AA22-320A: Iranian Government-Sponsored APT Actors Compromise Federal Network, Deploy Crypto Miner, Credential Harvester
Original release date: November 16, 2022SummaryFrom mid-June through mid-July 2022, CISA conducted an incident
10410305-1.v1 JSP Webshell
AR22-314A
CISA Releases SSVC Methodology to Prioritize Vulnerabilities
Original release date: November 10, 2022Today CISA published its guide on Stakeholder-Specific Vulnerability Categorization
Microsoft Releases November 2022 Security Updates
Original release date: November 9, 2022Microsoft has released updates to address multiple vulnerabilities in
CISA Upgrades to TLP 2.0
Original release date: November 1, 2022Today, CISA officially upgraded to Traffic Light Protocol (TLP)
CISA Releases One Industrial Control Systems Advisory
Original release date: November 1, 2022CISA released one Industrial Control Systems (ICS) advisory on
CISA Releases Guidance on Phishing-Resistant and Numbers Matching Multifactor Authentication
Original release date: October 31, 2022CISA has released two fact sheets to highlight threats
Joint CISA FBI MS-ISAC Guide on Responding to DDoS Attacks and DDoS Guidance for Federal Agencies
Original release date: October 28, 2022CISA, the Federal Bureau of Investigation (FBI), and the
CISA Adds Six Known Exploited Vulnerabilities to Catalog
Original release date: October 24, 2022CISA has added six vulnerabilities to its Known Exploited Vulnerabilities