Updates

PRESS RELEASE: THE BAHAMAS TRAINS 150+ COUNSELLORS TO LEAD THE CHARGE IN CHILD ONLINE PROTECTION WITH CIRT-BS WORKSHOP
Participants gather at the University of The Bahamas, RBC Auditorium, Franklyn Wilson Graduate Centre 19-20 February 2025 for the CIRT-BS and ITU Child Online Protection Workshop NASSAU, The Bahamas—Over 150 guidance counsellors were in attendance for the nation’s first “Train-the-Trainer” Child Online Protection (COP) Workshop, held in-person and online 19-20 February 2025, at the University of The Bahamas, RBC Auditorium, Franklyn Wilson Graduate Centre. The

PRESS RELEASE: MIN. HALKITIS: CYBER SECURITY IS “A KEY PILLAR OF ECONOMIC STABILITY” – CIRT-BS AND INDUSTRY EXPERTS UNITE AT ALIV BUSINESS CYBER SECURITY SUMMIT
Minister of Economic Affairs, Senator the Hon. Michael Halkitis delivering welcome remarks at the ALIV Business Cyber Security Summit 2025 NASSAU, The Bahamas—Cyber security experts, government officials, and industry leaders convened at the ALIV Business Cyber Security Summit on 20 February 2025, to address the growing cyber threats facing businesses and national infrastructure across the country. Under the theme “Securing the Future: Navigating Cyber Challenges
New Advisory: (Critical) Authentication Bypass Vulnerability (FortiOS, FortiProxy, and FortiSwitch Manager)
ⓘ This advisory addresses a critical vulnerability impacting FortiOS, FortiProxy, and FortiSwitchManager platforms. Attention constituent: CVE-2022-40684 is a critical authentication bypass vulnerability impacting Fortinet’s FortiOS, FortiProxy, and FortiSwitchManager platforms. This flaw enables attackers to gain unauthorised administrative access, potentially leading to system compromise, data theft, and operational disruption. A leaked list of 15,000 vulnerable IP addresses has heightened the risk of exploitation. Immediate action is
New Advisory: (Critical) FortiOS Vulnerability
ⓘ This advisory addresses a critical vulnerability impacting FortiOS systems (CVE-2024-55591). Attention constituent: A critical vulnerability (CVE-2024-55591) has been identified in Fortinet’s FortiOS systems. This vulnerability stems from an authentication bypass flaw in the FortiOS web management interface. Exploitation of this vulnerability allows remote, unauthenticated attackers to gain unauthorised administrative access and execute arbitrary actions on affected systems. CVE: CVE-2024-55591 Severity: Critical (CVSS: 9.8) Affected Platforms: FortiOS systems

PRESS RELEASE: he Bahamas Strengthens Cybersecurity with National Cybersecurity Strategy Launch and Multi-day Workshop
NASSAU, The Bahamas—The country took a significant leap forward in safeguarding its digital infrastructure with the official launch of the National Cybersecurity Strategy (NCS) for The Bahamas. The Cabinet-approved strategy outlines the plan for The Bahamas to fortify its cybersecurity framework amid the rising global threat of cyber attacks. The launch of the NCS marked the beginning of the National Cybersecurity Strategy Workshop that took

The Deal on Cyber Monday
Cyber Monday is a great time to score on big deals; however, cyber criminals use this day to try to score big with your wallet and personal identifiable information as well. As you shop online, especially throughout the holiday season, remember these few tips: Before You Shop Enrol in payment alerts. Some card issuers offer payment alerts so you are always aware of your transactional

The Bahamas’ National Cybersecurity Strategy
The National Cybersecurity Strategy (NCS) is a set of strategic principles, guidelines, objectives, and specific measures to mitigate risk associated with cybersecurity. The document is the collective vision of high-level goals and priorities that will guide the country in addressing cybersecurity gaps. STRATEGIC AREA A Cybersecurity Governance Framework CIRT-BS as National Cybersecurity Authority with responsibility for NCS execution High-level inter-agency coordination Legal Governance Framework International

Wrong QR Code
SIKE! You scanned the wrong QR Code. QR Codes, or quick response codes, are convenient tools that allow us to share electronic information quickly. However, in the same token, they are also an easy way for cybercriminals to steal your information. It is critical to be mindful of the QR codes you choose to scan to avoid becoming a victim of the next cyber attack.
New Advisory: (Critical) FortiManager Zero-Day Exploitation
ⓘ This advisory addresses a zero-day vulnerability impacting FortiManager and FortiManagerCloud. Attention constituent: A known, successfully exploited critical zero-day vulnerability (CVE-2024-47575) has been identified in Fortinet’s FortiManager and FortiManager Cloud platforms. This vulnerability stems from missing authentication in the FortiGate to FortiManager (FGFM) daemon (fgfmsd). Exploitation of this flaw allows remote, unauthenticated attackers to execute arbitrary code or commands via specially crafted requests. CVE: CVE-2024-47575 Severity: Critical (CVSS: 9.8) Affected Platforms: FortiManager and FortiManager Cloud Versions impacted: FortiManager 7.6.0

