Opening Statement by CISA Director Jen Easterly

  • Post author:
  • Post category:

January 31, 2024,Chairman Gallagher, Ranking Member Krishnamoorthi, Members of the Committee, thank you for the opportunity to testify on CISA’s efforts to protect the Nation from the preeminent cyber threat posed by the People’s Republic of China. As America’s civilian cyber defense agency and the National Coordinator for critical infrastructure security and resilience, CISA has

Continue ReadingOpening Statement by CISA Director Jen Easterly

CISA Adds One Known Exploited Vulnerability to Catalog

  • Post author:
  • Post category:

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2024-21893 Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise. Binding Operational Directive (BOD) 22-01:

Continue ReadingCISA Adds One Known Exploited Vulnerability to Catalog

CISA and FBI Release Secure by Design Alert Urging Manufacturers to Eliminate Defects in SOHO Routers

  • Post author:
  • Post category:

Today, CISA and the Federal Bureau of Investigation (FBI) published guidance on Security Design Improvements for SOHO Device Manufacturers as a part of the new Secure by Design (SbD) Alert series that focuses on how manufacturers should shift the burden of security away from customers by integrating security into product design and development. This third

Continue ReadingCISA and FBI Release Secure by Design Alert Urging Manufacturers to Eliminate Defects in SOHO Routers

CISA Adds One Known Exploited Vulnerability to Catalog

  • Post author:
  • Post category:

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2022-48618 Apple Multiple Products Improper Authentication Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise. Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known

Continue ReadingCISA Adds One Known Exploited Vulnerability to Catalog

US Department of Labor announces updates for former nuclear weapons workers seeking benefits related to toxic beryllium exposure

  • Post author:
  • Post category:

WASHINGTON – The U.S. Department of Labor today announced an updated procedure for determining whether nuclear weapons workers qualify for benefits related to beryllium exposure under the Energy Employees Occupational Illness Compensation Act. The update implements provisions of the Beryllium Testing Fairness Act, signed into law by President Biden as part of the National Defense

Continue ReadingUS Department of Labor announces updates for former nuclear weapons workers seeking benefits related to toxic beryllium exposure