#cisa

[ follow ]
fromTheregister
3 hours ago

CISA orders feds to patch Oracle Identity Manager zero-day

Searchlight Cyber researchers Adam Kues and Shubham Shah, who discovered the flaw, have published their own technical teardown of the vulnerability that doesn't mince words about the ease with which criminals can weaponize it. The researchers call exploitation "trivial," describing a single HTTP request that bypasses OIM's normal authentication flow and ultimately gives an attacker remote system-level control. Oracle disclosed the bug in October, but didn't indicate that it was under active exploitation.
Information security
#fortiweb
#telecommunications-security
fromTheregister
1 week ago
Information security

Logitech leaks data after zero-day attack

CISA has not released a mandated 2022 telecommunications security report, prompting senators to demand publication and mandatory FCC cybersecurity standards amid recent hacks.
fromNextgov.com
1 week ago
US politics

Dem lawmakers renew calls for release of delayed telecom security report

Two senators urge public release of a CISA 2022 report on telecom security vulnerabilities, citing national security risks and Chinese-linked intrusions.
#cisco-asa
fromTechCrunch
1 week ago
Information security

CISA warns federal agencies to patch flawed Cisco firewalls amid 'active exploitation' across the US government | TechCrunch

fromTechCrunch
1 week ago
Information security

CISA warns federal agencies to patch flawed Cisco firewalls amid 'active exploitation' across the US government | TechCrunch

#cybersecurity
fromSecurityWeek
1 month ago
Information security

Cybersecurity Awareness Month 2025:Prioritizing Identity to Safeguard Critical Infrastructure

US politics
fromSecurityWeek
1 month ago

The Cybersecurity Information Sharing Act Faces Expiration

CISA enables companies to share cyber threat information with government and peers, offering liability protection and identity safeguards while encouraging real-time reporting.
Information security
fromTheregister
1 month ago

Cyber threat-sharing law set to lapse as govt shutdown looms

CISA 2015 authorization will lapse at 12:01 on October 1 without extension, endangering U.S. cyber threat information sharing and raising privacy and liability concerns.
fromSecurityWeek
1 month ago
Information security

Cybersecurity Awareness Month 2025:Prioritizing Identity to Safeguard Critical Infrastructure

US politics
fromNextgov.com
2 weeks ago

DHS says shutdown layoffs at CISA will proceed despite court injunction

CISA is proceeding with planned layoffs of 54 Stakeholder Engagement Division employees, arguing the notices predate a court injunction and do not cover union-represented groups.
fromAxios
2 weeks ago

Election security cutbacks force local officials to go it alone

Local election offices are left with fewer resources, less threat intelligence, and diminished federal guidance. "It's kind of heartbreaking to know that they worked [on] creating these relationships and partnerships over the last decade, and they'renowjust disintegrating," Brianna Lennon, the county clerk in Missouri's Boone County, tells Axios. Bloomberg reported yesterday thattheCybersecurity and Infrastructure Security Agency's election monitoring room, which has been stood up during every election cycle to field and share information about active threats to elections, isn't operating this year.
Information security
fromIT Pro
3 weeks ago

CISA just published crucial new guidance on keeping Microsoft Exchange servers secure

"With the threat to Exchange servers remaining persistent, enforcing a prevention posture and adhering to these best practices is crucial for safeguarding our critical communication systems," Andersen said. "This guidance empowers organizations to proactively mitigate threats, protect enterprise assets, and ensure the resilience of their operations." Anderson added that CISA recommends organizations also "evaluate the use of cloud-based email services" rather than "managing the complexities" of hosting their own.
Information security
US news
fromNextgov.com
3 weeks ago

Top CISA official exits for TSA role amid recent cyber office reductions

Ryan Donaghy is transitioning from the Cybersecurity and Infrastructure Security Agency to the Transportation Security Administration.
Information security
fromNextgov.com
1 month ago

US cyber policy goals have regressed during Trump 2.0 in 'unprecedented setback,' landmark report says

Federal cyber policy has regressed about 13%, with workforce cuts, funding reductions, and rollback of initiatives undermining CISA, State cyber diplomacy, and counter-disinformation efforts.
fromNextgov.com
1 month ago

