• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar
  • Skip to footer
  • NEWS:
  • SatNews
  • SatMagazine
  • MilSatMagazine
  • SmallSat News
  • |     EVENTS:
  • SmallSat Symposium
  • Satellite Innovation
  • MilSat Symposium
  • SmallSat Europe

SatNews

Satellite Industry Intelligence Since 1983

Subscribe
  • LATEST
  • Missions & Constellations
    • Exploration & Science Missions
    • In-Orbit Servicing & Orbital Operations
    • LEO Constellations
    • Mission Autonomy & Onboard Systems
    • Mission Deployments & Manifests
    • Navigation & PNT
    • SmallSat
    • Spacecraft & Payload Technology
    View All in Missions & Constellations →
    SmallSat Europe Speaker Focus: Chiara Manfletti, NeuraspaceSmallSat Europe Speaker Focus: Chiara Manfletti, Neuraspace
    SmallSat Europe Speaker Focus: Daniel Bock, Morpheus SpaceSmallSat Europe Speaker Focus: Daniel Bock, Morpheus Space
    Firefly Aerospace Prepares for Blue Ghost Mission 2 Following Historic Lunar SuccessFirefly Aerospace Prepares for Blue Ghost Mission 2 Following Historic Lunar Success
    New Boeing Satellite Spacecraft Delivered.New Boeing Satellite Spacecraft Delivered.
  • Business
    • Contracts & Commercial Deals
    • Earnings & Financial Reporting
    • Events & Conferences
    • Funding & Venture Capital
    • Market Forecasts
    • Mergers & Acquisitions
    • Personnel Moves & Appointments
    View All in Business & Finance →
    Lockheed Martin Outlines Strategic Space Technology Roadmap for 2026Lockheed Martin Outlines Strategic Space Technology Roadmap for 2026
    Industry Sentiment Shifts as Quilty Space Reveals Top 5 Takeaways from Satellite 2026Industry Sentiment Shifts as Quilty Space Reveals Top 5 Takeaways from Satellite 2026
    e-GEOS and VENG Strengthen Global Partnership for SAOCOM Satellite Data Distributione-GEOS and VENG Strengthen Global Partnership for SAOCOM Satellite Data Distribution
    What the SpaceX IPO Changes for Every Satellite OperatorWhat the SpaceX IPO Changes for Every Satellite Operator
  • Defense
    • Counterspace & ASAT
    • Defense Budgets & Procurement
    • ISR & Reconnaissance
    • MILSATCOM
    • Missile Warning & Defense
    • National Security Programs
    • Space Domain Awareness
    View All in Military & Defense →
    The End of the VSAT Parts BinThe End of the VSAT Parts Bin
    Procurement Lag vs. Conflict Speed: Can Defense Buying Cycles Keep Up with Space Innovation?Procurement Lag vs. Conflict Speed: Can Defense Buying Cycles Keep Up with Space Innovation?
    ParaZero Technologies Expands Israeli Defense Contract with New Order for Anti-Drone SystemsParaZero Technologies Expands Israeli Defense Contract with New Order for Anti-Drone Systems
    Russia Replaces Starlink With European-Built SatellitesRussia Replaces Starlink With European-Built Satellites
  • Gov
    • Export Controls & Compliance
    • International Space Agreements
    • National Space Policy
    • Space Law & Treaties
    • Space Sustainability & Debris Policy
    • Space Traffic Management / Debris Removal
    View All in Government & Regulation →
    FCC Modernizes Satellite Spectrum Rules to Unleash Next-Generation BroadbandFCC Modernizes Satellite Spectrum Rules to Unleash Next-Generation Broadband
    SmallSat Europe Speaker Focus: Dr. Ane Aanesland, ThrustMeSmallSat Europe Speaker Focus: Dr. Ane Aanesland, ThrustMe
    Isaacman’s Budget Math: How NASA Plans to Reach the Moon With a Quarter Less MoneyIsaacman’s Budget Math: How NASA Plans to Reach the Moon With a Quarter Less Money
    FCC Seeks Comment on Expanding Spectrum Access for “Weird Space Stuff”FCC Seeks Comment on Expanding Spectrum Access for “Weird Space Stuff”
  • Launch
    • Launch Providers
    • Launch Schedule & Calendars
    • Launch Sites & Infrastructure
    • Rocket Technology & Vehicles
    View All in Launch →
    €30 million Financing for PLD Space’s Small Satellite Launcher€30 million Financing for PLD Space’s Small Satellite Launcher
    Satellite Deployers to be Used on JAXA Small Satellite Mission by ExolaunchSatellite Deployers to be Used on JAXA Small Satellite Mission by Exolaunch
    CAS Space Successfully Launches Kinetica-2, Aiming for Global Cost LeadershipCAS Space Successfully Launches Kinetica-2, Aiming for Global Cost Leadership
    Liftoff: NASA Successfully Launches Artemis II to the MoonLiftoff: NASA Successfully Launches Artemis II to the Moon
  • Software
    • Autonomous Ground Operations
    • Data Processing & AI/ML
    • Digital Twins & Modeling
    • Ground Segment & Teleports
    • Mission Planning & Simulation
    • Space Systems Software Engineering
    • Spectrum & Licensing
    View All in Software Automation & Ground Systems →
    Keysight and Sateliot Win ESA and GSMA Foundry Challenge for 6G InnovationKeysight and Sateliot Win ESA and GSMA Foundry Challenge for 6G Innovation
    Automation and Agility: How SSC Space Go is Designed for the New Age of GroundAutomation and Agility: How SSC Space Go is Designed for the New Age of Ground
    Intellian Unveils Future Military and Aerospace Antenna Technologies at Satellite 2026Intellian Unveils Future Military and Aerospace Antenna Technologies at Satellite 2026
    The Downlink Deficit: The Pentagon’s Optical Mesh Network and the Terrestrial BottleneckThe Downlink Deficit: The Pentagon’s Optical Mesh Network and the Terrestrial Bottleneck
  • Services & Apps
    • Climate & Environmental Monitoring
    • Disaster Response & Security Mapping
    • Earth Observation & Imaging
    • Maritime & Aviation Satcom
    • Satellite Communications
    View All in Services & Applications →
    Kraken Robotics Integrates KATFISH Sonar on SEFINE RD-22 USV Following Multi-Naval DemonstrationsKraken Robotics Integrates KATFISH Sonar on SEFINE RD-22 USV Following Multi-Naval Demonstrations
    Astroscale Plans World-First Multi-Orbit Satellite Inspection MissionAstroscale Plans World-First Multi-Orbit Satellite Inspection Mission
    Cinemo Reimagines the Vehicle as a Software-Defined Entertainment HubCinemo Reimagines the Vehicle as a Software-Defined Entertainment Hub
    IEC Telecom Wins CSR Initiative of the Year at the Oil & Gas Middle East Awards 2026IEC Telecom Wins CSR Initiative of the Year at the Oil & Gas Middle East Awards 2026
  • SatNews Events
  • Magazines
  • Calendar

