Tag: cisa
-
SafeBreach Coverage for AA24-060A (Phobos Ransomware) and AA24-060B (Ivanti Connect Secure)
CISA issued two separate advisories related to malicious behavior exhibited by threat actors. AA24-060A pertains to Phobos Ransomware and AA24-060B pe… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/03/safebreach-coverage-for-aa24-060a-phobos-ransomware-and-aa24-060b-ivanti-connect-secure/
-
Response to CISA Advisory (AA24-060A): #StopRansomware: Phobos Ransomware
AttackIQ has released a new assessment template in response to the recently published CISA Advisory (AA24-060A) which disseminates known Tactics, Tech… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/03/response-to-cisa-advisory-aa24-060a-stopransomware-phobos-ransomware/
-
CISA warns of Microsoft Streaming bug exploited in malware attacks
CISA ordered U.S. Federal Civilian Executive Branch (FCEB) agencies to secure their Windows systems against a high-severity vulnerability in the Micro… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-warns-of-microsoft-streaming-bug-exploited-in-malware-attacks/
-
CISA Warns Of Windows Streaming Service Vulnerability Exploitation
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/35599/CISA-Warns-Of-Windows-Streaming-Service-Vulnerability-Exploitation.html
-
CISA und Experten warnen vor hartnäckigen Backdoors auf Ivanti-Geräten
First seen on heise.de Jump to article: heise.de/news/CISA-und-Experten-warnen-vor-hartnaeckigen-Backdoors-auf-Ivanti-Geraeten-9643250.html
-
CISA cautions against using hacked Ivanti VPN gateways even after factory resets
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) revealed today that attackers who hack Ivanti VPN appliances using one of multiple ac… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-cautions-against-using-hacked-ivanti-vpn-gateways-even-after-factory-resets/
-
FBI, CISA Release IoCs for Phobos Ransomware
Threat actors using the malware have infected systems within government, healthcare, and other critical infrastructure organizations since at least 20… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/fbi-cisa-release-iocs-for-phobos-ransomware
-
CISA warns against using hacked Ivanti devices even after factory resets
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) revealed today that attackers who breached Ivanti appliances using one of multiple ac… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-warns-against-using-hacked-ivanti-devices-even-after-factory-resets/
-
Cyberangriff auf US-Gesundheitsdienstleister: CISA und FBI ergreifen Maßnahmen
First seen on heise.de Jump to article: heise.de/news/Cyberangriff-auf-US-Gesundheitsdienstleister-CISA-und-FBI-ergreifen-Massnahmen-9642586.html
-
FBI, CISA warns Of ALPHV Blackcat Ransomware Attacking Hospitals
To raise awareness of the ALPHV Blackcat ransomware as a service (RaaS) that targets the US healthcare industry, the FBI, CISA, and the Departmen… First seen on gbhackers.com Jump to article: gbhackers.com/fbi-cisa-warns-alphv-blackcat-ransomware/
-
Response to CISA Advisory (AA24-057A): SVR Cyber Actors Adapt Tactics for Initial Cloud Access
AttackIQ recommends that customers take the following testing actions in alignment to the recently published CISA Advisory (AA24-057A) which details r… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/02/response-to-cisa-advisory-aa24-057a-svr-cyber-actors-adapt-tactics-for-initial-cloud-access/
-
Russia’s ‘Midnight Blizzard’ Targets Service Accounts for Initial Cloud Access
CISA and its counterparts in the UK and other countries this week offered new guidance on how to deal with the threat actor’s recent shift to cloud at… First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/russia-s-midnight-blizzard-targeting-service-accounts-for-initial-cloud-access
-
FBI, CISA warn US hospitals of targeted BlackCat ransomware attacks
Today, the FBI, CISA, and the Department of Health and Human Services (HHS) warned U.S. healthcare organizations of targeted ALPHV/Blackcat ransomware… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fbi-cisa-warn-us-hospitals-of-targeted-blackcat-ransomware-attacks/
-
CISA Issues Alert on APT29’s Cloud Infiltration Tactics
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/cisa-alert-apt29s-cloud-tactics/
-
Volt Typhoon Disrupts US Organizations, CISA Issues Alerts
