CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing

Read full story on The Hacker News
Share
CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing
AI disclosure

Summary

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published the results of two red team assessments it conducted simultaneously against two critical infrastructure organizations, using what it described as similar tradecraft while recording sharply different defensive outcomes. Both organizations were fully compromised at the domain level, and in both, the red team also

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.