<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #CISA</title><description>Cybersecurity articles tagged #CISA on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>CISA Warns: Medusa Ransomware Breaches 500+ Critical Infra Orgs</title><link>https://runtimerebel.com/blog/cisa-warns-medusa-ransomware-breaches-500-critical-infra-orgs</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-medusa-ransomware-breaches-500-critical-infra-orgs</guid><description>CISA, FBI, and HHS alert on Medusa ransomware, which has impacted over 500 critical infrastructure organizations since June 2021, urging immediate network hardening.</description><pubDate>Wed, 19 Aug 2026 08:26:15 GMT</pubDate><category>Medusa Ransomware</category><category>Ransomware as a Service</category><category>CISA</category><category>FBI</category><category>Critical Infrastructure</category></item><item><title>CISA&apos;s Updated SBOM Guidance: Enhancing Software Supply Chain Transparency</title><link>https://runtimerebel.com/blog/cisa-s-updated-sbom-guidance-enhancing-software-supply-chain-transparency</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-s-updated-sbom-guidance-enhancing-software-supply-chain-transparency</guid><description>CISA has released updated SBOM guidance, refining field definitions for greater software supply chain transparency. Debate continues on its impact on risk management.</description><pubDate>Sat, 01 Aug 2026 10:01:00 GMT</pubDate><category>SBOM</category><category>CISA</category><category>Software Supply Chain</category><category>Guidance</category><category>Cybersecurity Policy</category></item><item><title>CISA Warns: Cyberattacks Disrupting US Water Utilities&apos; PLCs</title><link>https://runtimerebel.com/blog/cisa-warns-cyberattacks-disrupting-us-water-utilities-plcs</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-cyberattacks-disrupting-us-water-utilities-plcs</guid><description>CISA issues an urgent warning regarding increased cyberattacks targeting internet-exposed Programmable Logic Controllers (PLCs) in US water and wastewater systems…</description><pubDate>Fri, 31 Jul 2026 17:42:45 GMT</pubDate><category>CISA</category><category>Water Utilities</category><category>Wastewater Systems</category><category>PLCs</category><category>Industrial Control Systems</category><category>OT Security</category></item><item><title>CISA Urges Water Sector to Secure OT PLCs Amid Coordinated Attacks</title><link>https://runtimerebel.com/blog/cisa-urges-water-sector-to-secure-ot-plcs-amid-coordinated-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-urges-water-sector-to-secure-ot-plcs-amid-coordinated-attacks</guid><description>CISA warns water and wastewater utilities to secure internet-exposed OT controllers after coordinated intrusions targeted dozens of Minnesota systems.</description><pubDate>Fri, 31 Jul 2026 02:56:02 GMT</pubDate><category>CISA</category><category>Water Sector</category><category>Wastewater</category><category>OT Security</category><category>PLCs</category><category>Industrial Control Systems</category><category>Minnesota</category></item><item><title>CISA &amp; ACSC Advise Isolating OT Systems During Cyberattacks</title><link>https://runtimerebel.com/blog/cisa-acsc-advise-isolating-ot-systems-during-cyberattacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-acsc-advise-isolating-ot-systems-during-cyberattacks</guid><description>CISA and ACSC urge critical infrastructure to prepare isolating operational technology systems during cyberattacks to maintain essential services and limit impact.</description><pubDate>Tue, 28 Jul 2026 21:10:24 GMT</pubDate><category>CISA</category><category>ACSC</category><category>Critical Infrastructure</category><category>OT Security</category><category>Cyberattack Preparedness</category><category>Industrial Control Systems</category><category>Incident Response</category></item><item><title>Securing Global Events: CISA and the SEAR Framework Analysis</title><link>https://runtimerebel.com/blog/securing-global-events-cisa-and-the-sear-framework-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/securing-global-events-cisa-and-the-sear-framework-analysis</guid><description>Analyze the strategic security frameworks used by CISA and federal agencies to protect high-profile global events from cyber and physical threats.