PRESS RELEASE: THE BAHAMAS TRAINS 150+ COUNSELLORS TO LEAD THE CHARGE IN CHILD ONLINE PROTECTION WITH CIRT-BS WORKSHOP
Participants gather at the University of The Bahamas, RBC Auditorium, Franklyn Wilson Graduate Centre 19-20 February 2025 for the CIRT-BS and ITU Child Online Protection

PRESS RELEASE: MIN. HALKITIS: CYBER SECURITY IS “A KEY PILLAR OF ECONOMIC STABILITY” – CIRT-BS AND INDUSTRY EXPERTS UNITE AT ALIV BUSINESS CYBER SECURITY SUMMIT
Minister of Economic Affairs, Senator the Hon. Michael Halkitis delivering welcome remarks at the ALIV Business Cyber Security Summit 2025 NASSAU, The Bahamas—Cyber security experts,
New Advisory: (Critical) Authentication Bypass Vulnerability (FortiOS, FortiProxy, and FortiSwitch Manager)
ⓘ This advisory addresses a critical vulnerability impacting FortiOS, FortiProxy, and FortiSwitchManager platforms. Attention constituent: CVE-2022-40684 is a critical authentication bypass vulnerability impacting Fortinet’s FortiOS,
New Advisory: (Critical) FortiOS Vulnerability
ⓘ This advisory addresses a critical vulnerability impacting FortiOS systems (CVE-2024-55591). Attention constituent: A critical vulnerability (CVE-2024-55591) has been identified in Fortinet’s FortiOS systems. This

PRESS RELEASE: he Bahamas Strengthens Cybersecurity with National Cybersecurity Strategy Launch and Multi-day Workshop
NASSAU, The Bahamas—The country took a significant leap forward in safeguarding its digital infrastructure with the official launch of the National Cybersecurity Strategy (NCS) for

The Deal on Cyber Monday
Cyber Monday is a great time to score on big deals; however, cyber criminals use this day to try to score big with your wallet

The Bahamas’ National Cybersecurity Strategy
The National Cybersecurity Strategy (NCS) is a set of strategic principles, guidelines, objectives, and specific measures to mitigate risk associated with cybersecurity. The document is

Wrong QR Code
SIKE! You scanned the wrong QR Code. QR Codes, or quick response codes, are convenient tools that allow us to share electronic information quickly. However,
New Advisory: (Critical) FortiManager Zero-Day Exploitation
ⓘ This advisory addresses a zero-day vulnerability impacting FortiManager and FortiManagerCloud. Attention constituent: A known, successfully exploited critical zero-day vulnerability (CVE-2024-47575) has been identified in

Cybersecurity Awareness Month: The Truth About Software Updates
Those pesky updates. They’re annoying but so critical to do! While, at times, they may seem inconvenient, these updates ensure that your devices and apps

Cybersecurity Awareness Month: Now That’s a Red Flag: Watch Out for Phish!
Did you know that one of the most common cyber attacks reported at the National CIRT originate from a phishing attempt that an unlucky victim

Join Us for the “Secure Our World” Cybersecurity Awareness Month Webinar + Q&A
Register for the CIRT-BS Cybersecurity Awareness Webinar to secure your spot. Join Us for the “Secure Our World” Cybersecurity Awareness Month Webinar + Q&A Cybersecurity is

PRESS RELEASE: Bahamas’ National CIRT Director Sametria McKinney Honoured for Advancing Global Cyber Security
FOR IMMEDIATE RELEASE 17 October 2024 Bahamas’ National CIRT Director Sametria McKinney Honoured for Advancing Global Cyber Security NASSAU, The Bahamas—The National Computer Incident Response

Cybersecurity Awareness Month: Enable MFA; Disable the Hackers
Last week, we kicked off Cybersecurity Awareness Month, detailing strong passwords as your first line of defence against a cyber attack; this week, we cover

Cybersecurity Awareness Month: Use a Strong Password + a Password Manager
Cybersecurity professionals always say it, but it’s true: passwords are your first line of defence against data breaches. Because of this, it is crucial to

PRESS RELEASE: CIRT-BS CELEBRATES CYBERSECURITY AWARENESS MONTH WITH “SECURE OUR WORLD” CAMPAIGN
NASSAU, The Bahamas—The National Computer Incident Response Team of The Bahamas (CIRT-BS) is proud to announce Cybersecurity Awareness Month 2024 with a focus on the

Help Secure Our World this Cybersecurity Awareness Month
Welcome to Cybersecurity Awareness Month, an international initiative that educates everyone about online safety and empowers individuals and organisations to protect their data from cybercrime.
WhatsApp Account Hijacking Scams Advisory
ⓘ This advisory addresses an increase in compromised WhatsApp accounts. Attention constituent: CIRT-BS is advising members of the public to stay alert as a sophisticated scam
CrowdStrike Update (Phishing Attempts)
ⓘ This advisory addresses new phishing attempts related to CrowdStrike’s Falcon sensor crash. Attention Constituents: Since CrowdStrike deployed its international Falcon sensor fix last Friday,
New Advisory: CrowdStrike Update Crashes Windows Systems Worldwide
ⓘ This advisory addresses a recent update to CrowdStrike’s Falcon sensor which has led to widespread Blue Screen of Death errors. Attention Microsoft service users: