Published • loading... • Updated
CISA Warns US Utilities to Bolster Defenses After Poland Grid Attack
Federal civilian agencies must inventory and replace unsupported edge devices within 12 months to reduce cyber risks, as CISA warns these devices pose a substantial and constant threat.
- On Thursday, the Cybersecurity and Infrastructure Security Agency issued a binding operational directive requiring federal civilian executive branch agencies to inventory and replace unsupported edge devices within specified deadlines.
- CISA warned that unsupported edge devices create a `substantial and constant` risk, and persistent cyber threat actors increasingly exploit them to gain network access and exfiltrate data.
- Within three months, agencies must report devices from CISA's EOS Edge Device List, inventory all edge devices losing support within 12 months, and decommission listed EOS devices within the same 12 months.
- The directive forces federal agencies to absorb procurement and operational burdens as CISA will monitor compliance and provide support with the Office of Management and Budget but has limited enforcement authority.
- Working with the FBI and the U.K. NCSC, CISA is producing a private EOS Edge Device List and fact sheet to help agencies comply, urging nonfederal organizations and allies to adopt similar measures.
Insights by Ground AI
19 Articles
19 Articles
CISA orders federal agencies to replace end-of-life edge devices
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a new binding operational directive requiring federal agencies to identify and remove network edge devices that no longer receive security updates from manufacturers.
Coverage Details
Total News Sources19
Leaning Left0Leaning Right0Center7Last UpdatedBias Distribution100% Center
Bias Distribution
- 100% of the sources are Center
100% Center
C 100%
Factuality
To view factuality data please Upgrade to Premium










