Security News

CISA says SaaS providers in firing line after Commvault zero-day Azure attack
2025-05-23 16:45

Cyberbaddies are coming for your M365 creds, US infosec agency warns The Cybersecurity and Infrastructure Security Agency (CISA) is warning that SaaS companies are under fire from criminals on the...

CISA Warns of Suspected Broader SaaS Attacks Exploiting App Secrets and Cloud Misconfigs
2025-05-23 05:16

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday revealed that Commvault is monitoring cyber threat activity targeting applications hosted in their Microsoft Azure...

CISA has a new No. 2 - but still no official top dog
2025-05-19 22:59

Brain drain, budget cuts, and constant cyberthreats - who wouldn't want this job? The US Cybersecurity and Infrastructure Security Agency (CISA) has a new No. 2: Madhu Gottumukkala, stepping in as...

CISA: Recently fixed Chrome vulnerability exploited in the wild (CVE-2025-4664)
2025-05-16 10:44

A high-severity Chrome vulnerability (CVE-2025-4664) that Google has fixed on Wednesday is being leveraged by attackers, CISA has confirmed by adding the flaw to its Known Exploited...

CISA tags recently patched Chrome bug as actively exploited
2025-05-16 08:13

On Thursday, CISA warned U.S. federal agencies to secure their systems against ongoing attacks exploiting a high-severity vulnerability in the Chrome web browser. [...]

Uncle Sam pulls $2.4B Leidos deal to support CISA after rival alleges foul play
2025-05-14 17:40

Nightwing claims insider intel helped secure lucrative CISA work but US says decision is unrelated The Department of Homeland Security (DHS) scrapped a highly lucrative cybersecurity contract...

'We still have embeds in CISA': CTO of Brit cyber agency talks post-Trump relationship with US counterpart
2025-05-13 14:00

Both agencies seem unbothered despite tech world's clear concerns for US infoseccers CYBERUK The top brass from the UK's cyber agency say everything is business as usual when it comes to the GCHQ...

CISA mutes own website, shifts routine cyber alerts to Musk’s X, RSS, email
2025-05-12 19:04

Cripes, we were only joking when we called Elon's social network the new state media The US government's Cybersecurity and Infrastructure Security Agency (CISA) announced Monday that going...

CISA warns of hackers targeting critical oil infrastructure
2025-05-07 13:17

CISA warned critical infrastructure organizations of "unsophisticated" threat actors actively targeting the U.S. oil and natural gas sectors. [...]

Critical Langflow Flaw Added to CISA KEV List Amid Ongoing Exploitation Evidence
2025-05-06 04:24

A recently disclosed critical security flaw impacting the open-source Langflow platform has been added to the Known Exploited Vulnerabilities (KEV) catalog by the U.S. Cybersecurity and...