CERT VU advisories & alerts disclose current reported cyber security vulnerabilities and threats identified in Vanuatu. The advisories deliver provide a summary of the threat analysed. Descriptions of the threat reported and mitigation procedures are provided as part of the advisory on how to mitigate the threats to minimise their impacts. Finally, a Traffic Light Protocol (TLP: Colour – See guides page for more information) indicator to show the level or information security and sharing rights.

Advisory 11

Priority Level: Medium

TLP Rating: Clear

Social Media Online Scams

CERT Vanuatu and the Office of the Chief Information Officer (OGCIO) provides the following advisory.

CERT Vanuatu (CERTVU) office has received reports regarding the above mentioned attacks on its constituents through social media (Facebook).

Advisory 10

TLP Rating: Clear

Windows 7 support will end on January 14, 2020

CERT Vanuatu and the Office of the Chief Information Officer (OGCIO) provides the following advisory.

CERT Vanuatu (CERT VU) office has received reports regarding the above mentioned threat and security alert due to the Windows 7 end-of-life support which will end on the 14th of January 2020. Lack of technical support and application of Microsoft security updates means that all Windows 7 computer systems are vulnerable to cyber-attacks or threats.

Advisory 9

TLP Rating: Clear

Emotet Malware Campaign

CERT Vanuatu (CERTVU) and the Office of the Chief Information Officer (OGCIO) provides the following advisory. We acknowledge the Australian Cyber Security Centre (ACSC) who has alerted us of this threat.

Advisory 8

TLP Rating: Clear

Phone Call Attack and Scams

CERT Vanuatu and the Office of the Chief Information Officer (OGCIO) provides the following advisory.

CERT Vanuatu (CERT VU) office has received reports regarding the above mentioned attacks on its constituents, and specifically those involved in the Recognised Seasonal Employer (RSE) scheme with Australia and New Zealand.

Advisory 7

TLP Rating: Clear

Microsoft Operating Systems BlueKeep Vulnerability

CERT Vanuatu and the Office of the Chief Information Officer (OGCIO) provides the following advisory.

This is to advise all system and network administrators, managers and business houses in Vanuatu who are using Microsoft operating systems to actively monitor and ensure the latest Microsoft security patches of BlueKeep (CVE-2019-0708) vulnerability are installed.

Advisory 6

TLP Rating: Clear

Website Defacement

CERT Vanuatu and the Office of the Chief Information Officer (OGCIO) provides the following advisory.
This is to advise all Web host users, managers and business houses in Vanuatu that there have been cases of website defacement identified by CERT Vanuatu. The website defacer calls themselves as “Phenix-TN & Mr. Anderson” as shown below in Figure 1: