The Cybersecurity and Infrastructure Security Agency (CISA) released an advisory based on the results of a risk and vulnerability assessment (RVA) at a healthcare organization, which revealed potential improvement areas for all healthcare organizations. The advisory, consisting of mitigation strategies for identified weaknesses, suggests measures for credential hygiene, asset management, identity management and more to improve cyber posture and reduce the impacts of cyberattacks.

Threat Actors Exploiting DevOps Web Servers Misconfigurations To Deploy Malware
A new cryptojacking campaign, led by threat actor JINX-0132, exploits misconfigurations in popular DevOps applications like HashiCorp Nomad and Docker API. By utilizing legitimate tools