Security News

CISA Flags Actively Exploited Vulnerability in SonicWall SMA Devices
2025-04-17 05:44

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a security flaw impacting SonicWall Secure Mobile Access (SMA) 100 Series gateways to its Known Exploited...

CVE program gets last-minute funding from CISA – and maybe a new home
2025-04-16 16:54

Feds extend vulnerability nerve-center contract at 11th hour In an 11th-hour reprieve, the US government last night agreed to continue funding the globally used Common Vulnerabilities and...

CISA extends funding to ensure 'no lapse in critical CVE services'
2025-04-16 13:05

CISA says the U.S. government has extended funding to ensure no continuity issues with the critical Common Vulnerabilities and Exposures (CVE) program. [...]

Cyber congressman demands answers before CISA gets cut down to size
2025-04-14 18:56

What's the goal here, Homeland Insecurity or something? As drastic cuts to the US govt's Cybersecurity and Infrastructure Security Agency loom, Rep Eric Swalwell (D-CA), the ranking member of the...

Trump kills clearances for infosec's SentinelOne, ex-CISA boss Chris Krebs
2025-04-10 01:35

Alleges cybersecurity agency was ‘weaponized’ to suppress debunked theories The Trump administration on Wednesday ordered a criminal investigation into alleged censorship conducted by the USA’s...

Wyden blocks Trump's CISA boss nominee, blames cyber agency for 'actively hiding info' about telecom insecurity
2025-04-09 21:13

It worked for in 2018 with Chris Krebs. Will it work again? Uncle Sam's Cybersecurity and Infrastructure Security Agency, aka CISA, has been "actively hiding information" about American...

CISA Warns of CentreStack's Hard-Coded MachineKey Vulnerability Enabling RCE Attacks
2025-04-09 08:00

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a critical security flaw impacting Gladinet CentreStack to its Known Exploited Vulnerabilities (KEV) catalog,...

CISA Adds CrushFTP Vulnerability to KEV Catalog Following Confirmed Active Exploitation
2025-04-08 08:11

A recently disclosed critical security flaw impacting CrushFTP has been added by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) to its Known Exploited Vulnerabilities (KEV)...

As CISA braces for more cuts, threat intel sharing takes a hit
2025-04-08 01:24

Will 'gutting' the civilian defense agency make American cybersecurity great again? Analysis Slashing staff at the US govt's Cybersecurity and Infrastructure Security Agency, aka CISA, and...

CISA and FBI Warn Fast Flux is Powering Resilient Malware, C2, and Phishing Networks
2025-04-07 13:40

Cybersecurity agencies from Australia, Canada, New Zealand, and the United States have published a joint advisory about the risks associated with a technique called fast flux that has been adopted...