovDelivery-based phishing, TxTag spoofing, fake SSA/ScreenConnect distribution), discusses attacker motivations and value of government data, and recommends multilayered defenses and user training.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
