Tag: cisa
-
Feds release urgent guidance for U.S. water sector
The water and wastewater sector (WWS) faces cybersecurity challenges that leave it wide open to attacks. In response, the CISA, EPA and FBI recently r… First seen on securityintelligence.com Jump to article: securityintelligence.com/news/urgent-guidelines-us-water-sector/
-
SafeBreach Coverage for AA24-109A (Akira Ransomware)
FBI, CISA, EC3, and NCSC-NL issued an urgent advisory highlighting the use of new TTPs and IOCs by the Akira ransomware group. The post A, EC3, and NC… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/safebreach-coverage-for-aa24-109a-akira-ransomware/
-
FBI: Akira ransomware raked in $42 million from 250+ victims
According to a joint advisory from the FBI, CISA, Europol’s European Cybercrime Centre (EC3), and the Netherlands’ National Cyber Security Centre (NCS… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fbi-akira-ransomware-raked-in-42-million-from-250-plus-victims/
-
US-Behörde CISA verdonnert Admins zur ‘Entschärfung der Cyberrisiken’ der Microsoft Cloud
Die US-Cybersicherheitsbehörde CISA hat die Administratoren von US-Behörden zum 2. April 2024 mittels einer Direktive ultimativ aufgefordert, die Cybe… First seen on borncity.com Jump to article: www.borncity.com/blog/2024/04/12/us-behrde-cisa-verdonnert-admins-zur-entschrfung-der-cyberrisiken-der-microsoft-cloud/
-
CISA Tells Feds to Mitigate Microsoft Midnight Blizzard
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/cisa-tells-feds-to-mitigate-midnight-blizzard-spying
-
CISA urges defensive actions against Volt Typhoon threats
The U.S. cybersecurity agency advised critical infrastructure leaders to adopt several best practices and defensive measures to protect against Chines… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366574758/CISA-urges-defensive-actions-against-Volt-Typhoon-threats
-
CISA’s Malware Analysis Platform Could Foster Better Threat Intel
First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/cisa-s-new-malware-analysis-platform-could-enable-better-threat-intelligence
-
CISA Issues Emergency Directive After Midnight Blizzard Microsoft Hits
Though Federal Civilian Executive Branch (FCEB) agencies are the primary targets, CISA encourages all organizations to up their security, given the hi… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/cisa-emergency-directive-after-midnight-blizzard-microsoft-hits
-
Akira ransomware extorted $42M from 250-plus victims
The Akira ransomware gang, which utilizes sophisticated hybrid encryption techniques and multiple ransomware variants, targeted vulnerable Cisco VPNs … First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366581522/CISA-Akira-ransomware-extorted-42M-from-250-plus-victims
-
Sisense Password Breach Triggers ‘Ominous’ CISA Warning
With stores of mega-corporate business intelligence, a Sisense compromise could potentially mushroom into supply chain cyberattack disaster, experts f… First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/sisense-breach-triggers-cisa-password-reset-advisory
-
IT-Sicherheitsbehörde CISA warnt erneut wegen Ivanti-Sicherheitslücken
Die US-Cybersicherheitsbehörde fordert nachdrücklich dazu auf, Patches zu installieren, um eine kritische Sicherheitslücke in Ivanti Standalone Sentry… First seen on crn.de Jump to article: www.crn.de/news/4189167/sicherheitsbehorde-cisa-warnt-erneut-wegen-ivanti-sicherheitslucken
-
SMBs Must Report Ransom Payments in 24 Hours: CISA
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/cisa-smbs-must-report-cybersecurity-incidents
-
CISA software supply chain security form omits SBOMs
Federal suppliers now have a self-attestation deadline amid ongoing efforts to secure software supply chains. But SBOMs’ spotlight is fading and big r… First seen on techtarget.com Jump to article: www.techtarget.com/searchitoperations/news/366573974/CISA-software-supply-chain-security-form-omits-SBOMs
-
CISA adds Palo Alto Networks PAN-OS Command Injection flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Palo Alto Networks PAN-OS Command Injection flaw to its Known Exploited Vulnerabilit… First seen on securityaffairs.com Jump to article: securityaffairs.com/161855/hacking/palo-alto-networks-pan-os-bug-known-exploited-vulnerabilities-catalog.html
-
New Tool Aims to Simplify and Streamline SBOM Adoption
OpenSSF Partners With DHS and CISA to Launch Global Software Supply Chain Project. OpenSSF launched a new tool Tuesday in partnership with the Departm… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/new-tool-aims-to-simplify-streamline-sbom-adoption-a-24872
