#cisa — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #cisa, aggregated by home.social.
-
‘The Worst Leak I’ve Witnessed’: A CISA Contractor Left AWS GovCloud Credentials Sitting In A Public GitHub Repo
-
CISA Mandates Patching of Exploited Drupal Vulnerability
The US Cybersecurity and Infrastructure Security Agency has issued a directive requiring federal agencies to patch a critical Drupal vulnerability, known as CVE-2026-9082, by May 27 to prevent devastating SQL injection attacks. This highly critical flaw allows hackers to exploit PostgreSQL-powered Drupal sites and gain unauthorized access to…
#DrupalVulnerability #Cve20269082 #SqlInjection #PatchManagement #Cisa
-
BESS dominates CIS Tender 7 as hybrid projects secure 7.9GWh https://www.byteseu.com/2053235/ #ASL #Australia #BatteryStorage #BESS #CapacityInvestmentScheme #cis #CISA #CoLocation #Energy #EnergyStorage #energystorageaus #nem #NewSouthWales #SolarPlusStorage #SouthAustralia #StorageAus #tasmania #Victoria
-
BESS dominates CIS Tender 7 as hybrid projects secure 7.9GWh
BESS dominates CIS Tender 7 as hybrid projects secure 7.9GWh – Energy-Storage.News
Skip to content
#Energy #ASL #australia #batterystorage #BESS #capacityinvestmentscheme #CIS #CISA #co-location #energystorage #energystorageaus #nem #newsouthwales #solarplusstorage #SouthAustralia #StorageAus #tasmania #victoria
https://www.europesays.com/3017423/ -
📢 CVE-2026-9082 : Injection SQL dans Drupal JSON:API ajoutée au catalogue KEV de la CISA
📝 ## 🗓️ ContexteSource : CrowdSec VulnTracking, publié le 25 mai 2026.
📖 cyberveille : https://cyberveille.ch/posts/2026-05-25-cve-2026-9082-injection-sql-dans-drupal-json-api-ajoutee-au-catalogue-kev-de-la-cisa/
🌐 source : https://www.crowdsec.net/vulntracking-report/cve-2026-9082-drupal-jsonapi-sql-injection?
#CISA #CMS #Cyberveille -
Australia awards 7.8GW of renewable energy under CIS Tender 7
Eight of the 19 selected projects are hybrid developments, combining wind or solar generation with battery storage to…
#Energy #ASL #australia #BESS #capacityinvestmentscheme #CIS #CISA #energystorage #grid #nem #newsouthwales #pvpowerplants #queensland #solarplusstorage #solarpv #SouthAustralia #tasmania #victoria
https://www.europesays.com/3015471/ -
📰 CISA Contractor Leaks AWS GovCloud Keys and Internal System Credentials on Public GitHub Repo
‼️ MAJOR LAPSE: A CISA contractor leaked plaintext AWS GovCloud keys & internal system credentials on a public GitHub repo for months. The incident has sparked a congressional inquiry into the agency's security practices. #CISA #DataBreach #GovCloud
🌐 cyber[.]netsecops[.]io
🔗 https://cyber.netsecops.io/articles/cisa-contractor-leaks-govcloud-keys-on-public-github-sparking…
-
"KrebsOnSecurity has learned that more a week after CISA was first notified of the data leak by the security firm GitGuardian, the agency is still working to invalidate and replace many of the exposed keys and secrets."
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
"KrebsOnSecurity has learned that more a week after CISA was first notified of the data leak by the security firm GitGuardian, the agency is still working to invalidate and replace many of the exposed keys and secrets."
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
"KrebsOnSecurity has learned that more a week after CISA was first notified of the data leak by the security firm GitGuardian, the agency is still working to invalidate and replace many of the exposed keys and secrets."
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
"KrebsOnSecurity has learned that more a week after CISA was first notified of the data leak by the security firm GitGuardian, the agency is still working to invalidate and replace many of the exposed keys and secrets."
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
"KrebsOnSecurity has learned that more a week after CISA was first notified of the data leak by the security firm GitGuardian, the agency is still working to invalidate and replace many of the exposed keys and secrets."