Volt Typhoon has expanded its operations beyond illegal access and data theft in the US. Discover how they’re attacking and what you can do for protec… First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/trends/cisa-issues-alerts-after-volt-typhoon-attacks-us-networks/
-
CISA HBOM Framework Doesn’t Go Far Enough
CISA’s recently introduced framework for hardware bill of materials is an important step in addressing semiconductor risks. But further tracking beyon… First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/cisa-hbom-framework-doesn-t-go-far-enough
-
CISA Reveals JCDC’s 2024 Cybersecurity Priorities
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/cisa-reveals-jcdc-2024/
-
CISA warns Fortinet zero-day vulnerability under attack
CISA alerted federal agencies that a critical zero-day vulnerability in FortiOS is being actively exploited, though Fortinet has yet to confirm report… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366569675/CISA-warns-Fortinet-zero-day-vulnerability-under-attack
-
Roundcube email server bug now exploited in attacks
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-roundcube-email-server-bug-now-exploited-in-attacks/
-
Critical infrastructure hacks raise alarms on Chinese threats
FBI Director Christopher Wray and CISA Director Jen Easterly warned that China was targeting critical infrastructure for possible destructive attacks … First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366568633/Critical-infrastructure-hacks-raise-alarms-on-Chinese-threats
-
CISA deputy director touts progress, anti-ransomware efforts
In this Q&A, CISA Deputy Director Nitin Natarajan shares his thoughts on scaling up to meet high demand, the agency’s new initiative to address ransom… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366568652/CISA-deputy-director-touts-progress-anti-ransomware-efforts
-
CISA posts incident response guide for water utilities
In its guide, CISA urged water and wastewater sector utility operators to harden their security posture, increase information sharing and build incide… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366566740/CISA-posts-incident-response-guide-for-water-utilities
-
Volt Typhoon had access to some U.S. targets for 5 years
A joint cybersecurity advisory expanded on the Volt Typhoon threat Wednesday, confirming attackers maintained prolonged persistent access to critical … First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366569227/CISA-Volt-Typhoon-had-access-to-some-US-targets-for-5-years
-
Should I get CISA Certified?
Tags: cisaCISA is possibly the one ‘pure’ Information systems audit qualification that is recognised anywhere. It is balanced between technical IT knowledge… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/02/should-i-get-cisa-certified/
-
New Fortinet RCE bug is actively exploited, CISA confirms
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/new-fortinet-rce-bug-is-actively-exploited-cisa-confirms/
-
Mediaalert Qualys: CISA veröffentlicht Sicherheitshinweis mit dem Schweregrad CVSS 10.0
Diese Schwachstelle ist auf dem höchsten Schweregrad für CVSS, 10.0, eingestuft, da sie sich auf Installationen auswirken könnte. Die Schwachstelle is… First seen on infopoint-security.de Jump to article: www.infopoint-security.de/mediaalert-qualys-cisa-veroeffentlicht-sicherheitshinweis-mit-dem-schweregrad-cvss-10-0/a34131/
-
CISA Orders Ivanti VPN Appliances Disconnected: What to Do
US federal agencies have to disconnect, rebuild, and reconfigure all Ivanti Connect Secure and Policy Secure VPN appliances. This Tech Tip lists all t… First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/cisa-orders-disconnecting-ivanti-vpn-appliances-what-to-do
-
CISA Adds 9.8 ‘Critical’ Microsoft SharePoint Bug to its KEV Catalog
First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/cisa-adds-critical-microsoft-sharepoint-bug-kev-catalog
-
CISA Urges Critical Infrastructure to Patch Urgent ICS Vulnerabilities
CISA™s advisory provides mitigations for vulnerabilities in ICS products used in critical infrastructure industries like energy, manufacturing and tra… First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/cisa-critical-infrastructure-patch/
-
[Video] DerbyCon 2012 – DNS Reconnaissance
James ArlenBIO:James Arlen, CISA, is a senior consultant at Taos providing security consulting services to the utility and financial verticals. He has… First seen on http: Jump to article: feedproxy.google.com/~r/SecurityTube/~3/0tiWLo2U5So/5795

