<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[CISA fired most of the people who were helping report KEVs so now they expect us to do it for them.]]></title><description><![CDATA[<p>CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. Nope. <img class="not-responsive emoji" src="https://media.infosec.exchange/infosec.exchange/custom_emojis/images/000/028/862/original/87d048cbfd3b74b5.png" title=":middle_finger_claw:" /> </p><p><div class="card col-md-9 col-lg-6 position-relative link-preview p-0">

<div class="card-body">
<h5 class="card-title">
<a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog">
Access Denied
</a>
</h5>
<p class="card-text line-clamp-3"></p>
</div>
<a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog" class="card-footer text-body-secondary small d-flex gap-2 align-items-center lh-2">



<img src="https://www.cisa.gov/favicon.ico" alt="favicon" class="not-responsive overflow-hiddden" style="max-width: 21px; max-height: 21px;" />



<p class="d-inline-block text-truncate mb-0"> <span class="text-secondary">(www.cisa.gov)</span></p>
</a>
</div></p>]]></description><link>https://board.circlewithadot.net/topic/3527ae80-5cc5-4877-b0ab-0b6a34c55403/cisa-fired-most-of-the-people-who-were-helping-report-kevs-so-now-they-expect-us-to-do-it-for-them.</link><generator>RSS for Node</generator><lastBuildDate>Mon, 25 May 2026 16:57:23 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/3527ae80-5cc5-4877-b0ab-0b6a34c55403.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 21 May 2026 15:04:33 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 20:35:10 GMT]]></title><description><![CDATA[<p><span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> Lol WordPress needs a lot of care from people with much more web coding skill than me... That shit if you dont set it up right is so easy to compromise regardless of your skill level. Have had a few people use me for security testing in hopes to save a buck on cybersecurity for their sites and they all got pwned by basic holes in under 5 minutes lol. Also abused a WordPress language switcher glitch and one dumb authentication bug  to log out the admin of JINR's (Russian version of CERN) public facing web site server 4 years ago from the comfort of a college dorm laundry room using nothing but my cell phone without even being actually logged in to her account in any way. As for the failed attempt at gov bug bounty, my god that was a fully custom stack fuckmess full of terrible security decisions and they simply got lucky that I couldn't quite get shit to report but someone more skilled at web specific stuff than me could likely find a way in lol.</p>]]></description><link>https://board.circlewithadot.net/post/https://ioc.exchange/ap/users/116596538263481113/statuses/116614477285193779</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://ioc.exchange/ap/users/116596538263481113/statuses/116614477285193779</guid><dc:creator><![CDATA[abt1181@ioc.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 20:35:10 GMT</pubDate></item><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 16:14:43 GMT]]></title><description><![CDATA[<p><span><a href="/user/abt1181%40ioc.exchange" rel="nofollow noopener">@<span>ABT1181</span></a></span> Good old contractors. And now look how much is Wordpress.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613453160705336</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613453160705336</guid><dc:creator><![CDATA[cr0w@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 16:14:43 GMT</pubDate></item><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 16:09:16 GMT]]></title><description><![CDATA[<p><span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> LOL US gov infosec is a fucking joke. A few years ago tried to do something for a government HackerOne bounty and even with web hacking being the weakling of my hacking skills (far better and more specialized in DRM reverse engineering, for example) I *nearly* broke into the external access portal of a pretty spicy government system that was within the bounty scope lmao. I did manage to get the page to profusely misbehave on command too. No bounty of course but yeah.... Still showed it was sketchy as hell they were IIRC like one step or server setting away from having to probably paying out 5 figures for a severe vuln report.</p>]]></description><link>https://board.circlewithadot.net/post/https://ioc.exchange/ap/users/116596538263481113/statuses/116613431737554284</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://ioc.exchange/ap/users/116596538263481113/statuses/116613431737554284</guid><dc:creator><![CDATA[abt1181@ioc.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 16:09:16 GMT</pubDate></item><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 15:47:20 GMT]]></title><description><![CDATA[<p><span><a href="/user/nyanbinary%40infosec.exchange">@<span>nyanbinary</span></a></span> That's way too much work.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613345500636723</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613345500636723</guid><dc:creator><![CDATA[cr0w@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 15:47:20 GMT</pubDate></item><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 15:43:32 GMT]]></title><description><![CDATA[<p><span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> you know, ... <em>whispers "gayint gcna"</em></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/nyanbinary/statuses/116613330524508723</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/nyanbinary/statuses/116613330524508723</guid><dc:creator><![CDATA[nyanbinary@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 15:43:32 GMT</pubDate></item><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 15:11:20 GMT]]></title><description><![CDATA[<p>Even worse, they don't even host the report form. It's through Qualtrics.</p><p><div class="card col-md-9 col-lg-6 position-relative link-preview p-0">

<div class="card-body">
<h5 class="card-title">
<a href="https://cisasurvey.gov1.qualtrics.com/jfe/form/SV_1Zwu52kgK2OYf3w">
CISA KEV Nomination Form
</a>
</h5>
<p class="card-text line-clamp-3">This form allows external users to submit a Common Vulnerabilities and Exposures (CVE) entry for consideration to be added to the Cybersecurity and Infrastructure Security Agency’s (CISA) Known Exploited Vulnerabilities (KEV) Catalog. The KEV Catalog highlights vulnerabilities that are actively exploited and pose significant risk to organizations. By nominating a CVE, you help CISA identify and prioritize vulnerabilities that require urgent attention and remediation across critical infrastructure and enterprise environments.</p>
</div>
<a href="https://cisasurvey.gov1.qualtrics.com/jfe/form/SV_1Zwu52kgK2OYf3w" class="card-footer text-body-secondary small d-flex gap-2 align-items-center lh-2">



<img src="https://cisasurvey.gov1.qualtrics.com/favicon.ico" alt="favicon" class="not-responsive overflow-hiddden" style="max-width: 21px; max-height: 21px;" />



<p class="d-inline-block text-truncate mb-0"> <span class="text-secondary">(cisasurvey.gov1.qualtrics.com)</span></p>
</a>
</div></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613203901479791</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613203901479791</guid><dc:creator><![CDATA[cr0w@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 15:11:20 GMT</pubDate></item><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 15:07:08 GMT]]></title><description><![CDATA[<p><span><a href="/user/h2onolan%40infosec.exchange">@<span>h2onolan</span></a></span> These are wild times.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613187435185257</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116613187435185257</guid><dc:creator><![CDATA[cr0w@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 15:07:08 GMT</pubDate></item><item><title><![CDATA[Reply to CISA fired most of the people who were helping report KEVs so now they expect us to do it for them. on Thu, 21 May 2026 15:06:18 GMT]]></title><description><![CDATA[<p><span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> imagine gathering the goodwill from an entire community and then setting it on fire.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/h2onolan/statuses/116613184100574200</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/h2onolan/statuses/116613184100574200</guid><dc:creator><![CDATA[h2onolan@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 15:06:18 GMT</pubDate></item></channel></rss>