</description><pubDate>Mon, 20 Jul 2026 14:22:34 GMT</pubDate><category>CISA</category><category>SEAR</category><category>Special Event Assessment Rating</category><category>Event Security</category><category>Critical Infrastructure Protection</category></item><item><title>CISA GitHub Leak: Lessons from AWS Govcloud Credential Exposure</title><link>https://runtimerebel.com/blog/cisa-github-leak-lessons-from-aws-govcloud-credential-exposure</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-github-leak-lessons-from-aws-govcloud-credential-exposure</guid><description>Analysis of CISA&apos;s recent GitHub leak, detailing the exposure of AWS Govcloud keys and internal credentials, and providing critical lessons for cloud security.</description><pubDate>Mon, 13 Jul 2026 17:59:58 GMT</pubDate><category>CISA</category><category>GitHub</category><category>AWS GovCloud</category><category>Data Leak</category><category>Cloud Security</category><category>Credential Exposure</category><category>Secrets Management</category></item><item><title>Joomla Extensions RCE: CISA Warns of Active Exploitation</title><link>https://runtimerebel.com/blog/joomla-extensions-rce-cisa-warns-of-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/joomla-extensions-rce-cisa-warns-of-active-exploitation</guid><description>CISA alerts on actively exploited RCE vulnerabilities in Joomla&apos;s iCagenda and Balbooa Forms extensions, urging immediate patching to prevent arbitrary file uploads.</description><pubDate>Mon, 13 Jul 2026 17:59:33 GMT</pubDate><category>Joomla</category><category>iCagenda</category><category>Balbooa Forms</category><category>RCE</category><category>CISA</category><category>Arbitrary File Upload</category><category>Web Application Security</category></item><item><title>Cisco Unified Communications Manager: Urgent Patch for Active Exploitation</title><link>https://runtimerebel.com/blog/cisco-unified-communications-manager-urgent-patch-for-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-unified-communications-manager-urgent-patch-for-active-exploitation</guid><description>CISA mandates urgent patching for an actively exploited vulnerability in Cisco Unified Communications Manager, posing immediate risk to federal agencies and beyond.</description><pubDate>Fri, 26 Jun 2026 20:39:28 GMT</pubDate><category>Cisco Unified Communications Manager</category><category>CISA</category><category>Active Exploitation</category><category>UC Manager</category><category>Vulnerability Management</category></item><item><title>CVE-2025-67038: Lantronix EDS5000 Series Critical Code Injection</title><link>https://runtimerebel.com/blog/cve-2025-67038-lantronix-eds5000-series-critical-code-injection</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2025-67038-lantronix-eds5000-series-critical-code-injection</guid><description>CISA warns of active exploitation of CVE-2025-67038, a critical code injection flaw impacting Lantronix EDS5000 Series devices. Patch immediately.</description><pubDate>Wed, 24 Jun 2026 20:39:24 GMT</pubDate><category>CVE-2025-67038</category><category>Lantronix EDS5000</category><category>Code Injection</category><category>ICS OT Security</category><category>CISA</category></item><item><title>CISA Warns: Ubiquiti UniFi &amp; Lantronix Flaws Actively Exploited</title><link>https://runtimerebel.com/blog/cisa-warns-ubiquiti-unifi-lantronix-flaws-actively-exploited</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-ubiquiti-unifi-lantronix-flaws-actively-exploited</guid><description>CISA warns of active exploitation against Ubiquiti UniFi OS and Lantronix serial-to-ethernet servers. Security professionals must patch immediately.</description><pubDate>Wed, 24 Jun 2026 16:51:17 GMT</pubDate><category>Ubiquiti</category><category>UniFi OS</category><category>Lantronix</category><category>CISA</category><category>Exploitation</category><category>Critical Vulnerability</category></item><item><title>FortiBleed Data Leak: Securing Fortinet VPNs Against Exposure</title><link>https://runtimerebel.com/blog/fortibleed-data-leak-securing-fortinet-vpns-against-exposure</link><guid isPermaLink="true">https://runtimerebel.com/blog/fortibleed-data-leak-securing-fortinet-vpns-against-exposure</guid><description>CISA warns organizations after 74,000 Fortinet VPN credentials were leaked online. Learn how to mitigate the FortiBleed threat and secure your network.