CISA asks agencies to fix BeyondTrust bug now


  • CISA added two bugs found in BeyondTrust products
  • Both were seen in the wild in December 2024.
  • Federal agencies have until February 3, 2025 to fix things

The US Cybersecurity and Infrastructure Security Agency (CISA) has added two recently discovered BeyondTrust bugs to its catalog of known exploited vulnerabilities (KEV).

The move means that CISA has seen evidence that the bugs are being exploited in the wild and has therefore given federal agencies a deadline to patch the software or stop using it entirely.

Leave a Comment

Your email address will not be published. Required fields are marked *