Cargo Systems Messaging Service
CSMS # 60261003 - CBP Provides Guidance on Reporting Indicators of Compromise Related to Cyberattacks
In March 2024, U.S. Customs and Border Protection (CBP) released guidance on best practices for members of industry to report relevant information to the agency in the event of a cyber-attack. The guidance encourages industry to report indicators of compromise to CBP so that the agency can limit the impact of a cyber-attack and more quickly reconnect CBP systems access for impacted parties.
The resource highlights the importance of reporting indicators of compromise, or IOCs, to CBP, identifying several common IOCs and how to report them. IOCs are forensic evidence of a network breach – such as unusual network traffic or anomalies in user activity − that can provide insight into attack methods and trends which, in turn, inform prevention, mitigation, and response measures for future incidents. Recognizing and reporting IOCs also helps protect CBP and industry systems from malware.
You can access this new guidance document, as well as other documents and guidance on cyber incidents, at CBP’s Trade Cybersecurity website. Questions about cyber incident reporting can be directed to cbpsoc@cbp.dhs.gov.
|