</description><pubDate>Fri, 19 Jun 2026 09:44:30 GMT</pubDate><category>Fortinet</category><category>FortiGate</category><category>VPN</category><category>CVE-2018-13379</category><category>CISA</category><category>Credential Leak</category></item><item><title>CVE-2026-54420: LiteSpeed cPanel Plugin Flaw Under Active Exploit</title><link>https://runtimerebel.com/blog/cve-2026-54420-litespeed-cpanel-plugin-flaw-under-active-exploit</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-54420-litespeed-cpanel-plugin-flaw-under-active-exploit</guid><description>CISA warns of active exploitation targeting CVE-2026-54420 in LiteSpeed cPanel user-end plugin, urging immediate patching for server security.</description><pubDate>Tue, 16 Jun 2026 13:58:29 GMT</pubDate><category>CVE-2026-54420</category><category>LiteSpeed</category><category>cPanel</category><category>Active Exploitation</category><category>CISA</category><category>Web Hosting</category></item><item><title>CISA BOD 26-04: Prioritizing KEV Catalog Vulnerability Patching</title><link>https://runtimerebel.com/blog/cisa-bod-26-04-prioritizing-kev-catalog-vulnerability-patching</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-bod-26-04-prioritizing-kev-catalog-vulnerability-patching</guid><description>CISA&apos;s BOD 26-04 mandates federal agencies prioritize patching vulnerabilities in the KEV catalog. Learn its impact and how to enhance your vulnerability management.</description><pubDate>Thu, 11 Jun 2026 13:35:38 GMT</pubDate><category>CISA</category><category>BOD 26 04</category><category>Vulnerability Management</category><category>KEV Catalog</category><category>Federal Agencies</category><category>Patch Management</category></item><item><title>CISA Mandates Critical Ivanti &amp; ActiveMQ Patching in 3 Days</title><link>https://runtimerebel.com/blog/cisa-mandates-critical-ivanti-activemq-patching-in-3-days</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-mandates-critical-ivanti-activemq-patching-in-3-days</guid><description>CISA&apos;s BOD 26-04 requires federal agencies to patch critical, exploited Ivanti Connect Secure and Apache ActiveMQ vulnerabilities within 72 hours.</description><pubDate>Thu, 11 Jun 2026 13:35:05 GMT</pubDate><category>CISA</category><category>BOD 26 04</category><category>Ivanti Connect Secure</category><category>Apache ActiveMQ</category><category>CVE-2023-46805</category><category>CVE-2024-21887</category><category>CVE-2024-21888</category><category>CVE-2024-21893</category><category>CVE-2024-21894</category><category>CVE-2023-51467</category><category>Exploited Vulnerabilities</category><category>Patch Management</category><category>FCEB</category></item><item><title>CISA Updates Federal Patching Mandates to Combat AI-Driven Threats</title><link>https://runtimerebel.com/blog/cisa-updates-federal-patching-mandates-to-combat-ai-driven-threats</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-updates-federal-patching-mandates-to-combat-ai-driven-threats</guid><description>CISA updates federal directive to require 3-day patching for critical flaws, addressing the rapid exploitation speeds enabled by artificial intelligence.</description><pubDate>Thu, 11 Jun 2026 09:42:21 GMT</pubDate><category>CISA</category><category>BOD 22 01</category><category>Vulnerability Management</category><category>AI Threats</category><category>KEV Catalog</category></item><item><title>CISA Warns: Critical Infrastructure ATG Systems Under Attack</title><link>https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-critical-infrastructure-atg-systems-under-attack</guid><description>CISA, FBI, and NSA warn of active cyberattacks targeting internet-exposed Automatic Tank Gauge (ATG) systems in critical infrastructure. Learn to defend.</description><pubDate>Wed, 03 Jun 2026 21:11:09 GMT</pubDate><category>CISA</category><category>FBI</category><category>NSA</category><category>Automatic Tank Gauge</category><category>ATG</category><category>Critical Infrastructure</category><category>OT Security</category><category>ICS Security</category></item><item><title>Trump Mobile Data Breach and 2026 FIFA World Cup Phishing Risks</title><link>https://runtimerebel.com/blog/trump-mobile-data-breach-and-2026-fifa-world-cup-phishing-risks</link><guid isPermaLink="true">https://runtimerebel.com/blog/trump-mobile-data-breach-and-2026-fifa-world-cup-phishing-risks</guid><description>Analysis of the Trump Mobile data breach, upcoming 2026 FIFA World Cup phishing campaigns, and CISA&apos;s strategic response to recent supply chain attacks.