-
NSA, CISA FBI Released Best Practices For AI Security Deployment 2024
In a groundbreaking move, the U.S. Department of Defense has released a comprehensive guide for organizations deploying and operating AI systems desig… First seen on gbhackers.com Jump to article: gbhackers.com/nsa-cisa-fbi-released-best-practices-for-ai-security-deployment/
-
CISA Urges Immediate Credential Reset After Sisense Breach
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/cisa-urges-reset-sisense-breach/
-
Sisence Data Breach, CISA Urges To Reset Login Credentials
In response to a recent data breach at Sisense, a provider of data analytics services, the U.S. Cybersecurity and Infrastructure Security Agency (CISA… First seen on gbhackers.com Jump to article: gbhackers.com/sisence-data-breach-cisa-reset-credentials/
-
CISA warns about Sisense data breach
Business intelligence / data analytics software vendor Sisense has apparently suffered a data breach that spurred the company and the US Cybersecurity… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/04/11/sisense-data-breach/
-
CISA Warns of Compromised Microsoft Accounts
The directive is known as Emergency Directive 24-02 addresses the risk of compromised Microsoft accounts for federal agencies & corporations. The … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/cisa-warns-of-compromised-microsoft-accounts/
-
CISA adds D-Link multiple NAS devices bugs to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds D-Link multiple NAS devices bugs to its Known Exploited Vulnerabilities catalog. The… First seen on securityaffairs.com Jump to article: securityaffairs.com/161739/security/cisa-d-link-multiple-nas-devices-bugs-known-exploited-vulnerabilities-catalog.html
-
Am besten alle abschalten: Alle DNAS anfällig und unter Beschuss
Tags: cisaZunächst schienen nur einige D-Link-Speichersysteme angreifbar, nun gibt der Hersteller zu: Das war nicht alles. Die CISA warnt, sie werden angegriffe… First seen on heise.de Jump to article: www.heise.de/news/Am-besten-alle-abschalten-Noch-mehr-D-Link-NAS-fuer-Codeschmuggel-anfaellig-9682099.html
-
Midnight Blizzard’s Microsoft Corporate Email Hack Threatens Federal Agencies: CISA Warns
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive concerning a breach in Microsoft’s corporate email syste… First seen on gbhackers.com Jump to article: gbhackers.com/microsoft-corporate-email-hack/
-
US CISA published an alert on the Sisense data breach
Business intelligence software company Sisense suffered a cyberattack that may have exposed sensitive information of major enterprises worldwide. Sise… First seen on securityaffairs.com Jump to article: securityaffairs.com/161728/data-breach/sisense-suffers-a-cyber-attack.html
-
CISA makes its Malware Next-Gen analysis system publicly available
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has released a new version of Malware Next-Gen, now allowing the public to submit mal… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-makes-its-malware-next-gen-analysis-system-publicly-available/
-
Sisense Hacked: CISA Warns Customers at Risk
A hard-coded credential catastrophe: The analytics firm kept big companies’ secrets in an insecure AWS bucket. Government says victims include the cri… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/sisense-cisa-warning-richixbw/
-
Seven ways to prepare for the new CISA CIRCIA rules
Tags: cisaFirst seen on scmagazine.com Jump to article: www.scmagazine.com/perspective/seven-ways-to-prepare-for-the-new-cisa-circia-rules
-
Availability of CISA’s automated malware analysis service expanded
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/availability-of-cisas-automated-malware-analysis-service-expanded
-
CISA confirms compromise of its Ivanti systems
CISA said that approximately one month ago, it identified ‘activity indicating the exploitation of vulnerabilities in Ivanti products the agency uses…. First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366573095/CISA-confirms-compromise-of-internal-Ivanti-systems
-
CISA orders agencies impacted by Microsoft hack to mitigate risks
CISA has issued a new emergency directive ordering U.S. federal agencies to address risks resulting from the breach of multiple Microsoft corporate em… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-orders-agencies-impacted-by-microsoft-hack-to-mitigate-risks/