CISA + FBI: Strengthening The Cybersecurity Of SATCOM Network Providers + Customers

March 20, 2022

The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) are aware of possible threats to U.S. and international satellite communication (SATCOM) networks. Successful intrusions into SATCOM networks could create risk in SATCOM network providers’ customer environments.

Given the current geopolitical situation, CISA’s Shields Up initiative requests that all organizations significantly lower their threshold for reporting and sharing indications of malicious cyber activity. To that end, CISA and FBI will update this joint Cybersecurity Advisory (CSA) as new information becomes available so that SATCOM providers and their customers can take additional mitigation steps pertinent to their environments.

CISA and FBI strongly encourages critical infrastructure organizations and other organizations that are either SATCOM network providers or customers to review and implement the mitigations outlined in this CSA to strengthen SATCOM network cybersecurity.

Mitigations

CISA and FBI strongly encourages critical infrastructure organizations and other organizations that are either SATCOM network providers or customers to review and implement the following mitigations:

Mitigations for SATCOM Network Providers

  • Put in place additional monitoring at ingress and egress points to SATCOM equipment to look for anomalous traffic, such as
  • The presence of insecure remote access tools—such as Teletype Network Protocol (Telnet), File Transfer Protocol (FTP), Secure Shell Protocol (SSH), Secure Copy Protocol (SCP), and Virtual Network Computing (VNC)—facilitating communications to and from SATCOM terminals.
  • Network traffic from SATCOM networks to other unexpected network segments.
  • Unauthorized use of local or backup accounts within SATCOM networks.
  • Unexpected SATCOM terminal to SATCOM terminal traffic.
  • Network traffic from the internet to closed group SATCOM networks.
  • Brute force login attempts over SATCOM network segments.

See the Office of the Director of National Intelligence (ODNI) Annual Threat Assessment of the U.S. Intelligence Community, February 2022 for specific state-sponsored cyber threat activity relating to SATCOM networks.

Mitigations for SATCOM Network Providers and Customers

  • Use secure methods for authentication, including multi-factor authentication where possible, for all accounts used to access, manage, and/or administer SATCOM networks.
  • Use and enforce strong, complex passwords: Review password policies to ensure they align with the latest NIST guidelines.
  • Do not use default credentials or weak passwords.
  • Audit accounts and credentials: remove terminated or unnecessary accounts; change expired credentials.

Enforce principle of least privilege through authorization policies. Minimize unnecessary privileges for identities. Consider privileges assigned to individual personnel accounts, as well as those assigned to non-personnel accounts (e.g., those assigned to software or systems). Account privileges should be clearly defined, narrowly scoped, and regularly audited against usage patterns.