</description><pubDate>Fri, 29 May 2026 17:20:19 GMT</pubDate><category>Trump Mobile</category><category>Data Breach</category><category>FIFA World Cup</category><category>Phishing</category><category>CISA</category><category>Supply Chain</category></item><item><title>CISA Contractor Leaks AWS GovCloud Credentials via GitHub Repository</title><link>https://runtimerebel.com/blog/cisa-contractor-leaks-aws-govcloud-credentials-via-github-repository</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-contractor-leaks-aws-govcloud-credentials-via-github-repository</guid><description>A significant security leak involving a CISA contractor has exposed privileged AWS GovCloud credentials and internal software deployment processes on GitHub.</description><pubDate>Sat, 23 May 2026 00:55:30 GMT</pubDate><category>CISA</category><category>AWS GovCloud</category><category>GitHub</category><category>Credential Leak</category><category>Supply Chain</category></item><item><title>CISA Data Leak: AWS GovCloud Keys Exposed via Public GitHub Repo</title><link>https://runtimerebel.com/blog/cisa-data-leak-aws-govcloud-keys-exposed-via-public-github-repo</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-data-leak-aws-govcloud-keys-exposed-via-public-github-repo</guid><description>Lawmakers demand answers from CISA after a contractor leaked AWS GovCloud keys and internal secrets on GitHub, prompting urgent credential rotation.</description><pubDate>Fri, 22 May 2026 16:50:37 GMT</pubDate><category>CISA</category><category>AWS GovCloud</category><category>GitHub</category><category>Credential Exposure</category><category>Insider Threat</category></item><item><title>Huawei AR2500 Exploitation: Industrial Router Flaw Analysis</title><link>https://runtimerebel.com/blog/huawei-ar2500-exploitation-industrial-router-flaw-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/huawei-ar2500-exploitation-industrial-router-flaw-analysis</guid><description>An analysis of the Huawei AR2500 industrial router exploitation that triggered a major telecom outage and CISA&apos;s new KEV nomination process.</description><pubDate>Fri, 22 May 2026 16:50:16 GMT</pubDate><category>Huawei</category><category>CISA</category><category>KEV</category><category>Industrial Security</category><category>Router Vulnerability</category></item><item><title>CISA GitHub Repo Exposes Secrets &amp; Credentials in Public View</title><link>https://runtimerebel.com/blog/cisa-github-repo-exposes-secrets-credentials-in-public-view</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-github-repo-exposes-secrets-credentials-in-public-view</guid><description>CISA inadvertently exposed sensitive secrets and credentials within a publicly accessible GitHub repository.</description><pubDate>Tue, 19 May 2026 20:42:19 GMT</pubDate><category>CISA</category><category>GitHub</category><category>Data Exposure</category><category>Credentials</category><category>Secrets Management</category><category>Cloud Security Misconfiguration</category></item><item><title>CISA Contractor Leaked AWS GovCloud Keys on GitHub: Critical Exposure</title><link>https://runtimerebel.com/blog/cisa-contractor-leaked-aws-govcloud-keys-on-github-critical-exposure</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-contractor-leaked-aws-govcloud-keys-on-github-critical-exposure</guid><description>A CISA contractor publicly exposed highly privileged AWS GovCloud and internal system credentials on GitHub, detailing CISA&apos;s software development.</description><pubDate>Tue, 19 May 2026 00:57:26 GMT</pubDate><category>CISA</category><category>AWS GovCloud</category><category>GitHub</category><category>Data Leak</category><category>Credentials</category><category>Government Security</category><category>Supply Chain</category></item><item><title>Tom Parker Rumored as Next CISA Director: Operational Impact Analysis</title><link>https://runtimerebel.com/blog/tom-parker-rumored-as-next-cisa-director-operational-impact-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/tom-parker-rumored-as-next-cisa-director-operational-impact-analysis</guid><description>Analysis of the potential CISA leadership transition to Tom Parker and how an operational focus may reshape national cybersecurity and incident response.