From: Frank Schoenfeld
Sent: Thu Apr 02 12:32:55 2020
To: Dan Huff; Darlene Bishop; Chaunee Seifried; Gerald Fisher; Chris Long
Subject: FW: Message from the MS/EI-ISAC: FBI Releases Guidance on Defending Against VTC Hijacking and Zoom-bombing - TLP: WHITE
Importance: Normal
Attachments: image001.png; image002.png; image003.png; image004.png; image005.png; image006.jpg; FYI on a Government membership. From: Julie Anderson <janderson@molallapolice.com> Sent: Thursday, April 2, 2020 12:28 PM To: Frank Schoenfeld <fschoenfeld@molallapolice.com>; Chris Long <clong@molallapolice.com> Cc: Ronda Lee <rlee@molallapolice.com> Subject: FW: Message from the MS/EI-ISAC: FBI Releases Guidance on Defending Against VTC Hijacking and Zoom-bombing - TLP: WHITE See below from FBI re Zoom-Bombing Julie B. Anderson Molalla Police Department Records 117 N Molalla Ave / PO Box 248 Molalla OR 97038 Direct: 503-759-0229 Records:503-829-8817 FAX: 503-829-3461 **This e-mail may contain information that is privileged, confidential, or otherwise exempt from disclosure under applicable law. If you are not the addressee or it appears from the context or otherwise that you have received this e-mail in error, please advise me immediately by reply e-mail, keep the contents confidential, and immediately delete the message and any attachments from your system. ** From: CJISSecurityPolicy <cjissecuritypolicy-bounces@listsmart.osl.state.or.us> On Behalf Of Harris, Nicholas C Sent: Thursday, April 2, 2020 12:27 PM To: CJISSecurityPolicy@listsmart.osl.state.or.us Subject: [CJISSecurityPolicyForum] FW: Message from the MS/EI-ISAC: FBI Releases Guidance on Defending Against VTC Hijacking and Zoom-bombing - TLP: WHITE CJIS LASO’s – Please see the following guidance from the FBI on VTC. Regards, Nicholas C. Harris CJIS Information Security Officer Oregon State Police 3565 Trelstad Ave SE Salem, OR 97317 Phone: (503)934-2335 | Mobile: (503)302-7269 https://www.oregon.gov/osp/programs/cjis/Pages/CJIS-Security.aspx To Provide Premier Public Safety Service *****CONFIDENTIALITY NOTICE***** This e-mail may contain information that is privileged, confidential, or otherwise exempt from disclosure under applicable law. If you are not the addressee or it appears from the context or otherwise that you have received this e-mail in error, please advise me immediately by reply e-mail, keep the contents confidential, and immediately delete the message and any attachments from your system. TLP: WHITE TO: ALL MS-ISAC and EI-ISAC Members DATE: April 2, 2020 SUBJECT: FBI Releases Guidance on Defending Against VTC Hijacking and Zoom-bombing - TLP: WHITE On March 30, 2020, the FBI released an article, warning users of teleconferencing sessions being hijacked (also being referred to as “Zoom-bombing”) all over the nation. The FBI has received multiple reports of conferences being disrupted by pornographic and/or hate images and threatening language. In the wake of reports of this activity being reported to the FBI’s Internet Crime Complaints Center (IC3 -ic3.gov), they have published the following recommendations:
Additionally, the Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) released a notice today about regarding this activity and added the following recommendations as this issue is not specific to Zoom, but rather applies to all video teleconferencing (VTC) software:
References:
FBI:
US-CERT:
Zoom:
https://blog.zoom.us/wordpress/2020/04/01/a-message-to-our-users/
24x7 Security Operations Center
Multi-State Information Sharing and Analysis Center (MS-ISAC)
31 Tech Valley Drive
East Greenbush, NY 12061
SOC@cisecurity.org - 1-866-787-4722
TLP: WHITE
Disclosure is not limited. Subject to standard copyright rules, TLP: WHITE information may be distributed without restriction.
This message and attachments may contain confidential information. If it appears that this message was sent to you by mistake, any retention, dissemination, distribution or copying of this message and attachments is strictly prohibited. Please notify the sender immediately and permanently delete the message and any attachments.
. . . . .