Tag

#CISA

115 stories taggedCISA.

Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Threat Intelligence

ShinyHunters Claims FBI Hack Exploiting Oracle Flaw

The cybercrime group says it breached FBI systems using a critical Oracle software vulnerability. The FBI is investigating the claim.

3 min read
Full-frame photoreal editorial image of a dimly lit industrial control room at a water treatment plant, rows of SCADA screens glowing pale blue and amber, empty
Policy & Regulation

FBI and CISA warn critical infrastructure operators to rein in third-party ICS integrators

A new joint fact sheet asks water, power and manufacturing operators to lock down the outside engineers who quietly run their control systems.

4 min read
Full-frame edge-to-edge photoreal editorial shot of a generic black dashboard camera mounted on a car windshield at dusk, city street reflections blurred throug
Vulnerabilities

Botslab G980H Dashcams Ship With 13 Unpatched Flaws and the Vendor Has Gone Quiet

CISA lists authentication and session bugs in a popular Chinese dashcam line. The company hasn't responded.

4 min read
Photoreal editorial shot of a dimly lit industrial control room, rows of SCADA monitors showing abstract pipeline and grid schematics glowing blue and amber, on
Threat Intelligence

FBI warns foreign hackers raided a US industrial contractor for SCADA blueprints

A March-April 2025 intrusion at an industrial automation firm netted around 800 files on power and transport customers, and the FBI is telling critical infrastructure to rethink how much access it hands to outside integrators.

4 min read
Photoreal news-editorial 16:9 image of a dimly lit server room with a single glowing manila folder sitting on top of a metal rack, surrounded by dark cables and
Policy & Regulation

CISA Wants You to Leave a Trap Out for Hackers

America's cyber-defence agency has published detailed guidance on using decoys, fake password files, and tripwire accounts to catch attackers who have already slipped inside a network.

5 min read
A wide 16:9 photograph of an empty government briefing room at dusk, shot from a low angle looking toward a large projection screen that glows a faint blue-whit
Policy & Regulation

CISA Is Scrapping Its Weekly Vulnerability Bulletin

The agency is retiring its regular digest of known security flaws in favour of a new directive that tells federal agencies to patch based on real-world danger, not scores on a chart.

3 min read
Full-frame edge-to-edge photoreal news-editorial image of a dimly lit server room aisle with rows of rack-mounted Linux servers, small green and amber status LE
Policy & Regulation

CISA Orders Federal Agencies to Patch Two Linux Kernel Flaws

The KEV catalog additions are the first Linux kernel entries to test Binding Operational Directive 26-04's risk-based patching regime.

4 min read
Photoreal news-editorial 16:9 image of a single smartphone lying flat on a plain concrete desk, its screen glowing with a generic six-digit authentication code
Identity & Access

The Most Common Password Is Still 123456. Here Is What Actually Fixes That.

A former CISO at Hyatt and United Airlines says the security industry keeps chasing new tools while ignoring the basics. One basic above all others stands out: multi-factor authentication, which cuts your chance of being hacked by 99 percent.

4 min read
A security operations center with multiple monitors displaying threat intelligence reports being automatically converted into active defense rules with real-tim
Threat Intelligence

Mars Security Launches Tool That Turns Threat Advisories Into Live Detection Rules in Minutes

A new platform feature promises to close the gap between a published hacking report and an actual working defence, automatically tested against a company's own historical data before anyone clicks deploy.

4 min read
An industrial control room with multiple PLC units and monitoring screens displaying real-time process data, with security warning overlays visible but equipmen
Vulnerabilities

Securing Siemens PLCs Without Shutting Down the Factory

US agencies are warning that industrial controllers running critical infrastructure are being actively targeted. The advice is sound. Applying it carelessly could cause the very outages attackers are hoping for.

4 min read
A threat intelligence dashboard displaying data flow arrows pointing from multiple locations to major AI model diagrams, with geographic markers and attribution
AI Security

US Agencies Say Chinese AI Firms Are Stealing From American Models at Industrial Scale

A joint NSA, CISA and FBI advisory names DeepSeek, Alibaba, Moonshot AI, MiniMax, StepFun and Z.AI as running organised campaigns to copy the inner workings of Claude, GPT, Gemini and Grok.

4 min read
A network infrastructure diagram showing Fortinet firewall and switch devices infected with remote-control malware, attack vectors highlighted in red, with gove
Vulnerabilities

Hackers Are Exploiting a Fortinet Flaw to Plant Remote-Control Malware on Network Devices

A security bug in Fortinet's firewall and switch software is being used to silently take over devices and steal data. More than 178 machines are already infected, attacks have been running since at least July 2026, and the US government is telling federal agencies they have three days to patch.

3 min read
Federal cybersecurity operations center with urgent alert banners across multiple screens displaying NetScaler vulnerability information, patch deployment timel
Vulnerabilities

CISA Warns of Active Attacks on Critical NetScaler Flaw

Federal agencies have three days to patch CVE-2026-19490 after CISA confirmed criminals are actively exploiting the high-severity flaw in Citrix's widely used network gateway software.

3 min read
A network operations center with multiple security monitoring screens displaying alerts and warnings, three different product logos or interface elements visibl
Vulnerabilities

CISA flags five actively exploited flaws in Artifactory, ScreenConnect and MikroTik gear

The U.S. cyber agency says criminals are already breaking into systems through bugs in three widely used products, and federal agencies must patch fast.

3 min read
A federal office building interior with security personnel at desks reviewing documentation, multiple computer terminals showing authentication tokens and acces
Policy & Regulation

NIST and CISA tell agencies how to stop attackers walking in on stolen login tokens

The joint report tells federal agencies and cloud providers how to lock down the digital passes that keep users signed in across cloud services.

4 min read
© 2026 Threat Vectr