</description><pubDate>Fri, 08 May 2026 08:39:53 GMT</pubDate><category>CISA</category><category>Tom Parker</category><category>Cyber Leadership</category><category>Operational Security</category></item><item><title>CISA Guidance: Mastering Network Isolation and Recovery</title><link>https://runtimerebel.com/blog/cisa-guidance-mastering-network-isolation-and-recovery</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-guidance-mastering-network-isolation-and-recovery</guid><description>CISA urges critical infrastructure to prioritize network isolation and rapid recovery to counter persistent threats from foreign nation-state actors.</description><pubDate>Wed, 06 May 2026 12:49:04 GMT</pubDate><category>CISA</category><category>Critical Infrastructure</category><category>Volt Typhoon</category><category>Network Segmentation</category><category>Cyber Resilience</category></item><item><title>Securing Agentic AI: CISA and International Partners Issue Guidance</title><link>https://runtimerebel.com/blog/securing-agentic-ai-cisa-and-international-partners-issue-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/securing-agentic-ai-cisa-and-international-partners-issue-guidance</guid><description>CISA and international partners release guidance on securing agentic AI services, detailing risks like autonomous execution and supply chain vulnerabilities.</description><pubDate>Fri, 01 May 2026 12:31:27 GMT</pubDate><category>Agentic AI</category><category>CISA</category><category>AI Security</category><category>ASD ACSC</category><category>LLM Security</category></item><item><title>Axios npm Supply Chain Attack: Malicious Payloads and Mitigation</title><link>https://runtimerebel.com/blog/axios-npm-supply-chain-attack-malicious-payloads-and-mitigation</link><guid isPermaLink="true">https://runtimerebel.com/blog/axios-npm-supply-chain-attack-malicious-payloads-and-mitigation</guid><description>Axios npm versions 1.14.1 and 0.30.4 compromised via a malicious dependency injecting remote access trojans. Learn how to detect and remediate this threat.</description><pubDate>Tue, 21 Apr 2026 08:44:16 GMT</pubDate><category>Axios</category><category>NPM</category><category>Node Js</category><category>Plain Crypto Js</category><category>Supply Chain Compromise</category><category>CISA</category></item><item><title>CISA KEV Update: Exchange Server, Adobe, MS Windows Exploits</title><link>https://runtimerebel.com/blog/cisa-kev-update-exchange-server-adobe-ms-windows-exploits</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-update-exchange-server-adobe-ms-windows-exploits</guid><description>CISA adds seven vulnerabilities, including critical Microsoft Exchange Server deserialization, to its Known Exploited Vulnerabilities Catalog, urging immediate…</description><pubDate>Tue, 14 Apr 2026 00:47:03 GMT</pubDate><category>CVE-2012-1854</category><category>CVE-2020-9715</category><category>CVE-2023-21529</category><category>CVE-2023-36424</category><category>CVE-2025-60710</category><category>CVE-2026-21643</category><category>CVE-2026-34621</category><category>Microsoft Exchange Server</category><category>Adobe Acrobat</category><category>Microsoft Windows</category><category>Fortinet</category><category>CISA</category><category>KEV Catalog</category><category>Deserialization</category><category>Use After Free</category><category>SQL Injection</category></item><item><title>White House FY2027 Budget Proposes $707 Million CISA Funding Cut</title><link>https://runtimerebel.com/blog/white-house-fy2027-budget-proposes-707-million-cisa-funding-cut</link><guid isPermaLink="true">https://runtimerebel.com/blog/white-house-fy2027-budget-proposes-707-million-cisa-funding-cut</guid><description>The White House proposes a $707 million reduction to CISA&apos;s budget for FY2027, refocusing the agency on federal agency and critical infrastructure protection.</description><pubDate>Tue, 07 Apr 2026 08:34:15 GMT</pubDate><category>CISA</category><category>Federal Budget</category><category>Cyber Policy</category><category>Critical Infrastructure</category></item><item><title>FortiClient EMS RCE via CVE-2023-48788 — Patch Guidance</title><link>https://runtimerebel.com/blog/forticlient-ems-rce-via-cve-2023-48788-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/forticlient-ems-rce-via-cve-2023-48788-patch-guidance</guid><description>CISA mandates federal agencies patch the critical FortiClient EMS SQL injection flaw, CVE-2023-48788, which allows unauthenticated remote code execution.