*** H-ISAC Alert ***

Caution regarding spoofing activity surrounding Not Petya ransomware event
This information is marked TLP White; Subject to standard copyright laws. TLP: White information may be distributed without restriction.
*Any reproduction or reposting of this content requires proper credit/attribution to H-ISAC.
It is being reported that bad actors are attempting to gain credential access through phishing attempts claiming to be Government Agency entities helping to resolve vulnerabilities related to the ongoing campaign.
Organizations are reminded to verify the links and security certificates of any such email. Note that examples include [.com] vs [.gov] extensions on supposed agency websites. Such phishing is not limited to using government agency spoofing.
- Related Resources & News
- The Human Risk Layer of AI
- Cybersecurity in the Lab
- Operation Vital Signs: First-of-its-kind exercise stress tests health sector cyber resilience
- What’s in America’s Code?
- Introducing AI Agents to Your Identity Fabric
- Cyberattacks on Healthcare Sector Jumped 14% in First Half of 2026
- What do cybersecurity leaders want in staff? These 3 skills beat certifications and experience
- Continuous attack surface monitoring and sophisticated social engineering assessment
- Hospital Networks are Becoming Targets in Cyberwarfare, and They’re Unequipped to Deal With It
- Human Risk Management Purchasing Toolkit