Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

CISA Emergency Directive Warns of Zero-Day Flaws in Cisco ASA, Firepower Devices

by Elodie Collins
September 26, 2025
in Cybersecurity, News
Madhu Gottumukkala, acting director at CISA. Gottumukkala warned against the cyber campaign targeting Cisco products

Madhu Gottumukkala, acting director at the Cybersecurity and Infrastructure Security Agency, warned against a Cisco flaw that hackers are exploiting with "alarming ease" to maintain persistence on a device and access a victim's network.

The Cybersecurity and Infrastructure Security Agency has published an emergency directive to warn against attackers targeting vulnerabilities affecting Cisco Adaptive Security Appliances, or ASA, web services.

You might also like

DSCA Director Michael Miller to Retire

HHS Grants Quality Management Office Eyes New SIN Under GSA Schedules Program

Space Force to Advance Data-Driven Space Operations With Stanford-Based AI Accelerator

In the memo issued Thursday, CISA said all federal civilian executive branch departments and agencies must take actions to prevent or respond to compromises.

For more updates from CISA and the entirety of the Homeland Security Department, make sure to send the best and brightest from your GovCon company to Potomac Officers Club’s 2025 Homeland Security Summit on Nov. 12. Register for this essential networking and technology conference now!

“As the lead for federal cybersecurity, CISA is directing federal agencies to take immediate action due to the alarming ease with which a threat actor can exploit these vulnerabilities, maintain persistence on the device, and gain access to a victim’s network,” according to Madhu Gottumukkala, the agency’s acting director. “The same risks apply to any organizations using these devices. We strongly urge all entities to adopt the actions outlined in this Emergency Directive.”

Table of Contents

  • Details of the Cisco ASA Vulnerability
  • What Agencies Must Do

Details of the Cisco ASA Vulnerability

CISA confirmed a widespread campaign targeting Cisco ASA and Firepower devices through zero-day vulnerabilities that allow remote code execution and privilege escalation.

According to Cisco, the campaign is connected to the ArcaneDoor cyberattacks the company first detected and reported in early 2024. ArcaneDoor, the company warned, has demonstrated the capability to modify read-only memory, or ROM, to maintain system access despite multiple reboots and software upgrades.

What Agencies Must Do

CISA is directing government agencies and other organizations impacted to account for all in-scope devices, gather forensic data and assess for possible compromises. Agencies are also advised to disconnect end-of-support devices and upgrade software to their latest versions.

Cisco has already released patches to address the vulnerabilities.

CISA Emergency Directive Warns of Zero-Day Flaws in Cisco ASA, Firepower Devices
Share5Tweet19

Recommended For You

DSCA Director Michael Miller to Retire

by Jane Edwards
May 18, 2026
Michael Miller. The Defense Security Cooperation Agency director will retire by the end of May.

DSCA Director Michael Miller will retire after 28 years in government serviceMary Beth Morgan will assume the role of acting DSCA directorMiller previously led defense trade efforts at...

Read moreDetails

HHS Grants Quality Management Office Eyes New SIN Under GSA Schedules Program

by Jane Edwards
May 18, 2026
Andrea Sampanis. The Grants QSMO director at HHS discussed the plan to create a new SIN under the GSA Schedules program.

Grants QSMO is working with GSA to create a new SIN for grants management services The new SIN includes grants support, technology operations and audit services The 2026 FedCiv Summit...

Read moreDetails

Space Force to Advance Data-Driven Space Operations With Stanford-Based AI Accelerator

by Miles Jamison
May 18, 2026
Space Force logo. The U.S. Space Force has launched the AI Accelerator program at Stanford University.

Space Force launches Stanford-based accelerator to fast-track AI innovationProgram explores orbital computing, sensor fusion and autonomous space operationsInitiative supports the service’s long-term push for faster, AI-driven decision-making in...

Read moreDetails

DOW Invests in PacSci EMC to Expand Solid Rocket Motor Production

by Miles Jamison
May 18, 2026
Michael Duffey. The under secretary of war for acquisition and sustainment discussed the Pentagon's investment in PacSci EMC.

War Department awarded PacSci EMC $27M to expand rocket motor productionNew Arizona facility will speed delivery of critical SRM componentsPentagon has invested $191M in SRM supply chain expansionThe...

Read moreDetails

NIST Advances Nine Post-Quantum Cryptography Candidates to Next Round of Standardization

by Kristen Smith
May 18, 2026
Quantum cryptography. NIST has advanced its post-quantum cryptography standardization effort to round three.

NIST advances nine post-quantum signature algorithms for further reviewThe agency continues expanding quantum-resistant cryptography optionsThe effort aims to strengthen future protection of digital infrastructureThe National Institute of Standards...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • DHS
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • General News
  • GovCon Expert
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved.

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved.

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!