CISA – Current Activity

Category Added in a WPeMatico Campaign

CISA Adds 32 Known Exploited Vulnerabilities to Catalog

Original release date: March 28, 2022 CISA has added 32 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise. Note: to view the newly added vulnerabilities in the catalog, […]

CISA Adds 32 Known Exploited Vulnerabilities to Catalog Read More »

CISA Adds 66 Known Exploited Vulnerabilities to Catalog

Original release date: March 25, 2022 CISA has added 66 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise. Note: to view the newly added vulnerabilities in the catalog,

CISA Adds 66 Known Exploited Vulnerabilities to Catalog Read More »

State-Sponsored Russian Cyber Actors Targeted Energy Sector from 2011 to 2018

Original release date: March 24, 2022 CISA, the Federal Bureau of Investigation, and the Department of Energy have released a joint Cybersecurity Advisory (CSA) detailing campaigns conducted by state-sponsored Russian cyber actors from 2011 to 2018 that targeted U.S. and international Energy Sector organizations. The CSA highlights historical tactics, techniques, and procedures as well as mitigations

State-Sponsored Russian Cyber Actors Targeted Energy Sector from 2011 to 2018 Read More »

FBI and FinCEN Release Advisory on AvosLocker Ransomware

Original release date: March 22, 2022 The Federal Bureau of Investigation (FBI) and the Department of the Treasury’s Financial Crimes Enforcement Network (FinCEN) have released a joint Cybersecurity Advisory identifying indicators of compromise associated with AvosLocker ransomware. AvosLocker is a ransomware-as-a-service affiliate-based group that has targeted victims across multiple critical infrastructure sectors in the United States

FBI and FinCEN Release Advisory on AvosLocker Ransomware Read More »

CRI-O Security Update for Kubernetes

Original release date: March 18, 2022 CRI-O has released a security update addressing a critical vulnerability—CVE-2022-0811—in CRI-O 1.19. A local attacker could exploit this vulnerability to take control of an affected Kubernetes environment as well as other software or platforms that use CRI-O runtime containers. CISA encourages users and administrators to review the CRI-O Security

CRI-O Security Update for Kubernetes Read More »

CISA Adds 15 Known Exploited Vulnerability to Catalog

Original release date: March 15, 2022 CISA has added 15 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence that threat actors are actively exploiting the vulnerabilities listed in the table below. These types of vulnerabilities are a frequent attack vector for malicious cyber actors of all types and pose significant risk to the

CISA Adds 15 Known Exploited Vulnerability to Catalog Read More »

Updated: Kubernetes Hardening Guide

Original release date: March 15, 2022 The National Security Agency (NSA) and CISA have updated their joint Cybersecurity Technical Report (CTR): Kubernetes Hardening Guide, originally released in August 2021, based on valuable feedback and inputs from the cybersecurity community.  Kubernetes is an open-source system that automates deployment, scaling, and management of applications run in containers.

Updated: Kubernetes Hardening Guide Read More »

Dirty Pipe Privilege Escalation Vulnerability in Linux

Original release date: March 10, 2022 CISA is aware of a privilege escalation vulnerability in Linux kernel versions 5.8 and later known as “Dirty Pipe” (CVE-2022-0847). A local attacker could exploit this vulnerability to take control of an affected system. CISA encourages users and administrators to review (CVE-2022-0847) and update to Linux kernel versions 5.16.11,

Dirty Pipe Privilege Escalation Vulnerability in Linux Read More »

CISA Releases Security Advisory on PTC Axeda Agent and Desktop Server

Original release date: March 8, 2022 CISA has released an Industrial Controls Systems Advisory (ICSA), detailing vulnerabilities in PTC Axeda agent and Axeda Desktop Server. Successful exploitation of these vulnerabilities—collectively known as “Access:7”—could result in full system access, remote code execution, read/change configuration, file system read access, log information access, or a denial-of-service condition. CISA

CISA Releases Security Advisory on PTC Axeda Agent and Desktop Server Read More »