</description><pubDate>Mon, 06 Apr 2026 16:21:26 GMT</pubDate><category>CVE-2023-48788</category><category>Fortinet</category><category>CISA</category><category>RCE</category><category>SQL Injection</category></item><item><title>Langflow CVE-2026-33017: AI Workflow Hijacking Under Active Exploitation</title><link>https://runtimerebel.com/blog/langflow-cve-2026-33017-ai-workflow-hijacking-under-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/langflow-cve-2026-33017-ai-workflow-hijacking-under-active-exploitation</guid><description>CISA warns of active exploitation of CVE-2026-33017 in Langflow, enabling attackers to hijack AI workflows and potentially compromise AI agents.</description><pubDate>Thu, 26 Mar 2026 20:14:50 GMT</pubDate><category>Langflow</category><category>CVE-2026-33017</category><category>AI Security</category><category>Workflow Hijacking</category><category>Active Exploitation</category><category>CISA</category></item><item><title>CVE-2024-38094: SharePoint RCE Exploited in the Wild — Patch Now</title><link>https://runtimerebel.com/blog/cve-2024-38094-sharepoint-rce-exploited-in-the-wild-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-38094-sharepoint-rce-exploited-in-the-wild-patch-now</guid><description>CISA adds CVE-2024-38094 to its KEV catalog after active exploitation of a SharePoint RCE vulnerability. Learn how to detect and remediate this threat.</description><pubDate>Thu, 19 Mar 2026 12:20:35 GMT</pubDate><category>CVE-2024-38094</category><category>Microsoft</category><category>SharePoint</category><category>CISA</category><category>RCE</category></item><item><title>Hardening Endpoint Management Systems: CISA Alert on Intune Attacks</title><link>https://runtimerebel.com/blog/hardening-endpoint-management-systems-cisa-alert-on-intune-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/hardening-endpoint-management-systems-cisa-alert-on-intune-attacks</guid><description>CISA warns of active cyberattacks targeting endpoint management systems, specifically Microsoft Intune.</description><pubDate>Thu, 19 Mar 2026 00:37:58 GMT</pubDate><category>Microsoft Intune</category><category>Endpoint Management</category><category>Stryker Corporation</category><category>CISA</category><category>MFA</category><category>RBAC</category><category>Cyberattack</category></item><item><title>CISA Warns of RESURGE Malware Persistence on Ivanti Devices</title><link>https://runtimerebel.com/blog/cisa-warns-of-resurge-malware-persistence-on-ivanti-devices</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-warns-of-resurge-malware-persistence-on-ivanti-devices</guid><description>CISA details RESURGE, a sophisticated implant exploiting CVE-2025-0282 in Ivanti Connect Secure, capable of remaining dormant to bypass detection and recovery.</description><pubDate>Fri, 27 Feb 2026 16:15:43 GMT</pubDate><category>RESURGE</category><category>Ivanti</category><category>CVE-2025-0282</category><category>CISA</category><category>Connect Secure</category><category>Threat Intelligence</category></item><item><title>Critical Vulnerabilities in Gardyn Smart Gardens Enable Remote Takeover</title><link>https://runtimerebel.com/blog/critical-vulnerabilities-in-gardyn-smart-gardens-enable-remote-takeover</link><guid isPermaLink="true">https://runtimerebel.com/blog/critical-vulnerabilities-in-gardyn-smart-gardens-enable-remote-takeover</guid><description>CISA warns of critical flaws in Gardyn Smart Gardens, including CVE-2024-39682 and CVE-2024-39683, allowing remote code execution and unauthorized access.</description><pubDate>Fri, 27 Feb 2026 08:18:33 GMT</pubDate><category>Gardyn</category><category>Iot Security</category><category>CVE-2024-39682</category><category>CVE-2024-39683</category><category>CISA</category><category>Bitdefender</category><category>Smart Home</category></item><item><title>Exploitation of Roundcube Webmail Cross-Site Scripting Vulnerabilities</title><link>https://runtimerebel.com/blog/exploitation-of-roundcube-webmail-cross-site-scripting-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/exploitation-of-roundcube-webmail-cross-site-scripting-vulnerabilities</guid><description>CISA has added two Roundcube Webmail vulnerabilities to its Known Exploited Vulnerabilities catalog, signaling active exploitation of legacy flaws in webmail…</description><pubDate>Mon, 23 Feb 2026 12:20:44 GMT</pubDate><category>Roundcube</category><category>XSS</category><category>CISA</category><category>KEV</category><category>Webmail</category></item></channel></rss>