Lawmakers Demand Answers as CISA Tries to Contain Data Leak
2026-05-23T01:23:31Z•09242347e89a92dba9e093b782895d3f88064d29fb3bbb8cbc3bcfc27a00d15d
AWS GovCloudAdobe ReaderBlueHammerCISACanvasChrome zero-dayDDoSGitHubIoT-botnetKimwolfMicrosoft Office tokensPatch TuesdayScattered SpiderSharePointanti-DDoSarrestbotnet-abusecongressional-inquirycredentials-exposuredata-extortiondata-leakeducation-breachransomware-history (REvil,GandCrab)router-exploitzero-day
What happened
A series of high-impact cyber incidents and remediations reported by KrebsOnSecurity: a CISA contractor publicly exposed highly privileged AWS GovCloud credentials and internal build/deploy secrets on GitHub, prompting Congressional inquiries as CISA scrambles to contain the leak; a widespread Canvas data-extortion incident threatens data on ~275 million students and staff; Canadian arrest of the alleged Kimwolf IoT botnet operator amid large-scale DDoS activity; evidence that Russian-linked actors exploited router flaws to harvest Microsoft Office authentication tokens from ~18,000 networks;報
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 09242347e89a92dba9e093b782895d3f88064d29fb3bbb8cbc3bcfc27a00d15d
- Enrichment time
- 2026-05-23T01:23:31Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.