logo

Chemical facilities warned of possible data theft in CISA CSAT breach

ID: 0bcff7e1-e3de-5e9c-8cdd-0a981d5a98fa

STIX ID: report--0bcff7e1-e3de-5e9c-8cdd-0a981d5a98fa

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-06-24

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

CISA confirmed that an Ivanti Connect Secure appliance backing the Chemical Security Assessment Tool (CSAT) was breached on 2024-01-23 when a web shell was uploaded and used over two days; this may have exposed Top-Screen surveys, Security Vulnerability Assessments, Site Security Plans, Personnel Surety submissions, and CSAT account PII. The agency links the incident to exploitation of multiple Ivanti vulnerabilities (several disclosed CVEs), took the device offline to investigate, and is notifying impacted individuals and organizations despite reporting no current evidence of data exfiltration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.