CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats
WASHINGTON – The Cybersecurity and Infrastructure Security Agency (CISA) released today the updated Insider Threat Mitigation Guide which provides security support consistent with our statutory mission. The guide gives organizations a current look at…
CISA, NSA and FBI Warn of China-Based AI Companies Targeting US AI Models with Industrial-Scale Knowledge Distillation Campaigns to Shortcut AI Development
WASHINGTON – The Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with the National Security Agency (NSA) and Federal Bureau of Investigation (FBI), released a joint cybersecurity advisory today warning of China-based artificial…
CISA Advisory Highlights Red Team Findings to Help Organizations Assess Risk, Identify Threats and Enable Effective Incident Response
WASHINGTON – Today, the Cybersecurity and Infrastructure Security Agency (CISA) published an advisory about lessons learned from red team assessments performed at the request of two critical infrastructure organizations to help organizations strengthen…
CISA Releases Foundational, Flexible Guidance to Help Federal Agencies Implement Effective Logging, Visibility and Operational Standards
WASHINGTON – Today, the Cybersecurity and Infrastructure Security Agency (CISA) published the Logging Reference Architecture, an outcome-driven guide for federal civilian executive branch (FCEB) agencies to establish logging, visibility and operational…
CISA Unveils New Cybersecurity Resources for K-12 Schools and Districts
WASHINGTON – The Cybersecurity and Infrastructure Security Agency (CISA) today released the K-12 Cybersecurity Foundations Resource Package, a comprehensive collection of guides, videos and supplemental materials to help K‑12 schools and districts…
CISA, FBI and Partners Warn Organizations of Gunra Ransomware Actors Targeting Multiple Critical Infrastructure Sectors
WASHINGTON – The Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), Department of Defense Cyber Crime Center (DC3), National Security Agency (NSA), U.S. Secret Service (USSS), and Republic of Korea’s…
CISA Guide Helps Federal Agencies Securely and Effectively Use Open Source Software
WASHINGTON – Today, the Cybersecurity and Infrastructure Security Agency (CISA) published Open Source Software: Security Principles and Practices, a new resource for federal agencies with considerations and best practices to use and assess Open Source…
CISA and Partners Unveil Updated Software Bill of Materials Resource That Improves Transparency, Security and Risk-Informed Decision Making
WASHINGTON – The Cybersecurity and Infrastructure Security Agency (CISA), together with other U.S. government agencies and international organizations, released 2026 Minimum Elements for a Software Bill of Materials (SBOM), which incorporates feedback…
CISA Joins Australia and Others to Publish Guidance to Isolate Operational Technology and Enabling Systems in Critical Infrastructure
WASHINGTON – The Cybersecurity and Infrastructure Security Agency, Australian Signals Directorate (ASD), United Kingdom’s National Cyber Security Centre (NCSC-UK), and Canadian Centre for Cyber Security (CCCS) published CI Fortify – Advice for…
CISA, NSA, FBI and Partners Warn Zimbra Collaboration Suite Users of Ongoing Russian State-Supported Malicious Threat Activity
WASHINGTON – Today, the Cybersecurity and Infrastructure Security Agency (CISA), National Security Agency (NSA), Federal Bureau of Investigation (FBI) and other U.S. government and international partners published a joint Cybersecurity Advisory,…