House Democrats want answers on CISA reassignments to border security, immigration roles

The Monday letter - led by Rep. James Walkinshaw, D-Va., and also signed by Reps. Suhas Subramanyam, D-Va., Eugene Vindman, D-Va., and Shontel Brown, D-Ohio, along with Del. Eleanor Holmes Norton, D-D.C. - argues that DHS violated the Antideficiency Act when it reassigned those Cybersecurity and Infrastructure Security Agency staff to roles within Immigration and Customs Enforcement, the Federal Protective Service and Customs and Border Protection.
US politics
US politics
fromNextgov.com
1 month ago

Top cyber lawmaker wants answers on CISA workforce reductions

CISA's cyber workforce has been reduced through layoffs and reassignments, prompting congressional demands for detailed staffing numbers and reinstatements.
fromNextgov.com
1 month ago

Multiple CISA divisions targeted in shutdown layoffs, people familiar say

Staff within the Stakeholder Engagement Division, as well as the cyber-defense agency's Infrastructure Security Division, were targeted with reduction-in-force notices, or RIFs, said the people. OMB Director Russ Vought announced the actions on Friday in line with Trump administration promises to enact layoffs during the ongoing government shutdown. The Integrated Operations Division is also believed to have been impacted, one of the people said.
US politics
fromTheregister
1 month ago

CISA law may be rescued amid shutdown if Senate bill clears

The CISA law was due for renewal along with the federal government's continuing funding resolution, but given the Senate's inability to pass it and the government shutdown that followed, Peters and Rounds want it extended without having to wait for the government to reopen in order to do so. The CISA law, for those unfamiliar, establishes a framework and legal protections for companies to share threat indicators with the government and each other.
US politics
#government-shutdown
fromTechCrunch
1 month ago

Homeland Security reassigns 'hundreds' of CISA cyber staffers to support Trump's deportation crackdown | TechCrunch

Bloomberg reported Wednesday that the department moved staffers from the U.S. cybersecurity agency CISA, many of whom focus on issuing cyber guidance to help U.S. government agencies and critical infrastructure defend from cyber threats, to other agencies within the federal department, including Immigration and Customs Enforcement (ICE) and Customs and Border Protection (CBP). Both Bloomberg and Nextgov reported that many of the affected CISA staffers are in the agency's Capacity Building unit, which helps to improve the cybersecurity posture of federal agencies,
US politics
Information security
fromFast Company
1 month ago

U.S. cybersecurity was bad during the first Trump administration. Somehow, it's getting worse.

CISA faces severe degradation: leadership vacancy, mass staff departures, mission cuts, and furloughs amid escalating foreign cyberattacks and risky domestic data collection.
Information security
fromSecurityWeek
1 month ago

Organizations Warned of Exploited Sudo Vulnerability

A critical Sudo local privilege escalation (CVE-2025-32463) allows any user to gain root privileges and has been exploited, requiring urgent patching.
Information security
fromTheregister
1 month ago

CISA kills agreement with nonprofit that runs MS-ISAC

CISA will end its cooperative agreement and funding for the Center for Internet Security on September 30, 2025, shifting to a new SLTT support model.
fromTheregister
2 months ago

SonicWall releases rootkit-busting firmware update

The update comes about two months after Google warned that some unknown criminals have been exploiting fully patched, end-of-life SonicWall SMA 100 appliances to deploy a previously unknown backdoor and rootkit dubbed OVERSTEP. The malware modifies the appliance's boot process to maintain persistent access, enabling the criminals to steal sensitive credentials and conceal their own components. The Chocolate Factory's intel analysts in July attributed the ongoing campaign to UNC6148 - UNC in Google's threat-group naming taxonomy stands for "Uncategorized."
Information security
#cve-program
fromNextgov.com
2 months ago
Information security

CISA weighs 'alternative funding sources' to preserve cyber vulnerability-tracking project

fromNextgov.com
2 months ago
Information security

CISA weighs 'alternative funding sources' to preserve cyber vulnerability-tracking project

