WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home CISA Sends Emergency Directive to Mitigate Potential Compromise of Cisco Devices, Threat Actors Actively Target Cisco Vulnerabilities
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

CISA Sends Emergency Directive to Mitigate Potential Compromise of Cisco Devices, Threat Actors Actively Target Cisco Vulnerabilities

Author: Alec Davison

Created: Thursday, September 25, 2025 - 15:52

Categories:

(TLP:CLEAR) Today, CISA sent an Emergency Directive (ED) titled “Identify and Mitigate Potential Compromise of Cisco Devices,” and highlighted an ongoing campaign by an advanced threat actor targeting Cisco Adaptive Security Appliances (ASA). The campaign is widespread and involves exploiting zero-day vulnerabilities to gain unauthenticated remote code execution on ASAs, as well as manipulating read-only memory (ROM) to persist through reboot and system upgrade.

WaterISAC strongly recommends utilities address the Cisco vulnerabilities mentioned by following the actions described in CISA’s emergency directive…

READ MORE

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar