The security of IoT and non-general purpose computing devices represents a systemic risk to corporate and national security, experts say.
The Nobelium attackers, who are responsible for the SolarWinds intrusion, have been deploying a new backdoor called FoggyWeb in targeted attacks.
There is active exploitation of the vCenter Server bug disclosed last week, along with mass scanning activity looking for vulnerable servers.
Potential new legislation to update FISMA could codify CISA's role and grant it additional authority.
A joint advisory from the FBI, CISA, and NSA warns that the Conti ransomware operation is still a threat to enterprises, despite some takedowns of its infrastructure.