Tag: cisa
-
FBI: BlackSuit ransomware behind over $500 million in ransom demands
CISA and the FBI confirmed today that the Royal ransomware rebranded to BlackSuit and has demanded over $500 million from victims since it emerged mor… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fbi-blacksuit-ransomware-behind-over-500-million-in-ransom-demands/
-
Exploitable Storage and Backup Vulnerabilities: A Growing Threat to Enterprise Security
On July 29, a critical vulnerability in Acronis Cyber Infrastructure (ACI), tracked as CVE-2023-45249, was highlighted by CISA as being actively explo… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/08/exploitable-storage-and-backup-vulnerabilities-a-growing-threat-to-enterprise-security/
-
CISA names Lisa Einstein as its first chief AI officer
The cyber agency’s senior adviser for AI played a central role in efforts including CISA’s AI roadmap and a pilot for AI-enabled vulnerability detecti… First seen on fedscoop.com Jump to article: fedscoop.com/cisa-chief-ai-officer-lisa-einstein/
-
FBI: BlackSuit ransomware made over $500 million in ransom demands
CISA and the FBI confirmed today that the Royal ransomware rebranded to BlackSuit and has demanded over $500 million from victims since it emerged mor… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fbi-blacksuit-ransomware-made-over-500-million-in-ransom-demands/
-
CISA Warns of Phishing Attempts During CrowdStrike, Microsoft Outage Chaos
In a Friday statement, CISA said that it has observed threat actors taking advantage of the massive global outages, linked to a faulty CrowdStrike upd… First seen on duo.com Jump to article: duo.com/decipher/cisa-warns-of-phishing-attempts-during-crowdstrike-microsoft-outage-chaos
-
CISA Names Lisa Einstein as First Chief AI Officer
Einstein has led CISA’s AI efforts since 2023 as CISA’s Senior Advisor for AI. The post CISA Names Lisa Einstein as First Chief AI Officer appeared fi… First seen on securityweek.com Jump to article: www.securityweek.com/cisa-names-lisa-einstein-as-first-chief-ai-officer/
-
CISA Warns of Avtech Camera Vulnerability Exploited in Wild
An Avtech camera vulnerability that likely remains unfixed has been exploited in the wild, according to CISA. The post CISA Warns of Avtech Camera Vul… First seen on securityweek.com Jump to article: www.securityweek.com/cisa-warns-of-avtech-camera-vulnerability-exploited-in-wild/
-
CISA Warns of Exploitable Vulnerabilities in Popular BIND 9 DNS Software
The Internet Systems Consortium (ISC) has released patches to address multiple security vulnerabilities in the Berkeley Internet Name Domain (BIND) 9 … First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/cisa-warns-of-exploitable.html
-
CISA broke into a US federal agency, and no one noticed for a full 5 months
Tags: cisaFirst seen on theregister.com Jump to article: www.theregister.com/2024/07/12/cisa_broke_into_fed_agency/
-
Patch Critical ServiceNow Bugs Immediately
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/cisa-patch-critical-servicenow-bugs-immediately
-
Immediate Patching of Critical ServiceNow Bugs Needed
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/cisa-immediate-patching-of-critical-servicenow-bugs-needed
-
CISA adds VMware ESXi bug to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a VMware ESXi bug to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecu… First seen on securityaffairs.com Jump to article: securityaffairs.com/166362/security/cisa-vmware-esxi-bug-known-exploited-vulnerabilities-catalog.html
-
CISA and FBI: DDoS attacks won’t impact US election integrity
‹CISA and the FBI said today that Distributed Denial of Service (DDoS) attacks targeting election infrastructure will, at most, hinder public access t… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-and-fbi-ddos-attacks-wont-impact-us-election-integrity/
-
CISA Adds Twilio Authy and IE Flaws to Exploited Vulnerabilities List
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two security flaws to its Known Exploited Vulnerabilities (KEV) catalog, ba… First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/cisa-adds-twilio-authy-and-ie-flaws-to.html
-
US CISA Appoints 1st Chief AI Officer to Boost Cyber Defense
Cyber Defense Agency Names Former CISA Senior Adviser Lisa Einstein. The U.S. Cybersecurity and Infrastructure Security Agency announced Thursday the … First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/us-cisa-appoints-1st-chief-ai-officer-to-boost-cyber-defense-a-25904
