Skip to main content
Security Policy

CISA issues BOD 26-04 prioritizing high-risk vulnerability patching for federal agencies

CISA issues BOD 26-04 prioritizing high-risk vulnerability patching for federal agencies Image: Primary
Cybersecurity and Infrastructure Security Agency
CISA's Binding Operational Directive 26-04 directs federal agencies to prioritize patching high-risk vulnerabilities to build a more resilient federal enterprise. By focusing on the most critical security gaps, the directive aims to help organizations avoid over-investment in lower-risk vulnerabilities. The directive was built around stakeholder feedback.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from Cybersecurity and Infrastructure Security Agency (@CISAgov) and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
AI
AI

Moonshot AI's Kimi K3 now available on Amazon Bedrock

AWS has made Kimi K3 from Moonshot AI available on Amazon Bedrock, describing it as the first open-weight model to reach 2.8 trillion parameters. The model combines native vision capabilities with a 1-million-token context window...

AI Infrastructure
AI Infrastructure

AWS launches GPU-aware SageMaker HyperPod Inference Gateway

AWS announced general availability of the SageMaker HyperPod Inference Gateway, a Kubernetes-native routing addon that places inference requests using real-time GPU signals such as KV cache utilization, queue depth, LoRA adapter r...

Security
Security

Cisco patches max-severity ISE zero-day under active exploitation

Cisco released security updates for a maximum-severity authentication bypass in Identity Services Engine and ISE Passive Identity Connector, tracked as CVE-2026-76460, and said its Product Security Incident Response Team is aware ...

Security
Security

Cisco warns of actively exploited ISE authentication bypass

Cisco warned that CVE-2026-76460, a maximum-severity flaw in Identity Services Engine and ISE Passive Identity Connector, is being actively exploited. The reported API authentication-control weakness can let an unauthenticated rem...