US government urges federal agencies to patch Microsoft 365 now


  • CISA issues BOD 25-01, the first binding directive of the year
  • Addresses Microsoft 365 security, which is under threat
  • Other cloud providers will also be added soon

The US Cybersecurity and Infrastructure Security Agency (CISA) has issued its first binding operational directive for 2025, which includes a set of rules and requirements to ensure that Microsoft 365 cloud environments meet its cybersecurity standards .

BOD 25-01 is mandatory for all Federal Civil Executive Branch (FCEB) systems and assets, but CISA advises private sector companies to follow it as well.

Leave a Comment

Your email address will not be published. Required fields are marked *