Cybersecurity and Infrastructure Security Agency CISA News

How Russian Military Uses ‘Brute Force’ to Hack U.S. Government, Companies

U.S. and British agencies disclosed last week details of “brute force” methods they say have been used by Russian intelligence to try to break into the cloud services of hundreds of government agencies, energy companies and other organizations. An advisory …

New U.S. Rules Require Pipelines to Report Cyber Incidents, Mitigate Risks

The Department of Homeland Security issued a new security directive for pipeline owners and operators on Thursday after a hack of the Colonial Pipeline disrupted fuel supplies in the southeastern United States for days this month. “The recent ransomware attack …

Microsoft Flaw Exposes as Many as 60,000 Computer Systems in Germany

BERLIN – As many as 60,000 computer systems in Germany were exposed to a flaw that allows unauthorized users to access systems in Microsoft Corp.’s email software, the head of its cyber-security watchdog said on Wednesday. More than half of …

China’s Microsoft Hack, Russia’s SolarWinds Attack Threaten to Overwhelm U.S.

China’s global attack on Microsoft’s popular email software revealed last week and an equally sprawling Russian attack discovered three months ago have created a two-front war that threatens to overwhelm cybersecurity’s emergency responders, according to former U.S. officials and private …

Hacks of Microsoft Outlook Email Program Continue Despite Patch

More than 20,000 U.S. organizations have been compromised through a back door installed via recently patched flaws in Microsoft Corp.’s email software, a person familiar with the U.S. government’s response said on Friday. The hacking has already reached more places …

Homeland Security Reports Ransomware Attack Shut Gas Pipeline Facility for Two Days

The U.S. Department of Homeland Security has alerted energy and other infrastructure firms to review their cybersecurity after a ransomware attack interrupted a natural gas compression facility. The attack caused the unidentified pipeline facility to lose access and visibility to …

China Tops List of U.S. Cybersecurity Agency’s Top Risks

A newly created U.S. cybersecurity agency said Thursday that China represents the greatest strategic risk to the U.S., and as a result, the agency’s top operational priority is reducing the risks from Chinese compromises to the global supply chain, including …