Currently, we are unaware of any vendor supplied patch or updates available for this issue. Immediate patching is recommended once available. Alternatively, we recommend isolating or replacing the TBK DVRs and Monitor for unusual traffic patterns or binary drops from DVRs. Organizations with internet-facing DVR systems are strongly urged to take immediate mitigation steps, including: -Blocking known indicators of compromise (IoCs) linked to these botnets. -Applying firmware patches or security updates from the vendor, if and when available. -Restricting remote access to DVR interfaces and placing them behind firewalls or VPNs.
Countermeasures across the security fabric for protecting assets, data and network from cybersecurity events:
Detects known malware related to the Outbreak
Detects known malware related to the Outbreak
Detects and blocks attack attempts leveraging the vulnerability
Find and correlate important information to identify an outbreak, the following updates are available to raise alert and generate reports:
Develop containment techniques to mitigate impacts of security events:
Services that can automaticlly respond to this outbreak.
Experts to assist you with analysis, containment and response activities.
Improve security posture and processes by implementing security awareness and training, in preparation for (and recovery from) security incidents:
Train your network and security professionals and optimize your incident response to stay on top of the cyberattacks.
Raise security awareness to your employees that are continuously being targeted by phishing, drive-by download and other forms of cyberattacks.
Identify processes and assets that need protection:
Check Security Fabric devices to build actionable configuration recommendations and key indicators.