Lawmakers Demand Answers as CISA Tries to Contain Data Leak

2026-05-23T01:23:31Z09242347e89a92dba9e093b782895d3f88064d29fb3bbb8cbc3bcfc27a00d15d
AWS GovCloudAdobe ReaderBlueHammerCISACanvasChrome zero-dayDDoSGitHubIoT-botnetKimwolfMicrosoft Office tokensPatch TuesdayScattered SpiderSharePointanti-DDoSarrestbotnet-abusecongressional-inquirycredentials-exposuredata-extortiondata-leakeducation-breachransomware-history (REvil,GandCrab)router-exploitzero-day

What happened

A series of high-impact cyber incidents and remediations reported by KrebsOnSecurity: a CISA contractor publicly exposed highly privileged AWS GovCloud credentials and internal build/deploy secrets on GitHub, prompting Congressional inquiries as CISA scrambles to contain the leak; a widespread Canvas data-extortion incident threatens data on ~275 million students and staff; Canadian arrest of the alleged Kimwolf IoT botnet operator amid large-scale DDoS activity; evidence that Russian-linked actors exploited router flaws to harvest Microsoft Office authentication tokens from ~18,000 networks;報

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
09242347e89a92dba9e093b782895d3f88064d29fb3bbb8cbc3bcfc27a00d15d
Enrichment time
2026-05-23T01:23:31Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Lawmakers Demand Answers as CISA Tries to Contain Data Leak · Baitaphish