Cybersecurity and Infrastructure Security Agency
Coverage of Cybersecurity and Infrastructure Security Agency in the Nexus archive.
- NJ municipal water systems hit by cyberattacks: officials
New Jersey’s municipal water systems were targeted by cyberattacks this week, according to the New Jersey Office of Homeland Security and Preparedness. The NJCCIC is collaborating with affected utilities and federal agencies like the FBI and Cybersecurity and Infrastructure Security Agency to investigate.
- Expert says Georgia water system attack highlights critical security deficiencies
A possible cyber attack on Georgia's Clayton County water system caused low water pressure and a boil water advisory, with authorities suggesting it may be part of a multistate campaign linked to Iran. Similar attacks targeting water infrastructure have been reported in seven other states, prompting investigations by the FBI and federal agencies.
- FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems
Michigan and Minnesota reported cyberattacks on their water systems, with nine systems in Michigan impacted. The FBI is investigating, and authorities note no public health concerns as all systems operated safely. Federal agencies warned of Iranian hackers targeting U.S. water and critical infrastructure.
- Amid fears of Iranian cyberattacks, Michigan joins Minnesota in reporting hackers targeted water systems. The FBI is now investigating
Michigan and Minnesota reported cyberattacks targeting water systems, with nine systems in Michigan and over 30 in Minnesota affected. The FBI is investigating amid warnings of Iranian hackers targeting U.S. water infrastructure. All systems in Michigan continued to operate safely without public health impacts.
- FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems
Michigan and Minnesota reported cyberattacks on their water systems, with nine systems in Michigan affected. The FBI is investigating potential Iranian involvement, though all systems remain operational without public health risks.
- FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems
Michigan and Minnesota reported cyberattacks on multiple water systems, with the FBI investigating. The attacks occurred amid warnings about Iranian hackers targeting critical infrastructure, but officials stated all systems operated safely without public health risks.
- FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems
The FBI is investigating cyberattacks on nine water systems in Michigan and over 30 in Minnesota, with no public health impacts reported. The attacks follow federal warnings about Iranian hackers targeting critical infrastructure, including water and wastewater systems.
- FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems
Michigan and Minnesota reported cyberattacks on multiple water systems, with Michigan confirming nine affected systems. The FBI is investigating, and federal agencies have warned of Iranian hackers targeting critical infrastructure, though all systems in Michigan remained operational without public health risks.
- FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems
Michigan and Minnesota reported cyberattacks on their water systems, with nine and over 30 systems impacted respectively. The FBI is investigating the attacks, which are linked to warnings about Iranian hackers targeting critical infrastructure. Authorities confirmed all systems remained operational without public health risks.
- Trump blames Tim Walz for water hacks even though it’s probably Iran
Trump blames Governor Tim Walz for cyberattacks on Minnesota's water systems, while the FBI, EPA, and CISA suggest Iran is likely responsible. Trump denies the cyberattack occurred, contradicting the FBI's warning about spreading attacks on infrastructure.
- Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber world
President Donald Trump blamed Minnesota for recent cyberattacks on its water systems, claiming the state's incompetence was to blame, despite U.S. investigators attributing the attacks to Iran. Cybersecurity experts and Minnesota's governor pushed back, asserting the attacks were linked to Iran and criticizing Trump's remarks.
- Minnesota water systems cyberattack: Trump says state to blame, not Iran
President Donald Trump blamed Minnesota's state government for a cyberattack on local water systems, denying Iranian involvement despite U.S. officials investigating the possibility. Minnesota Governor Tim Walz countered that the attack reflects modern cyber warfare, with federal agencies warning of increased threats to water infrastructure. Multiple Minnesota communities were affected, but backup systems mitigated disruptions.
- Cyberattacks on Minnesota water systems investigated as officials warn about Iranian hackers
Cyberattacks targeting over 30 water systems in Minnesota are under investigation, with officials warning that Iranian hackers have been focusing on such systems. The FBI and other agencies have not yet identified the culprits, though similarities in the attacks suggest potential coordination. No water service disruptions were reported, but one city briefly asked residents to conserve water.
- Federal government warns about hackers attacking water systems in Minnesota and elsewhere
The U.S. federal government warns of increased cyberattacks targeting water systems in Minnesota and nationwide, with over 30 systems affected. CISA advises water operators to disconnect systems from the internet, use password protection, and limit remote access. Experts suggest the attacks may involve Iranian hackers and could threaten public health by manipulating water infrastructure, though no safety breaches have been confirmed.
