CISA Adds Single-Factor Authentication to list of Bad Practices

Original release date: August 30, 2021Today, CISA added the use of single-factor authentication for remote or administrative access systems to our Bad Practices list of exceptionally risky cybersecurity practices. Single-factor authentication…

Comments Off on CISA Adds Single-Factor Authentication to list of Bad Practices

Microsoft Azure Cosmos DB Guidance

Original release date: August 27, 2021CISA is aware of a misconfiguration vulnerability in Microsoft’s Azure Cosmos DB that may have exposed customer data. Although the misconfiguration appears to have been…

Comments Off on Microsoft Azure Cosmos DB Guidance

 ICSJWG 2021 Fall Virtual Meeting

Original release date: August 27, 2021The Industrial Control Systems Joint Working Group (ICSJWG) will hold the virtual 2021 ICSJWG Fall Meeting, September 21—22, 2021. ICSJWG meetings facilitate relationship building among…

Comments Off on  ICSJWG 2021 Fall Virtual Meeting

Cisco Releases Security Updates for Multiple Products

Original release date: August 26, 2021Cisco has released security updates to address vulnerabilities in multiple Cisco products. An attacker could exploit some of these vulnerabilities to take control of an…

Comments Off on Cisco Releases Security Updates for Multiple Products

VMware Releases Security Updates for Multiple Products 

Original release date: August 25, 2021VMware has released security updates to address vulnerabilities in multiple products. An attacker could exploit some of these vulnerabilities to take control of an affected…

Comments Off on VMware Releases Security Updates for Multiple Products 

OpenSSL Releases Security Update 

Original release date: August 25, 2021OpenSSL has released a security update to address vulnerabilities affecting versions 1.1.1k and below. An attacker could exploit these vulnerabilities to cause a denial-of-service condition.…

Comments Off on OpenSSL Releases Security Update 

F5 Releases August 2021 Security Advisory

Original release date: August 25, 2021F5 has released a security advisory on vulnerabilities affecting multiple versions of BIG-IP and BIG-IQ for August 2021. CISA encourages users and administrators to review…

Comments Off on F5 Releases August 2021 Security Advisory