{"id":20956,"date":"2022-03-29T09:25:25","date_gmt":"2022-03-29T13:25:25","guid":{"rendered":"https:\/\/www.technewsday.com\/?p=20956"},"modified":"2022-03-30T10:22:16","modified_gmt":"2022-03-30T14:22:16","slug":"cisa-ask-federal-agencies-to-patch-66-new-flaws-exploited-by-attackers","status":"publish","type":"post","link":"https:\/\/technewsday.com\/staging\/cisa-ask-federal-agencies-to-patch-66-new-flaws-exploited-by-attackers\/","title":{"rendered":"CISA Ask Federal Agencies To Patch 66 New Flaws Exploited By Attackers"},"content":{"rendered":"<p id=\"arIndex_0\" data-ar-index=\"0\">U.S. Cybersecurity and Infrastructure Security Agency (CISA) has uncovered 66 new vulnerabilities that are exploited by attackers.<\/p>\n<p id=\"arIndex_1\" data-ar-index=\"1\">The agency urged federal agencies to apply available patches before April 15, 2022, to limit the risk of the bugs being exploited.<\/p>\n<p id=\"arIndex_2\" data-ar-index=\"2\">Based on evidence of active exploitation, the 66 bugs include current and older bugs in networking kit, several Windows bugs, and security appliances from D-Link, Cisco, Netgear, Citrix, Kuiper, Palo Alto, Sophos, Zyxel, and enterprise software from Oracle, OpenBSD, VMware, and others.<\/p>\n<p id=\"arIndex_3\" data-ar-index=\"3\">Some of the vulnerabilities identified vulnerabilities include a flaw affecting Watch Guard&#8217;s Firefox and XTM appliances (CVE-2022-26318), and another flaw impacting Mitel&#8217;s MiCollab, MiVoice Business Express Access Control Vulnerability (CVE-2022-26143).<\/p>\n<p id=\"arIndex_4\" data-ar-index=\"4\">Hackers exploited the Mitel bug to launch the TP240PhoneHome DDoS attack. A Windows Print Spooler Elevation of Privilege vulnerability, traced as CVE-2022-21999, has also been added to the list of bugs to be patched.<\/p>\n<p id=\"arIndex_5\" data-ar-index=\"5\">For more information read the <a href=\"https:\/\/www.zdnet.com\/article\/cisa-here-are-66-more-security-flaws-actively-being-used-by-hackers-so-get-patching\/\" target=\"_blank\" rel=\"noopener\">original story<\/a> in ZDNet.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>U.S. Cybersecurity and Infrastructure Security Agency (CISA) has uncovered 66 new vulnerabilities that are exploited by attackers.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[421,58],"tags":[389,393],"class_list":["post-20956","post","type-post","status-publish","format-standard","hentry","category-governance","category-government-public-sector","tag-cyber-security-today","tag-security-strategies"],"acf":[],"_links":{"self":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/20956","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/comments?post=20956"}],"version-history":[{"count":3,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/20956\/revisions"}],"predecessor-version":[{"id":20982,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/20956\/revisions\/20982"}],"wp:attachment":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/media?parent=20956"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/categories?post=20956"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/tags?post=20956"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}