Let Us Create A Free Data Management Plan For You!
Get your data connected to an IT STAR!
StarDM is not affiliated with nor a partner of CISA – This information is provided as a convenience for informational purposes only
CISA’s Zero Trust Guidance for Enterprise Mobility Available for Public Comment
Original release date: March 7, 2022CISA has released a draft version of Applying Zero Trust Principles to Enterprise Mobility for public comment. The paper guides federal agencies as they evolve and operationalize cybersecurity programs and capabilities,
CISA Adds 11 Known Exploited Vulnerabilities to Catalog
Original release date: March 7, 2022CISA has added 11 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence that threat actors are actively exploiting the vulnerabilities listed in the table below. These types
NSA Releases Network Infrastructure Security Guidance
Original release date: March 3, 2022The National Security Agency (NSA) has released a new Cybersecurity Technical Report (CTR): Network Infrastructure Security Guidance. The report captures best practices based on the depth and breadth of experience
CISA Adds 95 Known Exploited Vulnerabilities to Catalog
Original release date: March 3, 2022CISA has added 95 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber
Broadcom Software Discloses APT Actors Deploying Daxin Malware in Global Espionage Campaign
Original release date: February 28, 2022Broadcom Software—an industry member of CISA’s Joint Cyber Defense Collaborative (JCDC)—uncovers an advanced persistent threat (APT) campaign against select governments and other critical infrastructure targets in a publication titled Daxin:
CISA Releases Advisory on Destructive Malware Targeting Organizations in Ukraine
Original release date: February 26, 2022CISA and the Federal Bureau of Investigation have released an advisory on destructive malware targeting organizations in Ukraine. The advisory also provides recommendations and strategies to prepare for and respond to
AA22-057A: Destructive Malware Targeting Organizations in Ukraine
Original release date: February 26, 2022SummaryActions to Take Today: • Set antivirus and antimalware programs to conduct regular scans. • Enable strong spam filters to prevent phishing emails from reaching end users. • Filter network
Iranian Government-Sponsored MuddyWater Actors Conducting Malicious Cyber Operations
Original release date: February 24, 2022CISA, the Federal Bureau of Investigation (FBI), U.S. Cyber Command Cyber National Mission Force (CNMF), the United Kingdom’s National Cyber Security Centre (NCSC-UK), and the National Security Agency (NSA) have
MAR–10369127–1.v1 – MuddyWater
AR22-055A