Tag

Cybersecurity Misconfigurations

All articles tagged with #cybersecurity misconfigurations

"CISA and NSA Unveil Top Cybersecurity Misconfigurations Threatening US Security"
cybersecurity2 years ago

"CISA and NSA Unveil Top Cybersecurity Misconfigurations Threatening US Security"

The US Cybersecurity and Infrastructure Security Agency (CISA) and the National Security Agency (NSA) have identified unchanged default credentials as the top cybersecurity misconfiguration that leads to cyberattacks. The agencies' top ten major cybersecurity misconfigurations also include improper separation of user and admin privileges and insufficient network monitoring. The cybersecurity advisory (CSA) released by CISA aims to encourage software manufacturers to adopt secure-by-design and secure-by-default principles throughout the development cycle. The CSA highlights the importance of addressing systemic weaknesses in organizations and emphasizes the need for software manufacturers to reduce the burden on network defenders.

"NSA and CISA Expose Top 10 Cybersecurity Misconfigurations"
cybersecurity2 years ago

"NSA and CISA Expose Top 10 Cybersecurity Misconfigurations"

The NSA and CISA have released a joint advisory revealing the top ten most common cybersecurity misconfigurations found in the networks of large organizations. These misconfigurations include default software settings, weak access controls, poor patch management, and insufficient network monitoring. The advisory also highlights the tactics used by threat actors to exploit these vulnerabilities. The agencies urge software manufacturers to adopt secure-by-design principles and proactive practices to mitigate these risks. They recommend implementing measures such as eliminating default credentials, enforcing multifactor authentication, and regularly updating and patching systems. Network defenders are encouraged to test their security programs against known threat behaviors and assess the performance of existing security controls.