- US investigating if Iran launched cyberattack on Minnesota water facilities
A U.S. cybersecurity agency is investigating a coordinated cyberattack on over 30 municipal water facilities in Minnesota, with potential involvement of Iranian hackers. The Minnesota Information Technology (MNIT) agency is coordinating with federal agencies like the Cybersecurity and Infrastructure Security Agency (CISA) on the investigation.
- Cyberattacks on Minnesota water systems investigated as officials warn about Iranian hackers
Cyberattacks targeted over 30 water systems in Minnesota, with officials suspecting Iranian hackers. The FBI is investigating, and no impact on residents was reported, though one city briefly asked for water conservation. A 2016 case involving Iranian hackers targeting a New York dam is also referenced.
- Cyberattacks on Minnesota water systems investigated as officials warn about Iranian hackers
Cyberattacks targeting over 30 water systems in Minnesota are under investigation, with officials warning about Iranian hackers focusing on critical infrastructure. The FBI and other agencies have not yet identified the perpetrators, though similarities in the attacks suggest potential coordination.
- Cyberattacks on Minnesota water systems investigated as officials warn about Iranian hackers
Cyberattacks targeting over 30 water systems in Minnesota are under investigation, with officials warning about Iranian hackers focusing on critical infrastructure. The FBI and other agencies have not identified a culprit, though similarities in the attacks suggest potential links. No major water service disruptions were reported.
- Cyberattacks on Minnesota water systems investigated as officials warn about Iranian hackers
Cyberattacks targeting over 30 water systems in Minnesota are under investigation, with officials warning about potential Iranian hacker involvement. No impact on residents was reported, though one city temporarily asked for water conservation as authorities assessed the situation. The FBI and other agencies have not publicly identified a culprit but noted Iran's history of targeting critical infrastructure.
- CISA issues recommendations to federal agencies on open-source software security
CISA issued a guidebook for federal agencies on managing open-source software security risks, covering topics like patching and open-source AI models. The guidance, prompted by executive orders from Presidents Biden and Trump, addresses recent OSS attacks and emphasizes assessing code quality and security. An open-source security expert praised the guidance for its practical approach to using open-source software safely.
- Industry’s message on CIRCIA: Please ask us fewer questions about cyberattacks
Industry groups have consistently urged CISA to reduce the scope of the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA), advocating for fewer companies to be covered, fewer incidents reported, and less detailed information shared. CISA has delayed finalizing the rule multiple times, with industry sources doubting a September 2025 completion timeline. The law mandates reporting major cyberattacks within 72 hours and ransomware payments within 24 hours to enhance federal information sharing.
- ANCHOR-CI could fix 20 years of broken government-industry collaboration
CISA introduced ANCHOR-CI to replace the 20-year-old CIPAC framework, aiming to improve government-private sector collaboration on critical infrastructure protection. The new structure addresses gaps created when CIPAC was terminated, enabling cross-sector coordination for cyber threats and natural disasters.
- Trump’s rhetoric is more dangerous than voting machine flaws, experts say
Election officials warn that President Donald Trump's claims about unsafe voting machines are more dangerous than the documented vulnerabilities, as there is no evidence of successful exploitation in elections. Experts emphasize that while flaws exist, public trust in the system is critical, and unfounded rhetoric could undermine confidence in election outcomes.
- READ THE DOCUMENTS: White House releases election integrity files after Trump speech
The White House released election-integrity documents after President Donald Trump's speech, covering alleged voting-system vulnerabilities, China's acquisition of U.S. voter data, a Michigan voter-registration investigation, and noncitizens on voter rolls. The documents, spanning from 2020 to 2026, include intelligence assessments and agency materials supporting Trump's push for election reforms like voter ID requirements.
- READ THE DOCUMENTS: White House releases election integrity files after Trump speech
The White House released election integrity documents following President Donald Trump’s speech, covering alleged vulnerabilities in voting systems, China’s acquisition of U.S. voter data, a Michigan voter-registration investigation, and noncitizens on voter rolls. The files include intelligence assessments, FBI reports, and cybersecurity materials, supporting Trump’s claims about election infrastructure risks and reform needs.
- Trump DHS threatens federal funding cutoff for states that refuse voter-roll security push
Homeland Security Secretary Markwayne Mullin warned states not complying with Trump administration election-security requirements could lose federal funding, with election officials facing fines, penalties, or prison time. DHS identified 250,000 voter records in four states potentially belonging to noncitizens and urged states to join the SAVE program to cross-check voter rolls against federal databases.
- SonicWall customers under threat as attackers exploit 2 zero-days
SonicWall disclosed two zero-day vulnerabilities (CVE-2026-15409 and CVE-2026-15410) being exploited to compromise SMA1000 appliances, with attackers likely targeting ransomware. The vulnerabilities, chained for full system access, were first exploited on June 22, and SonicWall has released patches and mitigation tools.