Review trust relationships. Review existing trust relationships with IT service providers. Threat actors are known to exploit trust relationships between providers and their customers to gain access to customer networks and data.

  • Remove unnecessary trust relationships.
  • Review contractual relationships with all service providers. Ensure contracts include appropriate provisions addressing security, such as those listed below, and that these provisions are appropriately leveraged:
  • Security controls the customer deems appropriate.
  • Provider should have in place appropriate monitoring and logging of provider-managed customer systems.
  • Customer should have in place appropriate monitoring of the service provider’s presence, activities, and connections to the customer network.
  • Notification of confirmed or suspected security events and incidents occurring on the provider’s infrastructure and administrative networks.

Implement independent encryption across all communications links leased from, or provided by, your SATCOM provider. See National Security Agency (NSA) Cybersecurity Advisory: Protecting VSAT Communications for guidance.

Strengthen the security of operating systems, software, and firmware.

  • Ensure robust vulnerability management and patching practices are in place and, after testing, immediately patch known exploited vulnerabilities included in CISA’s living catalog of known exploited vulnerabilities. These vulnerabilities carry significant risk to federal agencies as well as public and private sectors entities.
  • Implement rigorous configuration management programs. Ensure the programs can track and mitigate emerging threats. Regularly audit system configurations for misconfigurations and security weaknesses.

Monitor network logs for suspicious activity and unauthorized or unusual login attempts.

  • Integrate SATCOM traffic into existing network security monitoring tools.
  • Review logs of systems behind SATCOM terminals for suspicious activity.
  • Ingest system and network generated logs into your enterprise security information and event management (SIEM) tool.
  • Implement endpoint detection and response (EDR) tools where possible on devices behind SATCOM terminals, and ingest into the SIEM.
  • Expand and enhance monitoring of network segments and assets that use SATCOM.
  • Expand monitoring to include ingress and egress traffic transiting SATCOM links and monitor for suspicious or anomalous network activity.
  • Baseline SATCOM network traffic to determine what is normal and investigate deviations, such as large spikes in traffic.

Create, maintain and exercise a cyber incident response plan, resilience plan and continuity of operations plan so that critical functions and operations can be kept running if technology systems—including SATCOM networks—are disrupted or need to be taken offline.

Contact Information

All organizations should report incidents and anomalous activity to CISA 24/7 Operations Center at [email protected] or (888) 282-0870 and/or to the FBI via your local FBI field office or the FBI’s 24/7 CyWatch at (855) 292-3937 or [email protected]

Resources

National Security Agency (NSA) Cybersecurity Advisory: Protecting VSAT Communications

NSA Cybersecurity Technical Report: Network Infrastructure Security Guidance

Office of the Director of National Intelligence (ODNI): Annual Threat Assessment of the U.S. Intelligence Community, February 2022

CISA Tip: Choosing and Protecting Passwords

CISA Capacity Enhancement Guide: Implementing Strong Authentication

Revisions March 17, 2022: Initial Version

Filed Under: Data Processing & AI/ML, Government & Regulation Tagged With: Featured

Primary Sidebar

Coverage

  • Missions & Constellations
  • Business & Finance
  • Military & Defense
  • Launch
  • Software Automation & Ground Systems
  • Government & Regulation
  • Services & Applications

Most Read Stories

  • L3Harris Unveils XL-300P: The First P25 Handheld with 5G and Satellite Direct-to-Device Connectivity
  • Rheinmetall Walked Away. Germany Should Take the Hint.
  • Rocket Lab Emerging as Potential Bus Provider for 2,800-Satellite Equatys Constellation
  • SpaceX Loses Contact With Starlink Satellite
  • FAA Rescinds Proposed Orbital Debris Rule Amid Industry Pressure and Regulatory Reassessment

Secondary Sidebar

Footer

 

Satnews is a leading provider of satellite news, events, publications, research and other satellite industry information in both commercial and military enterprises worldwide.

Stories By Category

  • Business & Finance
  • Government & Regulation
  • Launch
  • Military & Defense
  • Missions & Constellations
  • Services & Applications
  • Software Automation & Ground Systems
  • Spectrum & Licensing
  • Startups & NewSpace Business

About Us

  • Leadership & Editorial Team
  • SatNews History
  • Free Satnews Subscription
  • SatNews Events
  • Magazines

Navigation

  • Latest Stories
  • Magazines
  • Events
  • Contact
  • Cookie & Privacy Policy for Satnews

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
x
Sign up Now (For Free)
Access daily or weekly satellite news updates covering all aspects of the commercial and military satellite industry.
Invalid email address
Notify Me Regarding ( At least one ):
We value your privacy and will not sell or share your email or other information with any other company. You may also unsubscribe at anytime.

Click Here to see our full privacy policy.
Thanks for subscribing!