KEV

CISA warns of max severity Ubiquiti flaws exploited in attacks News

CISA warns of max severity Ubiquiti flaws exploited in attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of hackers actively exploiting flaws in Ubiq...
CISA warns of active attacks exploiting Android, Linux bugs News

CISA warns of active attacks exploiting Android, Linux bugs

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are exploiting vulnerabilities ...
10億件のCISA KEV修復記録の分析が明らかにしたヒューマン・スケールのセキュリティの限界 News

10億件のCISA KEV修復記録の分析が明らかにしたヒューマン・スケールのセキュリティの限界

著者Qualys 脅威リサーチユニット シニアマネージャー Saeed Abbasi 氏 Time-to-Exploitがマイナス7日となり、自律的なAIエージェントが脅威を加速させている現在、データはもはや段階的な改善をサポートしません。...
CISA orders feds to patch max-severity Cisco flaw by Sunday News

CISA orders feds to patch max-severity Cisco flaw by Sunday

The Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity vul...
CISA confirms active exploitation of four enterprise software bugs News

CISA confirms active exploitation of four enterprise software bugs

The Cybersecurity and Infrastructure Security Agency (CISA) in the U.S. warned of active exploitation of four vulnerabil...
CISA、攻撃に悪用されたCentOS Web Panelの重大なバグについて警告 News

CISA、攻撃に悪用されたCentOS Web Panelの重大なバグについて警告

米国サイバーセキュリティ&インフラセキュリティ局(CISA)は、脅威行為者が CentOS Web Panel(CWP)の重大なリモートコマンド実行の欠陥を悪用していると警告している。 同庁は、この脆弱性を既知の悪用される脆弱性(KEV)カ...
CISAはCitrix Bleed 2を悪用されたとタグ付けし、各機関に1日以内にパッチを当てるよう指示した。 News

CISAはCitrix Bleed 2を悪用されたとタグ付けし、各機関に1日以内にパッチを当てるよう指示した。

米国サイバーセキュリティ&インフラストラクチャセキュリティ局は、Citrix NetScaler ADCおよびGatewayにおけるCitrixBleed 2の脆弱性(CVE-2025-5777)の活発な悪用を確認し、連邦政府機関に修正パッ...
CISA warns of ConnectWise ScreenConnect bug exploited in attacks News

CISA warns of ConnectWise ScreenConnect bug exploited in attacks

CISA is alerting federal agencies in the U.S. of hackers exploiting a recently patched ScreenConnect vulnerability that ...
CISA、Broadcom Fabric OSとCommVaultの欠陥が攻撃に悪用されたとタグ付け News

CISA、Broadcom Fabric OSとCommVaultの欠陥が攻撃に悪用されたとタグ付け

米サイバーセキュリティ&インフラセキュリティ局(CISA)は、Broadcom Brocade Fabric OS、Commvault Webサーバー、Qualitia Active!メールクライアントの脆弱性が攻撃で積極的に悪用されている...
CentreStack RCEがゼロデイとして悪用され、ファイル共有サーバーに侵入される News

CentreStack RCEがゼロデイとして悪用され、ファイル共有サーバーに侵入される

ハッカーは3月以降、Gladinet CentreStackの安全なファイル共有ソフトウェアの脆弱性をゼロデイとして悪用し、ストレージサーバーに侵入した。 Gladinet CentreStackは、オンプレミスのファイルサーバー(SMB共...