The U.S. Cybersecurity and Infrastructure Security Agency has issued an urgent directive requiring federal agencies to mitigate actively exploited vulnerabilities in IBM Langflow, N-central, and Apache Tomcat within three days.
CISA's warning signals that threat actors are already leveraging these flaws in the wild, making immediate patching critical for government systems.
Affected Systems:
- IBM Langflow: AI/ML framework vulnerability
- N-central: Remote management platform flaw
- Apache Tomcat: Java application server vulnerability
The three-day deadline reflects the severity of active exploitation. Federal agencies must prioritize these patches across their infrastructure to prevent unauthorized access and data compromise.
The vulnerabilities represent a significant risk to critical infrastructure, particularly given Tomcat's widespread use in enterprise environments. N-central's role in IT management means compromised instances could provide attackers broad system access.
Federal contractors and private sector organizations relying on these technologies should treat this warning as urgent guidance, even without formal mandates. CISA typically issues such directives when exploitation poses immediate threats to national security systems.
Levi Strauss & Co. disclosed a cyberattack in which hackers used social engineering tactics to compromise three employees and steal corporate data from their machines.
Computer maker Framework has notified its entire customer base of a data breach that exposed personal information. Hackers accessed names, email addresses, phone numbers, and physical addresses.
The North Carolina Ports Authority confirmed a cyberattack has disrupted IT systems across its major operations. The attack affects Port of Wilmington, Port of Morehead City, and Charlotte Inland Port.
Security researchers have identified a Chinese-linked spyware operation targeting victims across 13 countries, including the United States. The discovery came after operators made a critical operational security mistake.