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
Lawmakers Demand Answers as #CISA Tries to Contain Data #Leak
#privacy #securityhttps://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
Lawmakers Demand Answers as #CISA Tries to Contain Data #Leak
#privacy #securityhttps://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
Lawmakers Demand Answers as #CISA Tries to Contain Data #Leak
#privacy #securityhttps://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
Lawmakers Demand Answers as #CISA Tries to Contain Data #Leak
#privacy #securityhttps://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
Lawmakers Demand Answers as #CISA Tries to Contain Data #Leak
#privacy #securityhttps://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
-
CISA exposed plaintext passwords, cloud keys, and access tokens in a public GitHub repository tied to a government contractor account. 🔓
A researcher confirmed some credentials were valid, raising concerns over federal cloud security and contractor oversight at the US cyber agency. ☁️#TechNews #CISA #Cybersecurity #GitHub #CloudSecurity #Passwords #Infosec #Privacy #Security #DataBreach #OpenSource #GovTech #Cloud #USA #US #Tech #Government #Federal
-
CISA exposed plaintext passwords, cloud keys, and access tokens in a public GitHub repository tied to a government contractor account. 🔓
A researcher confirmed some credentials were valid, raising concerns over federal cloud security and contractor oversight at the US cyber agency. ☁️#TechNews #CISA #Cybersecurity #GitHub #CloudSecurity #Passwords #Infosec #Privacy #Security #DataBreach #OpenSource #GovTech #Cloud #USA #US #Tech #Government #Federal
-
CISA exposed plaintext passwords, cloud keys, and access tokens in a public GitHub repository tied to a government contractor account. 🔓
A researcher confirmed some credentials were valid, raising concerns over federal cloud security and contractor oversight at the US cyber agency. ☁️#TechNews #CISA #Cybersecurity #GitHub #CloudSecurity #Passwords #Infosec #Privacy #Security #DataBreach #OpenSource #GovTech #Cloud #USA #US #Tech #Government #Federal
-
CISA exposed plaintext passwords, cloud keys, and access tokens in a public GitHub repository tied to a government contractor account. 🔓
A researcher confirmed some credentials were valid, raising concerns over federal cloud security and contractor oversight at the US cyber agency. ☁️#TechNews #CISA #Cybersecurity #GitHub #CloudSecurity #Passwords #Infosec #Privacy #Security #DataBreach #OpenSource #GovTech #Cloud #USA #US #Tech #Government #Federal
-
CISA exposed plaintext passwords, cloud keys, and access tokens in a public GitHub repository tied to a government contractor account. 🔓
A researcher confirmed some credentials were valid, raising concerns over federal cloud security and contractor oversight at the US cyber agency. ☁️#TechNews #CISA #Cybersecurity #GitHub #CloudSecurity #Passwords #Infosec #Privacy #Security #DataBreach #OpenSource #GovTech #Cloud #USA #US #Tech #Government #Federal
-
CISA Faces Scrutiny Over Leaked Credentials
The US Cybersecurity and Infrastructure Security Agency (CISA) is under fire after dozens of its internal credentials were accidentally exposed on a public GitHub account, sparking concerns over potential security breaches. Despite the agency's assurance that no sensitive data was compromised, lawmakers and experts are demanding answers on how this incident…
#Cisa #CredentialLeak #Github #EmergingThreats #GovernmentAgencies
-
مُفاجأة أمنية: وكالة CISA علنت عن تسريب بيانات اعتماد AWS GovCloud داخل مستودع على GitHub عام.
⚠️ الخبر يوضح كيف يمكن للخطأ البشري أن يفضح معلومات حساسة مخصصة للجهات الحكومية. 🔐 ضرورة مراجعة الصلاحيات وإغلاق الوصول غير الضروري.
#CISA #AWS #GitHub #الأمن_السبرانتي #خصوصية_البيانات -
"CISA Admin Leaked AWS GovCloud Keys on Github
Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public archive included files detailing how CISA builds, tests and deploys software internally, and that it represents one of the most egregious government data leaks in recent history.On May 15, KrebsOnSecurity heard from Guillaume Valadon, a researcher with the security firm GitGuardian. Valadon’s company constantly scans public code repositories at GitHub and elsewhere for exposed secrets, automatically alerting the offending accounts of any apparent sensitive data exposures. Valadon said he reached out because the owner in this case wasn’t responding and the information exposed was highly sensitive.
The GitHub repository that Valadon flagged was named “Private-CISA,” and it harbored a vast number of internal CISA/DHS credentials and files, including cloud keys, tokens, plaintext passwords, logs and other sensitive CISA assets.
Valadon said the exposed CISA credentials represent a textbook example of poor security hygiene, noting that the commit logs in the offending GitHub account show that the CISA administrator disabled the default setting in GitHub that blocks users from publishing SSH keys or other secrets in public code repositories."
https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/
#CyberSecurity #CISA #GitHub #AWS #CloudComputing #DHS #GovCloud
-
"CISA Admin Leaked AWS GovCloud Keys on Github
Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public archive included files detailing how CISA builds, tests and deploys software internally, and that it represents one of the most egregious government data leaks in recent history.On May 15, KrebsOnSecurity heard from Guillaume Valadon, a researcher with the security firm GitGuardian. Valadon’s company constantly scans public code repositories at GitHub and elsewhere for exposed secrets, automatically alerting the offending accounts of any apparent sensitive data exposures. Valadon said he reached out because the owner in this case wasn’t responding and the information exposed was highly sensitive.
