UK TimesUK Times
  • Home
  • News
  • TV & Showbiz
  • Money
  • Health
  • Science
  • Sports
  • Travel
  • More
    • Web Stories
    • Trending
    • Press Release
What's Hot

South Korea fires warning shots as North Korean ship breaches sea border – UK Times

26 September 2025

Why this is the most charged Ryder Cup in years: The impact of Donald Trump’s visit, Rory McIlroy against his nemesis – and can Europe answer the big question in front of hostile US crowd? 

26 September 2025

Betway Casino Welcome Bonus: 100% Matched Deposit up to £50 – UK Times

26 September 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
UK TimesUK Times
Subscribe
  • Home
  • News
  • TV & Showbiz
  • Money
  • Health
  • Science
  • Sports
  • Travel
  • More
    • Web Stories
    • Trending
    • Press Release
UK TimesUK Times
Home » US cyber officials issue ‘emergency directive’ after hackers breach government agency – UK Times
News

US cyber officials issue ‘emergency directive’ after hackers breach government agency – UK Times

By uk-times.com26 September 2025No Comments3 Mins Read
Facebook Twitter LinkedIn Telegram Pinterest Tumblr Reddit WhatsApp Email
Share
Facebook Twitter LinkedIn Pinterest Email

Sign up for the daily Inside Washington email for exclusive US coverage and analysis sent to your inbox

Get our free Inside Washington email

Get our free Inside Washington email

Inside Washington

U.S. cyber security officials have issued an “emergency directive” after hackers breached at least one government agency.

The Cybersecurity and Infrastructure Security Agency said it was aware of an “ongoing exploitation campaign by an advanced threat actor” that was targeting appliances made by Cisco Systems.

CISA did not specify which agencies have been affected, or how, or where the threat had come from, though experts told CNN they believe the hackers are state-backed and based in China.

The hackers, who are believed to have targeted Cisco previously, have been exploiting previously unknown flaws in the software for several months. Their activity presents “a significant risk to victim networks,” according to CISA.

The hackers are targeting appliances made by Cisco Systems, CISA says

The hackers are targeting appliances made by Cisco Systems, CISA says (Getty Images)

“We are aware of hundreds of these [affected] devices being in the federal government,” said Chris Butera, a senior official at the Cybersecurity and Infrastructure Security Agency, according to CNN.

He added that the emergency directive will help officials understand “the full scope of the compromise across federal agencies.”

In its own release, Cisco said it had been made aware of the breaches by multiple government agencies in May 2025, and had “dedicated a specialized, full-time team to this investigation, working closely with a limited set of affected customers.

“Our response involved providing instrumented images with enhanced detection capabilities, assisting customers with the analysis of packet captures from compromised environments, and conducting in-depth analysis of firmware extracted from infected devices,” the release said.

“These collaborative and technical efforts enabled our teams to ultimately identify the underlying memory corruption bug in the product software.”

Cisco said it had been made aware of the breaches by multiple government agencies in May 2025, and had ‘dedicated a specialized, full-time team to this investigation’

Cisco said it had been made aware of the breaches by multiple government agencies in May 2025, and had ‘dedicated a specialized, full-time team to this investigation’ (Getty Images)

According to the company, the attackers were observed to have exploited “multiple zero-day vulnerabilities and employed advanced evasion techniques.”

The complexity and sophistication of this incident required an extensive, multi-disciplinary response across Cisco’s engineering and security teams,” Cisco’s statement added.

The company said it believes “with high confidence” that the most recent attack is related to the same threat actor as the ArcaneDoor attack campaign reported in early 2024.

Cisco has urged its customers to update their software following the attacks.

The Independent has reached out to CISA and Cisco for comment and any updates regarding the breach, including which agencies may have been targeted.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email

Related News

South Korea fires warning shots as North Korean ship breaches sea border – UK Times

26 September 2025

Betway Casino Welcome Bonus: 100% Matched Deposit up to £50 – UK Times

26 September 2025

Recycle Week: Cheltenham is joining the ‘2025 Rescue Me! Recycle’ campaign

26 September 2025

UK politics live: Starmer set to announce details of ‘Brit card’ ID plan amid growing criticism – UK Times

26 September 2025

Agenda for Statutory Licensing Sub-Committee on Thursday, 2 October 2025, 9.30 am

26 September 2025

One more week to respond to Local Plan ‘call for sites’

26 September 2025
Top News

South Korea fires warning shots as North Korean ship breaches sea border – UK Times

26 September 2025

Why this is the most charged Ryder Cup in years: The impact of Donald Trump’s visit, Rory McIlroy against his nemesis – and can Europe answer the big question in front of hostile US crowd? 

26 September 2025

Betway Casino Welcome Bonus: 100% Matched Deposit up to £50 – UK Times

26 September 2025

Subscribe to Updates

Get the latest UK news and updates directly to your inbox.

© 2025 UK Times. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact Us

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version