CISA Releases Security Advisories for Rockwell Automation Products

CISA Releases Security Advisories for Rockwell Automation Products 03/31/2022 01:27 PM EDT Original release date: March 31, 2022 CISA has released two Industrial Controls Systems Advisories (ICSAs) detailing vulnerabilities in Rockwell Automation products. An attacker could exploit these vulnerabilities to inject code on affected system.  CISA encourages users and administrators to review ICSA-22-090-05: Rockwell Automation Logix …

FBI Releases PIN on Ransomware Straining Local Governments and Public Services

FBI Releases PIN on Ransomware Straining Local Governments and Public Services 03/31/2022 11:00 AM EDT Original release date: March 31, 2022 The Federal Bureau of Investigation (FBI) has released a Private Industry Notification (PIN) to inform U.S. Government Facilities Sector partners of cyber actors conducting ransomware attacks on local government agencies that have resulted in …

CISA Adds Eight Known Exploited Vulnerabilities to Catalog

CISA Adds Eight Known Exploited Vulnerabilities to Catalog 03/31/2022 10:00 AM EDT Original release date: March 31, 2022 CISA has added eight new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the …

Google Releases Security Updates for Chrome

Google Releases Security Updates for Chrome 03/30/2022 09:00 AM EDT Original release date: March 30, 2022 Google has released Chrome version 100.0.4896.60 for Windows, Mac, and Linux. This version addresses vulnerabilities that an attacker could exploit to take control of an affected system.  CISA encourages users and administrators to review the Chrome Release Note and apply …

Improvements to Email Notifications

At the Cybersecurity and Infrastructure Agency (CISA), we are vigilant about finding innovative ways to get you the most actionable cyber threat information when you need it most. CISA has made improvements to email notifications and want to inform you that our subscriber content lists have been updated. The previous National Cybersecurity Awareness alert topics …

Mitigating Attacks Against Uninterruptable Power Supply Devices

Mitigating Attacks Against Uninterruptable Power Supply Devices 03/29/2022 10:45 AM EDT Original release date: March 29, 2022 CISA and the Department of Energy (DOE) are aware of threat actors gaining access to a variety of internet-connected uninterruptable power supply (UPS) devices, often through unchanged default usernames and passwords. Organizations can mitigate attacks against their UPS …

CISA Adds 32 Known Exploited Vulnerabilities to Catalog

CISA Adds 32 Known Exploited Vulnerabilities to Catalog 03/28/2022 11:47 AM EDT Original release date: March 28, 2022 CISA has added 32 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the …