Browsing Tag
CISA
24 posts
CISA Publishes List of Free Cybersecurity Tools and Services
The list is created to achieve goals from CISA’s recommendations that are part of the “CISA Insights: Implement Cybersecurity…
February 21, 2022
CISA warns of trojanized versions of JavaScript library’s NPM package
The warning comes days after three rogue packages, okhsa, klow, and klown discovered by DevSecOps firm Sonatype, were removed from the NPM repository.
October 23, 2021
CISA – Ransomware targeted SCADA systems of 3 US water facilities
US has warned of more ransomware attacks on IT and OT networks of country's Water and Wastewater Systems (WWS) Sector facilities.
October 15, 2021
NSA, CISA Release Guidelines to Secure VPNs
The NSA and CISA have published guidelines to secure virtual private networks (VPNs) as threat actors have been exploiting VPN vulnerabilities.
September 29, 2021
Unpatched Microsoft Exchange servers hit with ProxyShell attack
Researchers have identified 140+ webshells launched against 1,900 unpatched Microsoft Exchange servers.
August 26, 2021
Prominent defibrillator management tool exposed to remote attacks
High-Risk security flaws found and patched in ZOLL defibrillator management software. Here's what happened and what was vulnerable.
June 21, 2021
Hackers exploiting critical vulnerabilities in Fortinet VPN – FBI-CISA
According to CISA and the FBI, advanced persistent threat (APT) nation-state actors are exploiting known vulnerabilities in the Fortinet FortiOS.
April 5, 2021
Warning as hackers breach MFA to target cloud services
According to CISA, it has verified one of the users had their account breached even though they were using "proper multi-factor authentication (MFA)."
January 14, 2021
CISA’s Sparrow.ps1 tool detects malicious activity on Azure, Microsoft 365
The new free tool called Sparrow.ps1 is intended for use by incident responders. Here's what this tool can do and how.
December 29, 2020
Hackers exploit VPN, Windows flaws to influence US elections
According to CISA, these Windows flaws are centered around Fortinet FortiOS Secure Socket Layer (SSL) VPN and MobileIron platform.
October 13, 2020