The GitHub repository that Valadon flagged was named “Private-CISA,” and it harbored a vast number of internal CISA/DHS credentials and files, including cloud keys, tokens, plaintext passwords, logs and other sensitive CISA assets.
Valadon said the exposed CISA credentials represent a textbook example of poor security hygiene, noting that the commit logs in the offending GitHub account show that the CISA administrator disabled the default setting in GitHub that blocks users from publishing SSH keys or other secrets in public code repositories."
https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/
#CyberSecurity #CISA #GitHub #AWS #CloudComputing #DHS #GovCloud
-
"CISA Admin Leaked AWS GovCloud Keys on Github
Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public archive included files detailing how CISA builds, tests and deploys software internally, and that it represents one of the most egregious government data leaks in recent history.On May 15, KrebsOnSecurity heard from Guillaume Valadon, a researcher with the security firm GitGuardian. Valadon’s company constantly scans public code repositories at GitHub and elsewhere for exposed secrets, automatically alerting the offending accounts of any apparent sensitive data exposures. Valadon said he reached out because the owner in this case wasn’t responding and the information exposed was highly sensitive.
The GitHub repository that Valadon flagged was named “Private-CISA,” and it harbored a vast number of internal CISA/DHS credentials and files, including cloud keys, tokens, plaintext passwords, logs and other sensitive CISA assets.
Valadon said the exposed CISA credentials represent a textbook example of poor security hygiene, noting that the commit logs in the offending GitHub account show that the CISA administrator disabled the default setting in GitHub that blocks users from publishing SSH keys or other secrets in public code repositories."
https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/
#CyberSecurity #CISA #GitHub #AWS #CloudComputing #DHS #GovCloud
-
"CISA Admin Leaked AWS GovCloud Keys on Github
Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public archive included files detailing how CISA builds, tests and deploys software internally, and that it represents one of the most egregious government data leaks in recent history.On May 15, KrebsOnSecurity heard from Guillaume Valadon, a researcher with the security firm GitGuardian. Valadon’s company constantly scans public code repositories at GitHub and elsewhere for exposed secrets, automatically alerting the offending accounts of any apparent sensitive data exposures. Valadon said he reached out because the owner in this case wasn’t responding and the information exposed was highly sensitive.
The GitHub repository that Valadon flagged was named “Private-CISA,” and it harbored a vast number of internal CISA/DHS credentials and files, including cloud keys, tokens, plaintext passwords, logs and other sensitive CISA assets.
Valadon said the exposed CISA credentials represent a textbook example of poor security hygiene, noting that the commit logs in the offending GitHub account show that the CISA administrator disabled the default setting in GitHub that blocks users from publishing SSH keys or other secrets in public code repositories."
https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/
#CyberSecurity #CISA #GitHub #AWS #CloudComputing #DHS #GovCloud
-
"CISA Admin Leaked AWS GovCloud Keys on Github
Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public archive included files detailing how CISA builds, tests and deploys software internally, and that it represents one of the most egregious government data leaks in recent history.On May 15, KrebsOnSecurity heard from Guillaume Valadon, a researcher with the security firm GitGuardian. Valadon’s company constantly scans public code repositories at GitHub and elsewhere for exposed secrets, automatically alerting the offending accounts of any apparent sensitive data exposures. Valadon said he reached out because the owner in this case wasn’t responding and the information exposed was highly sensitive.
The GitHub repository that Valadon flagged was named “Private-CISA,” and it harbored a vast number of internal CISA/DHS credentials and files, including cloud keys, tokens, plaintext passwords, logs and other sensitive CISA assets.
Valadon said the exposed CISA credentials represent a textbook example of poor security hygiene, noting that the commit logs in the offending GitHub account show that the CISA administrator disabled the default setting in GitHub that blocks users from publishing SSH keys or other secrets in public code repositories."