-
CISA, FBI warn of potential DDoS attacks on 2024 elections
First seen on therecord.media Jump to article: therecord.media/ddos-attacks-2024-election-fbi-cisa-warning
-
White House, CISA name key cybersecurity officials as national resilience strategy rollout continues
First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/white-house-cisa-cybersecurity-officials/722539/
-
CISA warns of VMware ESXi bug exploited in ransomware attacks
CISA has ordered U.S. Federal Civilian Executive Branch (FCEB) agencies to secure their servers against a VMware ESXi authentication bypass vulnerabil… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-warns-of-vmware-esxi-bug-exploited-in-ransomware-attacks/
-
AI Tools Give Feds ‘Negligible’ Security Improvements
Federal AI Security Tools Require Substantial Training, Offer Minimal Improvements. The U.S. Cybersecurity and Infrastructure Security Agency found in… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/cisa-ai-tools-give-feds-negligible-security-improvements-a-25895
-
Google Cloud CISO Phil Venables: ‘I’m short-term pessimistic, long-term optimistic’
SecurityWeek fireside chat: Google Cloud CISO on CISA’s secure-by-design initiatives, government regulations, holding vendors accountable, and transfo… First seen on securityweek.com Jump to article: www.securityweek.com/google-cloud-ciso-phil-venables-im-short-term-pessimistic-long-term-optimistic/
-
US cyber agency CISA says malicious hackers are ‘taking advantage’ of CrowdStrike outage
First seen on techcrunch.com Jump to article: techcrunch.com/2024/07/19/us-cyber-agency-cisa-says-malicious-hackers-are-taking-advantage-of-crowdstrike-outage/
-
CISA discloses breach of Chemical Security Assessment Tool
CISA first disclosed the breach in March, which stemmed from Ivanti zero-day vulnerabilities that were first exploited in January by a Chinese nation-… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366589568/CISA-discloses-breach-of-Chemical-Security-Assessment-Tool
-
Response to CISA Advisory (AA24-207A): North Korea Cyber Group Conducts Global Espionage Campaign to Advance Regime’s Military and Nuclear Programs
AttackIQ has released a new assessment template in response to the CISA Advisory (AA24-207A) published on July 25, 2024, that highlights cyber espiona… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/07/response-to-cisa-advisory-aa24-207a-north-korea-cyber-group-conducts-global-espionage-campaign-to-advance-regimes-military-and-nuclear-programs/
-
U.S. CISA adds Microsoft Internet Explorer and Twilio Authy bugs to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft Internet Explorer and Twilio Authy bugs to its Known Exploited Vulnerabili… First seen on securityaffairs.com Jump to article: securityaffairs.com/166126/hacking/u-s-cisa-adds-microsoft-internet-explorer-and-twilio-authy-bugs-known-exploited-vulnerabilities-catalog.html
-
Updated CISA Exploited Vulnerabilities Catalog Includes Internet Explorer, Twilio Authy Bugs
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/updated-cisa-exploited-vulnerabilities-catalog-includes-internet-explorer-twilio-authy-bugs
-
CISA Publishes Resiliency Playbook for Critical Infrastructure
First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/cisa-publishes-resiliency-playbook-for-critical-infrastructure
-
Organizations Warned of Exploited Twilio Authy Vulnerability
CISA warns of the in-the-wild exploitation of CVE-2024-39891, a Twilio Authy bug leading to the disclosure of phone number data. The post Organization… First seen on securityweek.com Jump to article: www.securityweek.com/organizations-warned-of-exploited-twilio-authy-vulnerability/
-
CISA director: US is ‘not afraid’ to shout about Big Tech’s security failings
Tags: cisaFirst seen on theregister.com Jump to article: www.theregister.com/2024/07/01/cisa_big_tech_security/
-
CISA Warns of Actively Exploited RCE Flaw in GeoServer GeoTools Software
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical security flaw impacting OSGeo GeoServer GeoTools to its Kn… First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/cisa-warns-of-actively-exploited-rce.html
-
CISA Leadership Change: Bridget Bean Takes Over as Executive Director
Cybersecurity and Infrastructure Security Agency (CISA) Director Jen Easterly acknowledged significant leadership changes within the agency. This CISA… First seen on thecyberexpress.com Jump to article: thecyberexpress.com/cisa-leadership-change/

