CISA Releases New Alert on Post-Compromise Threat Activity in Microsoft Cloud Environments and Tools to Help Detect This ActivityCISA All NCAS Products

Original release date: January 8, 2021CISA has evidence of post-compromise advanced persistent threat (APT) activity in the cloud environment. Specifically, CISA has seen an APT actor using compromised applications in a victim’s Microsoft 365 (M365)/Azure environment and using additional credentials and Application Programming Interface (API) access to cloud resources of private and public sector organizations. […]

CISA Releases New Alert on Post-Compromise Threat Activity in Microsoft Cloud Environments and Tools to Help Detect This ActivityCISA All NCAS Products Read More »

MS-ISAC Releases Cybersecurity Advisory on Zyxel Firewalls and AP ControllersCISA All NCAS Products

Original release date: January 8, 2021The Multi-State Information Sharing and Analysis Center (MS-ISAC) has released an advisory on a vulnerability in Zyxel firewalls and AP controllers. A remote attacker could exploit this vulnerability to take control of an affected system. CISA encourages users and administrators to review the MS-ISAC Advisory 2021-001 and Zyxel Security Advisory for

MS-ISAC Releases Cybersecurity Advisory on Zyxel Firewalls and AP ControllersCISA All NCAS Products Read More »

Google Releases Security Updates for ChromeCISA All NCAS Products

Original release date: January 7, 2021Google has released Chrome version 87.0.4280.141 for Windows, Mac, and Linux. This version addresses vulnerabilities that an attacker could exploit to take control of an affected system. CISA encourages users and administrators to review the Chrome Release and apply the necessary updates. This product is provided subject to this Notification

Google Releases Security Updates for ChromeCISA All NCAS Products Read More »

Mozilla Releases Security Updates for Firefox, Firefox for Android, and Firefox ESRCISA All NCAS Products

Original release date: January 7, 2021Mozilla has released security updates to address a vulnerability in Firefox, Firefox for Android, and Firefox ESR. An attacker could exploit this vulnerability to take control of an affected system.   CISA encourages users and administrators to review the Mozilla Security Advisory and apply the necessary updates. This product is

Mozilla Releases Security Updates for Firefox, Firefox for Android, and Firefox ESRCISA All NCAS Products Read More »

CISA Updates Emergency Directive 21-01 Supplemental Guidance and Activity Alert on SolarWinds Orion CompromiseCISA All NCAS Products

Original release date: January 6, 2021CISA has released Emergency Directive (ED) 21-01 Supplemental Guidance version 3: Mitigate SolarWinds Orion Code Compromise, providing guidance that supersedes Required Action 4 of ED 21-01 and Supplemental Guidance versions 1 and 2. Federal agencies without evidence of adversary follow-on activity on their networks that accept the risk of running

CISA Updates Emergency Directive 21-01 Supplemental Guidance and Activity Alert on SolarWinds Orion CompromiseCISA All NCAS Products Read More »

NSA Releases Guidance on Eliminating Obsolete TLS Protocol ConfigurationsCISA All NCAS Products

Original release date: January 5, 2021The National Security Agency (NSA) has released a Cybersecurity Information (CSI) sheet on eliminating obsolete Transport Layer Security (TLS) configurations. The information sheet identifies strategies to detect obsolete cipher suites and key exchange mechanisms, discusses recommended TLS configurations, and provides remediation recommendations for organizations using obsolete TLS configurations. CISA encourages

NSA Releases Guidance on Eliminating Obsolete TLS Protocol ConfigurationsCISA All NCAS Products Read More »

Vulnerability Summary for the Week of December 28, 2020CISA All NCAS Products

Original release date: January 4, 2021 The CISA Weekly Vulnerability Summary Bulletin is created using information from the NIST NVD. In some cases, the vulnerabilities in the Bulletin may not yet have assigned CVSS scores. Please visit NVD for updated vulnerability entries, which include CVSS scores once they are available. High Vulnerabilities Primary Vendor —

Vulnerability Summary for the Week of December 28, 2020CISA All NCAS Products Read More »

Vulnerability Summary for the Week of December 21, 2020CISA All NCAS Products

Original release date: December 28, 2020 The CISA Weekly Vulnerability Summary Bulletin is created using information from the NIST NVD. In some cases, the vulnerabilities in the Bulletin may not yet have assigned CVSS scores. Please visit NVD for updated vulnerability entries, which include CVSS scores once they are available. High Vulnerabilities Primary Vendor —

Vulnerability Summary for the Week of December 21, 2020CISA All NCAS Products Read More »

CISA Releases Free Detection Tool for Azure/M365 EnvironmentCISA All NCAS Products

Original release date: December 24, 2020CISA has created a free tool for detecting unusual and potentially malicious activity that threatens users and applications in an Azure/Microsoft O365 environment. The tool is intended for use by incident responders and is narrowly focused on activity that is endemic to the recent identity- and authentication-based attacks seen in

CISA Releases Free Detection Tool for Azure/M365 EnvironmentCISA All NCAS Products Read More »

CISA Releases CISA Insights and Creates Webpage on Ongoing APT Cyber ActivityCISA All NCAS Products

Original release date: December 23, 2020CISA is tracking a known compromise involving SolarWinds Orion products that are currently being exploited by a malicious actor. An advanced persistent threat (APT) actor is responsible for compromising the SolarWinds Orion software supply chain, as well as widespread abuse of commonly used authentication mechanisms. If left unchecked, this threat

CISA Releases CISA Insights and Creates Webpage on Ongoing APT Cyber ActivityCISA All NCAS Products Read More »

Scroll to Top