Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

CISA, FBI Call on Software Makers to Address OS Command Injection Security Flaws

by reynolitoresoor
July 12, 2024
in Cybersecurity, Government Technology, News
Cybersecurity and Infrastructure Security Agency Logo_272x270

Cybersecurity and Infrastructure Security Agency Logo_272x270

The Cybersecurity and Infrastructure Security Agency and the FBI have released a cyber advisory calling on software companies to address operating system command injection vulnerabilities before shipping their products.

Table of Contents

  • You might also like
  • DOW CIO Issues Instruction on IT Category Management
  • VA Says FedRAMP Certification Not Required for Cloud Contract Bids
  • DOE Names Andrew McClure to Lead CESER Amid Push to Fortify Energy Infrastructure

You might also like

DOW CIO Issues Instruction on IT Category Management

VA Says FedRAMP Certification Not Required for Cloud Contract Bids

DOE Names Andrew McClure to Lead CESER Amid Push to Fortify Energy Infrastructure

The alert was issued in response to recent attacks that exploited multiple OS command injection security flaws in network edge devices to compromise users, CISA said Wednesday.

The agency warned that the vulnerabilities provide an opportunity for threat actors to remotely execute code on targeted network devices.

However, CISA added that OS command injection vulnerabilities can be eliminated at the source by taking a “secure by design approach.”

The agency urged software vendors to validate and sanitize user input when constructing commands to execute OS commands, noting that such practice reduces potential risks to customers.

CISA and the FBI also advised technology manufacturers to study previous cyber incidents involving OS command injection vulnerabilities and develop a plan to eliminate future threats.

In addition, tech leaders can review threat models, employ modern component libraries and implement aggressive adversarial product testing to prevent such vulnerabilities.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

Lynelle McKay Named CHIPS Program Office Chief Portfolio Management Officer

Next Post

HHS Releases Proposed Rule to Improve Healthcare Interoperability, Information-sharing

Recommended For You

Treasury Requests Input on Sensitive Tech Investment Oversight

by Jane Edwards
August 15, 2023
Department of the Treasury

The Department of the Treasury has issued an advance notice of proposed rulemaking to solicit feedback that would inform the establishment of a program requiring U.S. persons to...

Read moreDetails

DARPA’s Greg Avicola Says NOMARS Is Innovating for Acquisition & Tech

by Charles Lyons-Burt
August 24, 2024
Greg Avicola_272x270

The No Mariners Required Ship, or NOMARS, program is the Defense Advanced Research Projects Agency’s ambitious project to develop and create a medium unmanned surface vessel that’s able to...

Read moreDetails

GSA’s Joanne Collins Smee on $100M Technology Modernization Fund, industry best practices

by Jane Edwards
April 13, 2018
GSA’s Joanne Collins Smee on $100M Technology Modernization Fund, industry best practices

Joanne Collins Smee, acting director of technology transformation services at the General Services Administration, has said she believes the $100 million worth of funding that Congress authorized for the...

Read moreDetails

Heads of State Highlight Major Initiatives in Infrastructure, Emerging Tech at Quad Leaders’ Summit

by Jane Edwards
January 9, 2026
partnership

President Joe Biden and the heads of state of Australia, Japan and India met on Saturday in Hiroshima, Japan, for the fifth Quad Leaders’ Summit to discuss key...

Read moreDetails

Report: Ex-NASA Chief Michael Griffin Front-Runner for DoD Research, Engineering Chief Role

by Jane Edwards
October 11, 2017
Report: Ex-NASA Chief Michael Griffin Front-Runner for DoD Research, Engineering Chief Role

Michael Griffin Michael Griffin, former NASA administrator, has come out as the most likely candidate for the role of defense undersecretary for research and engineering, sources told Defense...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Assets
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!