https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/
#CyberSecurity #CISA #GitHub #AWS #CloudComputing #DHS #GovCloud
-
🤦♂️ Ah, the classic government strategy: wait for a massive #data #breach and then demand answers in a bewildered frenzy. Meanwhile, CISA's strategy of posting sensitive keys on a public GitHub is a bold new frontier in cloud storage solutions. 🚀🌐
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ #governmentstrategy #CISA #cloudstorage #cybersecurity #HackerNews #ngated -
🤦♂️ Ah, the classic government strategy: wait for a massive #data #breach and then demand answers in a bewildered frenzy. Meanwhile, CISA's strategy of posting sensitive keys on a public GitHub is a bold new frontier in cloud storage solutions. 🚀🌐
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ #governmentstrategy #CISA #cloudstorage #cybersecurity #HackerNews #ngated -
🤦♂️ Ah, the classic government strategy: wait for a massive #data #breach and then demand answers in a bewildered frenzy. Meanwhile, CISA's strategy of posting sensitive keys on a public GitHub is a bold new frontier in cloud storage solutions. 🚀🌐
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ #governmentstrategy #CISA #cloudstorage #cybersecurity #HackerNews #ngated -
🤦♂️ Ah, the classic government strategy: wait for a massive #data #breach and then demand answers in a bewildered frenzy. Meanwhile, CISA's strategy of posting sensitive keys on a public GitHub is a bold new frontier in cloud storage solutions. 🚀🌐
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ #governmentstrategy #CISA #cloudstorage #cybersecurity #HackerNews #ngated -
🤦♂️ Ah, the classic government strategy: wait for a massive #data #breach and then demand answers in a bewildered frenzy. Meanwhile, CISA's strategy of posting sensitive keys on a public GitHub is a bold new frontier in cloud storage solutions. 🚀🌐
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ #governmentstrategy #CISA #cloudstorage #cybersecurity #HackerNews #ngated -
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#HackerNews #CISA #DataLeak #Lawmakers #Cybersecurity #Accountability
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#HackerNews #CISA #DataLeak #Lawmakers #Cybersecurity #Accountability
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#HackerNews #CISA #DataLeak #Lawmakers #Cybersecurity #Accountability
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#HackerNews #CISA #DataLeak #Lawmakers #Cybersecurity #Accountability
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#HackerNews #CISA #DataLeak #Lawmakers #Cybersecurity #Accountability
-
New.
KrebsonSecurity: Lawmakers Demand Answers as CISA Tries to Contain Data Leak https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ @briankrebs #CISA #infosec #GitHub #dataleak
-
New.
KrebsonSecurity: Lawmakers Demand Answers as CISA Tries to Contain Data Leak https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ @briankrebs #CISA #infosec #GitHub #dataleak
-
New.
KrebsonSecurity: Lawmakers Demand Answers as CISA Tries to Contain Data Leak https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ @briankrebs #CISA #infosec #GitHub #dataleak
-
New.
KrebsonSecurity: Lawmakers Demand Answers as CISA Tries to Contain Data Leak https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ @briankrebs #CISA #infosec #GitHub #dataleak
-
New.
KrebsonSecurity: Lawmakers Demand Answers as CISA Tries to Contain Data Leak https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/ @briankrebs #CISA #infosec #GitHub #dataleak
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#U.S.Cybersecurity&InfrastructureSecurityAgency #Rep.BennieThompson #CrowdstrikeFalcon #Sen.MaggieHassan #ALittleSunshine #LatestWarnings #TheComingStorm #RiskyBusiness #DataBreaches #NickAndersen #AdamBoileau #JamesWilson #DylanAyrey #TruffleHog #GitHub #CISA
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#U.S.Cybersecurity&InfrastructureSecurityAgency #Rep.BennieThompson #CrowdstrikeFalcon #Sen.MaggieHassan #ALittleSunshine #LatestWarnings #TheComingStorm #RiskyBusiness #DataBreaches #NickAndersen #AdamBoileau #JamesWilson #DylanAyrey #TruffleHog #GitHub #CISA
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#U.S.Cybersecurity&InfrastructureSecurityAgency #Rep.BennieThompson #CrowdstrikeFalcon #Sen.MaggieHassan #ALittleSunshine #LatestWarnings #TheComingStorm #RiskyBusiness #DataBreaches #NickAndersen #AdamBoileau #JamesWilson #DylanAyrey #TruffleHog #GitHub #CISA
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#U.S.Cybersecurity&InfrastructureSecurityAgency #Rep.BennieThompson #CrowdstrikeFalcon #Sen.MaggieHassan #ALittleSunshine #LatestWarnings #TheComingStorm #RiskyBusiness #DataBreaches #NickAndersen #AdamBoileau #JamesWilson #DylanAyrey #TruffleHog #GitHub #CISA
-
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/
#U.S.Cybersecurity&InfrastructureSecurityAgency #Rep.BennieThompson #CrowdstrikeFalcon #Sen.MaggieHassan #ALittleSunshine #LatestWarnings #TheComingStorm #RiskyBusiness #DataBreaches #NickAndersen #AdamBoileau #JamesWilson #DylanAyrey #TruffleHog #GitHub #CISA
-
CISA Opens KEV Nominations to Bolster Vulnerability Intelligence
CISA is now accepting nominations for its Known Exploited Vulnerabilities catalog, empowering public reporting to strengthen the nation's cybersecurity posture by quickly identifying and mitigating exploited vulnerabilities. By submitting through the new KEV nomination form, you're helping to keep federal,…
#VulnerabilityDisclosure #KnownExploitedVulnerabilities #Kev #Cisa #VulnerabilityIntelligence