CISA Releases Roadmap for Artificial Intelligence Adoption

  • Post author:
  • Post category:

An official website of the United States government Official websites use .gov A .gov website belongs to an official government organization in the United States. Secure .gov websites use HTTPS A lock ( Lock A locked padlock ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure

Continue ReadingCISA Releases Roadmap for Artificial Intelligence Adoption

US Department of Labor recovers $532K in back wages for 67 workers after Montgomery home care employer misclassifies them as contractors

  • Post author:
  • Post category:

MONTGOMERY, AL – Federal investigators have recovered $532,842 in back wages and liquidated damages from a Montgomery home healthcare business that misclassified 67 employees as independent contractors, and incurred overtime wage violations as a result. U.S. Department of Labor  Wage and Hour Division investigators found Jennings Professional Services, an in-home, day and overnight healthcare provider, paid

Continue ReadingUS Department of Labor recovers $532K in back wages for 67 workers after Montgomery home care employer misclassifies them as contractors

CISA Adds Three Known Exploited Vulnerabilities to Catalog

  • Post author:
  • Post category:

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2023-36033 Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability CVE-2023-36025 Microsoft Windows SmartScreen Security Feature Bypass Vulnerability CVE-2023-36036 Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability These types of vulnerabilities are frequent attack vectors for malicious

Continue ReadingCISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA Releases Two Industrial Control Systems Advisories

  • Post author:
  • Post category:

CISA released two Industrial Control Systems (ICS) advisories on November 14, 2023. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-23-318-01 AVEVA Operations Control Logger ICSA-23-318-02 Rockwell Automation SIS Workstation and ISaGRAF Workbench CISA encourages users and administrators to review the newly released ICS advisories for technical details and

Continue ReadingCISA Releases Two Industrial Control Systems Advisories

Rockwell Automation SIS Workstation and ISaGRAF Workbench

  • Post author:
  • Post category:

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 7.8 ATTENTION: Low attack complexity Vendor: Rockwell Automation Equipment: SIS Workstation and ISaGRAF Workbench Vulnerability: Improper Input Validation 2. RISK EVALUATION Successful exploitation of this vulnerability could allow unprivileged local users to overwrite files replacing them with malicious programs. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS Rockwell Automation reports

Continue ReadingRockwell Automation SIS Workstation and ISaGRAF Workbench