CISA

Entity category: organization

Business

F5 Networks Breached: Hackers Stole Code and Customer Data

State-sponsored hackers breached F5 Networks' systems, stealing proprietary source code and sensitive customer data, with the company detecting the intrusion…

Read More »
Business

Exploit Alert: Critical Adobe Experience Manager Flaw (CVE-2025-54253)

A critical security flaw (CVE-2025-54253) in Adobe Experience Manager Forms allows unauthenticated attackers to execute remote code, prompting CISA to…

Read More »
BigTech Companies

Urgent: CISA Warns of Active Attacks on Critical Adobe Flaw

CISA has issued a critical alert about active exploitation of a maximum-severity vulnerability (CVE-2025-54253) in Adobe Experience Manager, allowing attackers…

Read More »
Business

Putting NICE Guidelines into Practice: Training Insights

SMBs can effectively train employees against cyber threats by focusing on a streamlined, scenario-based program derived from the NICE Framework,…

Read More »
Business

F5 Issues Critical Patches for Stolen BIG-IP Vulnerabilities

F5 Networks issued critical security patches for its BIG-IP product line after a state-sponsored breach on August 9, 2025, which…

Read More »
Business

Cybersecurity Information Sharing Act Set to Expire

The Cybersecurity Information Sharing Act (CISA) is set to expire in September 2025 unless renewed, and it currently provides legal…

Read More »
Business

US Government Shutdown Cuts Cybersecurity Staff

The US government shutdown has drastically reduced staffing at key cybersecurity agencies, with CISA losing 65% of its personnel and…

Read More »
Cybersecurity

Urgent CISA Alert: Active Attacks Exploit Critical Linux Sudo Flaw

A critical vulnerability (CVE-2025-32463) in Linux sudo versions 1.9.14 to 1.9.17 allows local attackers to escalate privileges to root using…

Read More »
Artificial Intelligence

Unpatched Cisco Firewalls, Red Hat’s GitLab Breached by Hackers

Cybersecurity threats are intensifying due to unpatched devices and supply chain compromises, as seen in attacks on Cisco firewalls and…

Read More »
Business

CISA Steps In as Federal MS-ISAC Funding Ends

The longstanding cooperative agreement between CISA and the Center for Internet Security has ended, shifting cybersecurity support for state, local,…

Read More »
Business

New National OT Security Guidelines Released

An international coalition of cybersecurity agencies has released new operational technology (OT) security guidelines to protect critical infrastructure worldwide, providing…

Read More »
Business

Master CISA’s Zero Trust with Modern Microsegmentation

CISA now identifies microsegmentation as a foundational element of Zero Trust architecture, shifting it from an advanced tactic to an…

Read More »
Business

US Slashes Funding for Key Cybersecurity Program

CISA has terminated its cooperative agreement with CIS, ending federal funding for the MS-ISAC and jeopardizing this central cybersecurity resource…

Read More »
Artificial Intelligence

Cybersecurity Leaders Hide Cyber Incidents From Executives

Corporate cybersecurity leaders are increasingly concealing security incidents from their own executive leadership and boards, creating a dangerous gap in…

Read More »
BigTech Companies

Cisco ASA Firewalls Under Active Attack from Zero-Day Exploits

Cisco has issued an urgent alert to patch two actively exploited zero-day vulnerabilities (CVE-2025-20333 and CVE-2025-20362) affecting its ASA and…

Read More »
Business

CISA Mandates Urgent Patching for Actively Exploited Cisco Zero-Day Flaws

CISA has issued an emergency directive requiring U.S. federal agencies to immediately address two actively exploited critical vulnerabilities (CVE-2025-20333 and…

Read More »
Business

Federal Agency Hacked Through GeoServer Vulnerability

A federal agency suffered a cybersecurity breach in July 2024 when attackers exploited a critical, unpatched vulnerability in a public-facing…

Read More »
Business

Hackers Breach Federal Agency via GeoServer Flaw, CISA Warns

A critical vulnerability (CVE-2024-36401) in GeoServer was exploited to breach a U.S. federal agency's network after attackers compromised an unpatched…

Read More »
Business

SolarWinds Issues Urgent Patch for Critical Web Help Desk Flaw

SolarWinds has released an urgent hotfix for a critical, unauthenticated remote code execution vulnerability (CVE-2025-26399) in its Web Help Desk…

Read More »
Business

CISA Warns: Malware Kits Found in Ivanti EPMM Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified malware exploiting two vulnerabilities in Ivanti Endpoint Manager Mobile, enabling…

Read More »