- White House details ‘Gold Eagle’ clearinghouse for AI cyber threats
The Trump administration launched 'Gold Eagle,' a federal clearinghouse managed by the Treasury Department to share AI-driven cybersecurity threat information between government and private sector entities. The initiative involves collaboration with agencies like CISA, DHS, and DoD, as well as open-source software providers and critical infrastructure operators, aiming to identify and patch vulnerabilities using AI tools.
- Found fast, fixed slow: The gap the AI clearinghouse must close
President Donald Trump's executive order mandated the creation of an AI cybersecurity clearinghouse within 30 days to coordinate vulnerability discovery and patching in critical infrastructure. The article highlights risks that the clearinghouse may become a stalled committee rather than an effective solution, emphasizing the bottleneck between AI-driven vulnerability detection and the slower human processes required for validation, patching, and deployment.
- Trump budget boss Russell Vought open to re-staffing CISA
Trump administration budget chief Russell Vought indicated openness to re-staffing the Cybersecurity and Infrastructure Security Agency (CISA) following personnel cuts. CISA director Markwayne Mullin requested hiring 600 additional personnel, though Vought noted no formal request had been received and emphasized the complexity of federal hiring processes.
- The Forty-Year Cyber Policy Failure Congress Refuses to Address
The article discusses the federal government's failure to address cyber policy gaps, particularly the lack of legislation allowing victims to interrupt ongoing cyberattacks. It highlights a testimony suggesting ransomware operators be designated as terrorists and the reliance on post-harm measures like sanctions and indictments, which have not effectively deterred attacks.
- CISA Tells US Agencies to Fix Security Bugs in as Little as 3 Days Thanks to AI Threats
CISA has directed US agencies to address security vulnerabilities within three days due to AI-related threats. A CISA official emphasized the urgency, stating that defenders cannot afford prolonged patching timelines.
- CISA directive orders agencies to prioritize vulnerability patching in a new way
CISA ordered federal agencies to prioritize vulnerability patching based on four criteria, including public exposure and automation potential. Agencies must adhere to timelines for remediation, with urgent fixes required for vulnerabilities meeting all four criteria. The directive aims to address AI-driven increases in vulnerability discovery and exploitation.
- Cisco customers encounter another SD-WAN zero-day under attack
Cisco customers are facing another actively exploited zero-day vulnerability (CVE-2026-20245) in its SD-WAN management software, marking the seventh such exploit this year. The flaw allows authenticated attackers to execute commands as root, but Cisco warns no patch or workaround is currently available, and exploitation requires existing credentials or prior vulnerabilities.
- Hill Dems hammer GOP for $250M CISA budget cut
House Democrats criticized a draft Republican Department of Homeland Security spending bill that would reduce Cybersecurity and Infrastructure Security Agency (CISA) funding by $250 million. Republicans defended the bill, stating it provides $2.4 billion for CISA and includes strategic reductions to redundant programs. The bill is set for a subcommittee vote Friday.
- Trump considers Palantir exec to lead CISA
Trump is considering Shyam Sankar, a Palantir Technologies executive, for the director role at the Cybersecurity and Infrastructure Security Agency (CISA). The selection is being discussed by anonymous sources within the administration.
- DHS Secretary Markwayne Mullin pinpoints optimal CISA staffing levels
DHS Secretary Markwayne Mullin stated the optimal staffing level for CISA is 2,800, down from 3,400 before the second Trump administration and up from the current 2,200. Trump's proposed fiscal 2027 budget includes cuts to CISA, drawing bipartisan criticism, while Mullin emphasized reliance on public partnerships to maintain mission effectiveness. A House Appropriations subcommittee is set to consider a DHS funding bill.
- Trump administration releases scaled-back AI executive order
The Trump administration released a revised executive order on artificial intelligence that reduces federal oversight compared to a previous draft. The order maintains a voluntary framework for AI companies to share models with the government for up to 30 days, avoids mandatory requirements, and emphasizes protecting innovation from regulatory burdens.
- Trump quietly signs new AI executive order
President Trump signed a new executive order on artificial intelligence and cybersecurity, directing national security agencies to enhance cybersecurity capabilities and establish a cybersecurity clearinghouse. The order avoids mandatory government licensing for AI models and follows the cancellation of a stricter version that Trump claimed could harm American competitiveness.
- Attackers are exploiting Palo Alto Networks defect that initially flew under the radar
Palo Alto Networks' CVE-2026-0257 vulnerability, initially rated medium severity, was escalated to critical after active exploitation was confirmed. Attackers exploit the flaw to bypass authentication and establish unauthorized VPN connections, leveraging a publicly available TLS certificate to forge valid authentication cookies.