Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Government Technology

CISA, FBI Issue Alert on Top 10 Routinely Exploited Software Vulnerabilities

by Jane Edwards
December 5, 2022
in Government Technology, News
CISA, FBI Issue Alert on Top 10 Routinely Exploited Software Vulnerabilities
CISA, FBI Issue Alert on Top 10 Routinely Exploited Software Vulnerabilities

The Department of Homeland Security’s (DHS) Cybersecurity and Infrastructure Security Agency (CISA) and the FBI have released an alert detailing the top 10 software vulnerabilities exploited by foreign cyber threat actors from 2016 to 2019.

Table of Contents

  • You might also like
  • Erica Schwartz Confirmed as CDC Director
  • Navy Establishes Robotic & Autonomous Systems DRPM
  • Former NSA Cyber Leaders Warn AI Is Accelerating Offensive Cyber Operations

You might also like

Erica Schwartz Confirmed as CDC Director

Navy Establishes Robotic & Autonomous Systems DRPM

Former NSA Cyber Leaders Warn AI Is Accelerating Offensive Cyber Operations

An alert published Tuesday says information technology security professionals at private and public sector institutions should prioritize patching of common vulnerabilities and exposures.

“A concerted campaign to patch these vulnerabilities would introduce friction into foreign adversaries’ operational tradecraft and force them to develop or acquire exploits that are more costly and less widely effective,” the alert reads. “A concerted patching campaign would also bolster network security by focusing scarce defensive resources on the observed activities of foreign adversaries.”

Microsoft's Object Linking and Embedding technology, which enables documents to contain embedded content from spreadsheets and other applications, was the most commonly targeted platform by malicious threat actors, according to the alert.

CVE-2017-11882, CVE-2017-0199 and CVE-2012-0158 related to OLE were the most exploited vulnerabilities by threat actors from countries like Russia, China, North Korea and Iran.

Other vulnerabilities cited are CVE-2017-5638, CVE-2019-0604, CVE-2017-0143, CVE-2018-4878, CVE-2017-8759, CVE-2015-1641 and CVE-2018-7600.

CISA and the FBI also found that malicious actors are targeting vulnerabilities in unpatched virtual private networks. They noted that a lack of contingency plans and system recovery and other cyber weaknesses have continued to make institutions vulnerable to ransomware attacks.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

DARPA Picks Seven Teams for Quantum Processing Effort

Next Post

FBI, CISA Warn of Chinese State-Backed Hackers Targeting COVID-19 Research Orgs

Recommended For You

Stuart McGuigan Named Permanent State Department CIO

by Darwin McDaniel
March 27, 2019
Stuart McGuigan Named Permanent State Department CIO

Stuart McGuigan, former chief information officer of Johnson & Johnson, has been appointed as CIO of the State Department and head of the Bureau of Information Resource Management,...

Read moreDetails

Bill Zielinski: IT Modernization Spans Cloud, Emerging Tech Efforts

by Brenda Marie Rivers
May 3, 2019
Bill Zielinski: IT Modernization Spans Cloud, Emerging Tech Efforts

Bill Zielinski, acting assistant commissioner of General Services Administrations' office of information technology category, has identified four key areas of IT modernization the government is focusing on, Nextgov...

Read moreDetails

US Army Begins Test for Sense-and-Avoid Radar System; John Innes Comments

by Jay Clemens
May 12, 2016
US Army Begins Test for Sense-and-Avoid Radar System; John Innes Comments

The U.S. Army has tested a radar-based system for unmanned aerial vehicles at at Dugway Proving Ground in Utah as part of an effort to help military operators...

Read moreDetails

Sen. John McCain: F-35 Program Schedule Delays May Lead to $1B+ Cost Overrun

by Ramona Adams
November 7, 2016
Sen. John McCain: F-35 Program Schedule Delays May Lead to $1B+ Cost Overrun

Sen. John McCain (R-Arizona) has estimated that delays in the system development and demonstration phase of Lockheed Martin's F-35 aircraft could increase the fighter program's cost by more than $1 billion,...

Read moreDetails

Perspecta to be Presenting Sponsor of Military Bowl; Perspecta CEO, Chairman Mac Curtis Quoted

by Sarah Sybert
October 1, 2020
2020 Military Bowl

Perspecta Inc. will be the presenting sponsor for the Military Bowl postseason college football bowl game, named Military Bowl presented by Perspecta, over the next three years. The...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Assets
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!