Tag: CISA

Here you will find all the articles with the tag: CISA.

Default passwords are main threat to businesses

Default passwords are main threat to businesses

The digital entrance to businesses is still too often open due to default passwords. This culprit is identified by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the National Security Agency (NSA). Too many employees do not change the default passwords they get to use soft... Read more

date2 months ago
Backdoor malware targets unrecoverable Barracuda ESG appliances

Backdoor malware targets unrecoverable Barracuda ESG appliances

A new backdoor malware has targeted Barracuda's Email Security Gateway (ESG) appliances. Customers who have not yet replaced the unrecoverable appliances will have to hurry. CISA discovered the backdoor malware "Whirlpool" designed to exploit the vulnerability in Barracuda's ESG appliances. Thi... Read more

date4 months ago
CISA concerned about bootloader malware that makes your PC garbage

CISA concerned about bootloader malware that makes your PC garbage

CISA warns of an attack that abuses a component that every computer contains: the bootloader. A type of malware is spread that targets the Unified Extensible Firmware Interface (UEFI). UEFI-based malware has already been used in the BlackLotus campaign. This campaign came on the radar of cybers... Read more

date4 months ago
Fortinet and Microsoft lead list of most abused exploits of 2022

Fortinet and Microsoft lead list of most abused exploits of 2022

A flaw in Fortinet software is the most abused vulnerability of 2022, as a recent survey by U.S. security and cybersecurity agencies showed. Microsoft also grossed in the number of commonly abused exploits. In their overview, the security services FBI, NSA and cybersecurity watchdog CISA indicat... Read more

date4 months ago
Google unveils new ChromeOS security controls

Google unveils new ChromeOS security controls

The new features are designed to conform with the latest US federal guidelines for cybersecurity. This week Google introduced a new set of cybersecurity features for ChromeOS designed specifically to help businesses secure their critical data. ChromeOS is an operating system uses the Chrome b... Read more

date8 months ago
CISA is renewing its warning about attacks leveraging RMM tools

CISA is renewing its warning about attacks leveraging RMM tools

The US Cybersecurity and Infrastructure Security Agency (CISA) is sounding the alarm about a significant threat that's been brewing for a while now - the malicious use of remote management tools. Last fall, a massive cyberattack campaign used legitimate remote management software, which was quit... Read more

date10 months ago
US issues warning advisory about Hive ransomware

US issues warning advisory about Hive ransomware

Hive ransomware gangs have cost businesses over $100 million, according to the FBI. This week, the US Cybersecurity and Infrastructure Security Agency (CISA) issued an alert (number AA22-321A) about Hive ransomware. The advisory was issued in cooperation with the Federal Bureau of Investigation ... Read more

date1 year ago
‘The most common malware variants are almost 20 years old’

‘The most common malware variants are almost 20 years old’

CISA and ACSC shared an overview of the 11 most common malware variants of 2021. Most variants have been active for years. The list includes ransomware, remote access trojans (RATs), banking trojans and information stealers. Most variants have been active for more than five years. Cybercriminal... Read more

date1 year ago
CISA issues warning about VMware and F5 vulnerabilities

CISA issues warning about VMware and F5 vulnerabilities

The threats could impact a large number of companies, the agency says. The U.S. Cybersecurity and Infrastructure Security Agency has issued alerts about five software vulnerabilities that likely affect a large number of organizations. Four of the vulnerabilities were found in VMware Inc. prod... Read more

date2 years ago
1 2