https://www.theregister.com/2025/08/02/cisa_coast_guard_cni/ – Plaintext passwords, shared admin accounts, and insufficient logging rampant at mystery org
https://www.cisa.gov/news-events/cybersecurity-advisories/aa25-212a
CISA is using the findings from a recent probe of an unidentified critical infrastructure organization to warn about the dangers of getting cybersecurity seriously wrong. … Threat hunters did not find any signs of foul play, nor any malicious activity on the network, but published an extensive report of its findings on Thursday, highlighting risks such as:
Insufficient logging
Insecurely-stored credentials
Shared local admin credentials across many workstations
Unrestricted remote access for local admin accounts
Insufficient network segmentation configuration between IT and operational technology assets
Device misconfigurations …
Regards