US politics
fromTheregister
2 months ago

CISA misspent millions in cyber skill retention funds: audit

CISA mismanaged the Cyber Incentive program, allowing widespread ineligible payments, poor recordkeeping, and reduced capacity to protect the nation from cyber threats.
Information security
fromTheregister
2 months ago

CISA attempts to assert control over CVE in vision outline

CISA aims to assert governmental control over the CVE program, transitioning it from a growth era to a government-led "quality era" beginning in 2025.
fromNextgov.com
2 months ago

CISA ready to accept any extension for key cyber info-sharing law, official says

We'll take whatever the Congress decides to authorize us, wherever they see fit within their purview, to authorize and to give us our authorities to be able to use,
Information security
Information security
fromDataBreaches.Net
2 months ago

CISA Delays Cyber Incident Reporting Rule for Critical Infrastructure - DataBreaches.Net

CISA plans to publish the CIRCIA Final Rule in May 2026, delaying its expected October 2025 arrival and likely postponing its effective date.
Information security
fromTheregister
2 months ago

Congress tosses lifeline to cyber intel sharing, grants

Congress must reauthorize and extend cyber information-sharing authorities like CISA to maintain private–public threat intelligence collaboration and protect critical infrastructure.
#ransomware
Information security
fromDataBreaches.Net
2 months ago

CISA steps in to help Nevada state government recover from cyberattack - DataBreaches.Net

CISA, the FBI, and other federal and state teams are collaborating to investigate, contain, and restore Nevada's systems after a cyberattack while securing recovery grants.
Information security
fromSecuritymagazine
3 months ago

CISA Issues Software Bill of Materials Draft, Encourages Public Comments

Updated minimum elements for SBOMs guide standardized, machine-readable SBOM generation and sharing to improve software supply chain transparency and risk-informed cybersecurity decisions.
fromTheregister
3 months ago

Microsoft Exchange bug can allow 'total domain compromise'

CVE-2025-53786 is an elevation of privilege bug that Outsider Security's Dirk-jan Mollema reported to Microsoft. It exists because of the way hybrid Exchange deployments, which connect on-premises Exchange servers to Exchange Online, use a shared identity to authenticate users between the two environments.
Privacy professionals
fromTheregister
3 months ago

CISA releases malware analysis for Sharepoint Server attack

CISA analysed six files including two Dynamic Link-Library (.DLL), one cryptographic key stealer, and three web shells. Cyber threat actors could leverage this malware to steal cryptographic keys and execute a Base64-encoded PowerShell command to fingerprint host system and exfiltrate data.
Privacy professionals
fromThe Hacker News
3 months ago

Microsoft Discloses Exchange Server Flaw Enabling Silent Cloud Access in Hybrid Setups

In an Exchange hybrid deployment, an attacker who first gains administrative access to an on-premises Exchange server could potentially escalate privileges within the organization's connected cloud environment without leaving easily detectable and auditable traces.
Privacy professionals
US politics
fromNextgov.com
4 months ago

Trump's CISA nominee to testify before Senate panel next week

Sean Plankey is scheduled to testify before the Senate Homeland Security Committee regarding his nomination to lead the Cybersecurity and Infrastructure Security Agency.
fromBreaking Defense
4 months ago

Iran may go after US defense firms with cyber attacks, warn Pentagon, Homeland Security

Homeland Security's Cybersecurity & Infrastructure Security Agency warned US defense contractors working in Israel that they may be targeted by Iranian cyber attacks.
US politics
fromIT Pro
4 months ago

Want to build more secure software? Follow these key memory safe language tips from CISA

Achieving better memory safety demands language-level protections, library support, robust tooling, and developer training, as traditional languages can't eliminate vulnerabilities as effectively.
Software development
fromTheregister
5 months ago

AWS enforces MFA across 100% of root users: re:Inforce

For anyone who still has doubts about MFA: just ask Snowflake CISO Brad Jones, who last year saw more than 160 of his customers' accounts compromised using stolen credentials. None of these had MFA enabled, and this safeguard likely would have prevented the intruders from accessing the customers' databases.
Marketing tech
[ Load more ]