Tag: federal agencies

CISA pushes federal agencies to patch Citrix RCE within a week
News

CISA pushes federal agencies to patch Citrix RCE within a week

In addition to demanding that a Citrix RCE flaw be fixed within a week, CISA today mandated that U.S. federal entities safeguard their systems against three newly patched Citrix NetScaler and Google Chrome zero-days that are actively being used in attacks. According to the cybersecurity agency, these vulnerabilities are "frequent attack vectors for malicious cyber actors" and provide "significant risks to the federal enterprise." It has added the holes to its list of known exploited vulnerabilities. On Tuesday, Citrix advised users to patch their Netscaler ADC and Gateway appliances that are exposed to the Internet right away. These appliances are vulnerable to denial-of-service attacks and remote code execution via the CVE-2023-6548 code injection vulnerability read more CISA pushe...
Biden executive order bans federal agencies from using commercial spyware
News

Biden executive order bans federal agencies from using commercial spyware

A new executive order that would generally prohibit the use of commercially produced spyware by U.S. federal agencies that endangers human rights and national security was unveiled by the Biden administration on Monday. Federal agencies, such as law enforcement, defense, and intelligence, will now be prohibited from using commercial spyware, according to officials, who also confirmed that dozens of U.S. government employees' phones had been targeted. The dangers posed by commercial spyware, which is produced in the private sector and sold almost exclusively to governments and nation-states, have been raised for years by human rights advocates and security researchers read more Biden executive order bans federal agencies from using commercial spyware. Stay informed with the best c...