CISA – Current Activity

Category Added in a WPeMatico Campaign

NCSC-NZ Releases Advisory on Cyber Threats Related to Russia-Ukraine Tensions

Original release date: February 18, 2022 The New Zealand National Cyber Security Centre (NCSC-NZ) has released a General Security Advisory (GSA) on preparing for cyber threats relating to tensions between Russia and Ukraine. The advisory recommends organizations review their security posture and monitor for cyber incidents and provides additional resources to help protect against potential […]

NCSC-NZ Releases Advisory on Cyber Threats Related to Russia-Ukraine Tensions Read More »

CISA Compiles Free Cybersecurity Services and Tools for Network Defenders

Original release date: February 18, 2022 CISA has compiled and published a list of free cybersecurity services and tools to help organizations reduce cybersecurity risk and strengthen resiliency. This non-exhaustive living repository includes services provided by CISA, widely used open source tools, and free tools and services offered by private and public sector organizations across the cybersecurity

CISA Compiles Free Cybersecurity Services and Tools for Network Defenders Read More »

NSA Best Practices for Selecting Cisco Password Types

Original release date: February 17, 2022 The National Security Agency (NSA) has released a Cybersecurity Information (CSI) sheet with guidance on securing network infrastructure devices and credentials. Cisco devices are used globally to secure network infrastructure devices, including across the Department of Defense, National Security Systems, and the Defense Industrial Base. Credentials within Cisco configuration

NSA Best Practices for Selecting Cisco Password Types Read More »

Cisco Releases Security Updates for Email Security Appliance

Original release date: February 17, 2022 Cisco has released security updates to address a vulnerability affecting Cisco Email Security Appliance. A remote attacker could exploit this vulnerability to cause a denial-of-service condition. For updates addressing lower severity vulnerabilities, see the Cisco Security Advisories page. CISA encourages users and administrators to review Cisco Advisory cisco-sa-esa-dos-MxZvGtgU and

Cisco Releases Security Updates for Email Security Appliance Read More »

Russian State-Sponsored Actors Target Cleared Defense Contractor Networks

Original release date: February 16, 2022 CISA, the Federal Bureau of Investigation (FBI), and the National Security Agency (NSA) have released a joint Cybersecurity Advisory (CSA) highlighting regular targeting of U.S. cleared defense contractors (CDCs) by Russian state-sponsored cyber actors. These CDCs support contracts for the U.S. Department of Defense and Intelligence Community. The CSA

Russian State-Sponsored Actors Target Cleared Defense Contractor Networks Read More »

CISA Adds Nine Known Exploited Vulnerabilities to Catalog

Original release date: February 15, 2022 CISA has added nine new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence that threat actors are actively exploiting the vulnerabilities listed in the table below. These types of vulnerabilities are a frequent attack vector for malicious cyber actors of all types and pose significant risk to

CISA Adds Nine Known Exploited Vulnerabilities to Catalog Read More »

FBI and USSS Release Advisory on BlackByte Ransomware

Original release date: February 15, 2022 The Federal Bureau of Investigation (FBI) and the United States Secret Service (USSS) have released a joint Cybersecurity Advisory (CSA) identifying indicators of compromise associated with BlackByte ransomware. BlackByte is a Ransomware-as-a-Service group that encrypts files on compromised Windows host systems, including physical and virtual servers. CISA encourages organizations to

FBI and USSS Release Advisory on BlackByte Ransomware Read More »

Adobe Releases Security Updates for Commerce and Magento Open Source

Original release date: February 14, 2022 Adobe has released security updates to address a vulnerability affecting Adobe Commerce and Magento Open Source. An attacker could exploit this vulnerability to take control of an affected system. This vulnerability has been detected in exploits in the wild. CISA encourages users and administrators to review Adobe Security Bulletin APSB22-12 and apply

Adobe Releases Security Updates for Commerce and Magento Open Source Read More »

2021 Trends Show Increased Globalized Threat of Ransomware

Original release date: February 9, 2022 CISA, the Federal Bureau of Investigation (FBI), the National Security Agency (NSA), the Australian Cyber Security Centre (ACSC), and the United Kingdom’s National Cyber Security Centre (NCSC-UK) have released a joint Cybersecurity Advisory (CSA) highlighting a global increase in sophisticated, high-impact, ransomware incidents against critical infrastructure organizations in 2021.

2021 Trends Show Increased Globalized Threat of Ransomware Read More »

FBI Releases Indicators of Compromise Associated with LockBit 2.0 Ransomware

Original release date: February 7, 2022 The Federal Bureau of Investigation (FBI) has released a Flash report detailing indicators of compromise (IOCs) associated with attacks, using LockBit 2.0, a Ransomware-as-a-Service that employs a wide variety of tactics, techniques, and procedures, creating significant challenges for defense and mitigation. CISA encourages users and administrators to review the IOCs

FBI Releases Indicators of Compromise Associated with LockBit 2.0 Ransomware Read More »