* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, March 26, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Entertainment Tonight and Inside Edition Get Renewal News at CBS Media Ventures – Yahoo

    Aramark Sports + Entertainment’s Culinary Creativity Takes the Field at Eight MLB Stadiums as Umpires Shout “Play Ball!” – Aramark

    Lucas Ball Joins Forces with Twelve6 Entertainment in Thrilling New Partnership

    Fall River’s Day of Portugal announces dates, entertainment lineup for 2026 – Fall River Reporter

    Margaret Cho Opens Up About Comedy, Politics, and Life in Hollywood

    Bring Spring Freshness to Your Kitchen with Expert Chef Tips

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    One Tank Trips: Exploring the Museum of Music Technology – 6abc Philadelphia

    Tennessee Lawmakers Push Ahead with Bill to Limit Technology Use in Elementary Schools

    Datasea Launches First U.S. Commercial Acoustic Technology-Powered Wellness Care Robots, Paving the Way for Future Innovation

    Get in the Game: Spring Athletics Challenge at Rochester Institute of Technology

    How Prophetic Land Search Company is Revolutionizing Technology to Transform the Industry

    Is MACOM Technology Solutions (MTSI) the Next Big Opportunity After Its Recent Price Drop?

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Entertainment Tonight and Inside Edition Get Renewal News at CBS Media Ventures – Yahoo

    Aramark Sports + Entertainment’s Culinary Creativity Takes the Field at Eight MLB Stadiums as Umpires Shout “Play Ball!” – Aramark

    Lucas Ball Joins Forces with Twelve6 Entertainment in Thrilling New Partnership

    Fall River’s Day of Portugal announces dates, entertainment lineup for 2026 – Fall River Reporter

    Margaret Cho Opens Up About Comedy, Politics, and Life in Hollywood

    Bring Spring Freshness to Your Kitchen with Expert Chef Tips

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    One Tank Trips: Exploring the Museum of Music Technology – 6abc Philadelphia

    Tennessee Lawmakers Push Ahead with Bill to Limit Technology Use in Elementary Schools

    Datasea Launches First U.S. Commercial Acoustic Technology-Powered Wellness Care Robots, Paving the Way for Future Innovation

    Get in the Game: Spring Athletics Challenge at Rochester Institute of Technology

    How Prophetic Land Search Company is Revolutionizing Technology to Transform the Industry

    Is MACOM Technology Solutions (MTSI) the Next Big Opportunity After Its Recent Price Drop?

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Chemical facilities warned of possible data theft in CISA CSAT breach

June 25, 2024
in Technology
Chemical facilities warned of possible data theft in CISA CSAT breach
Share on FacebookShare on Twitter

CISA red flare

CISA is warning that its Chemical Security Assessment Tool (CSAT) environment was breached in January after hackers deployed a webshell on its Ivanti device, potentially exposing sensitive security assessments and plans.

CSAT is an online portal that is used by facilities to report their possession of chemicals that could be used for terrorism to determine if they are considered a high-risk facility. If they are considered high-risk, the tool will prompt them to upload a security vulnerability assessment (SVA) and site security plan (SSP) survey that contains sensitive information about the facility.

In March, The Record first reported that CISA suffered a breach after the agency’s Ivanti device was exploited, causing it to take two systems offline while investigating the incident.

While CISA would not share details about the incident, The Record’s sources said it was the Infrastructure Protection (IP) Gateway and Chemical Security Assessment Tool (CSAT).

CISA confirms breach

CISA has now confirmed that the CSAT Ivanti Connect Secure appliance was breached on January 23, 2024, allowing a threat actor to upload a web shell to the device.

The threat actor then accessed this web shell several times over two days.

Once CISA discovered the breach, they took the device offline to investigate any actions taken by the threat actor and what data was potentially exposed.

CISA has not shared what vulnerabilities were exploited, instead referring to a CISA document on threat actors exploiting multiple vulnerabilities on Ivanti Connect Secure and Policy Secure Gateway devices.

This document references three vulnerabilities tracked as CVE-2023-46805, CVE-2024-21887, and CVE-2024-21893, all disclosed prior to CISA’s breach on January 23, with threat actors quickly exploiting them. One vulnerability, CVE-2024-21888, was disclosed on January 22, one day before CISA’s Ivanti device was breached.

While CISA says all of the data in the CSAT application is encrypted with AES 256 encryption and there is no evidence that CSAT data was stolen, they decided to notify companies and individuals in an abundance of caution.

“CISA is notifying all impacted participants in the CFATS program out of an abundance of caution that this information could have been inappropriately accessed,” explains the CISA data breach notification.

“Even without evidence of data exfiltration, the number of potential individuals and organizations whose data was potentially at risk met the threshold of a major incident under the Federal Information Security Modernization Act (FISMA).”

The data that could potentially have been exposed includes Top-Screen surveys, Security Vulnerability Assessments, Site Security Plans, Personnel Surety Program submissions, and CSAT user accounts.

These submissions contain highly sensitive information about the security posture and chemical inventory of facilities using the CSAT tool.

CISA says the CSAT user accounts contained the following information.

Aliases
Place of Birth
Citizenship
Passport Number
Redress Number
A Number
Global Entry ID Number
TWIC ID Number

While CISA says there is no evidence of credentials being stolen, it recommends that all CSAT account holders reset the passwords for any of their accounts that used the same password.

CISA is sending out different notification letters depending on whether you are an individual or organization.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : BleepingComputer – https://www.bleepingcomputer.com/news/security/chemical-facilities-warned-of-possible-data-theft-in-cisa-csat-breach/

Tags: Chemicalfacilitiestechnology
Previous Post

Chrome for Android tests feature that securely verifies your ID with sites

Next Post

The Download: hyperrealistic deepfakes, and using math to shape wood

Next Gen Creators: Unveiling the Future of Synthetic Innovation

March 25, 2026

Meet the Trailblazing Scientists Chosen for the 2026 Schmidt Science Fellows Cohort

March 25, 2026

Discover the Wonders of the Universe at Science Central’s New Planetarium!

March 25, 2026

Meet the Pampered Squirrel Living a Surprisingly Luxurious Life in Viral Videos

March 25, 2026

Dallas police receive $22 million for FIFA World Cup security measures, including more funding for drones and cameras – WFAA

March 25, 2026

More Than Food: Agriculture’s Economic Footprint – American Farm Bureau Federation

March 25, 2026

Entertainment Tonight and Inside Edition Get Renewal News at CBS Media Ventures – Yahoo

March 25, 2026

Providing quality, access to health care in rural Indonesia – Harvard T.H. Chan School of Public Health

March 25, 2026

Unraveling Playground Politics: The Hidden Dynamics at Play

March 25, 2026

One Tank Trips: Exploring the Museum of Music Technology – 6abc Philadelphia

March 25, 2026

Categories

Archives

March 2026
M T W T F S S
 1
2345678
9101112131415
16171819202122
23242526272829
3031  
« Feb    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,137)
  • Economy (1,155)
  • Entertainment (22,031)
  • General (20,615)
  • Health (10,193)
  • Lifestyle (1,169)
  • News (22,149)
  • People (1,157)
  • Politics (1,173)
  • Science (16,370)
  • Sports (21,656)
  • Technology (16,137)
  • World (1,148)

Recent News

Next Gen Creators: Unveiling the Future of Synthetic Innovation

March 25, 2026

Meet the Trailblazing Scientists Chosen for the 2026 Schmidt Science Fellows Cohort

March 25, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version