We protect our nation’s most sensitive systems against cyber threats. Likes, retweets, and follows ≠ endorsement.

Joined November 2019
251 Photos and videos
NSA Cyber retweeted
A strong finish to #TechNetCyber. Daniel McCormack, Chief Operations Officer of NSA’s Cybersecurity Directorate, shared insights on the evolving cyber landscape, innovation, and the partnerships that help strengthen our collective defense. #CyberDefense
50
53
80
10,191
NSA Cyber retweeted
Malicious cyber threat actors are targeting internet-exposed ATG systems in the United States. Review our joint fact sheet for TTPs and recommendations to protect your systems. 👉 go.dhs.gov/5Sz
5
27
46
6,020
NSA’s ZIG webpage is now live! We are providing accessible resources for enhancing enterprise cybersecurity with Zero Trust. To learn more, visit the ZIG webpage. nsa.gov/Cybersecurity/ZIG/

40
132
462
111,467
NSA is releasing security design considerations for AI-driven automation leveraging MCP which, while simplifying the integration of diverse capabilities into powerful agent workflows, requires caution. Learn more: nsa.gov/Portals/75/documents…
68
250
894
107,880
Better understand agentic AI systems and mitigate the cybersecurity risks using a new guide we authored with @ASDGovAu and others. View the joint report. #Cybersecurity #AgenticAI media.defense.gov/2026/Apr/3…

67
232
745
89,882
NSA joins the @NCSC and others in releasing joint guidance detailing multiple China-nexus threat actors who are using dynamic, external covert networks of botnets to facilitate malicious cyber activity strategically at scale. Read the report today! media.defense.gov/2026/Apr/2…
63
113
283
29,242
If you haven’t already, we encourage organizations using LEO SATCOM systems to review our recent guidance and deploy the recommended strategies to mitigate the unique cybersecurity challenges these systems face. media.defense.gov/2026/Mar/2…

26
116
430
42,858
NSA Cyber retweeted
Iran-affiliated cyber actors are targeting operational technology devices across US critical infrastructure, including programmable logic controllers (PLCs). These attacks have led to diminished PLC functionality, manipulation of display data and, in some cases, operational disruption and financial loss. The @FBI, @CISAGov, @NSAgov, @EPA, @ENERGY and @US_CYBERCOM are urging US organizations—especially municipalities and those in the water and energy sectors—to review the tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) detailed in this advisory. Applying the recommended mitigations will reduce the risk of compromise: ic3.gov/CSA/2026/260407.pdf
125
660
1,385
221,271
NSA Cyber retweeted
Russian GRU cyber actors are exploiting vulnerable routers worldwide to intercept sensitive military, government, and critical infrastructure information. The @FBI, @NSAgov and 21 international parties across 15 countries have released a #PSA detailing GRU techniques and providing defensive guidance. We urge all network defenders and owners of small office/home office (SOHO) routers to update to the latest firmware versions, change default usernames and passwords, disable remote management interfaces from the internet, and stay alert for certificate warnings in web browsers and email clients. ic3.gov/PSA/2026/PSA260407
49
329
755
60,891
We are joining @ASDGovAu to highlight the key cybersecurity risks and corresponding mitigation strategies when using LEO SATCOM systems. To gain a better understanding of the risks and mitigations, view our joint report. #Cybersecurity media.defense.gov/2026/Mar/2…
70
82
173
19,168
Malicious actors are exploiting Cisco Catalyst SD-WAN technology to access global networks. Review our new joint Hunt Guide for details on detections and mitigation techniques and take immediate action to reduce risks to your networks. nsa.gov/Press-Room/Press-Rel…
104
103
255
25,865
ZIG Phase 1 & Phase 2 are here! Review these ZIGs for information on how to map out maturing your networks’ ZT implementation to the Target level. nsa.gov/Press-Room/Press-Rel…
Today we’re releasing the first two reports in a series of Zero Trust Implementation Guidelines (ZIGs) to provide further guidance on implementing the activities required to achieve the DoW defined Target-level of ZT implementation. nsa.gov/Press-Room/Press-Rel…
81
42
113
29,629
Today we’re releasing the first two reports in a series of Zero Trust Implementation Guidelines (ZIGs) to provide further guidance on implementing the activities required to achieve the DoW defined Target-level of ZT implementation. nsa.gov/Press-Room/Press-Rel…
74
69
185
53,958
The Primer provides clarification, direction, and guidance on how to implement the ZIGs through a structured yet modular approach.
6
9
27
5,310
Zero Trust starts with Discovery. The Discovery Phase provides foundational guidance to help organizations understand their environment in preparation for implementing Phase 1 & Phase 2. media.defense.gov/2026/Jan/0…

7
16
34
5,194
29 Dec 2025
Improper Secure Boot configuration could be putting your organizations at a greater risk of exposure to threats. Our guidance outlines how to check for proper configuration and recover if needed. Review here! 🔗media.defense.gov/2025/Dec/1…

11 Dec 2025
We recently published guidance on how to addresses challenges associated with Secure Boot configuration. If you’re a network defender or device owner who’s unclear on how Secure Boot interacts with other protective tech, read on. 🔗media.defense.gov/2025/Dec/1…
38
108
439
57,890
23 Dec 2025
If you haven’t yet, review the recent joint CSA for mitigation strategies to protect your organization’s OT control devices from attacks pro-Russia hacktivist groups are conducting against critical infrastructure. 🔗media.defense.gov/2025/Dec/0…

10 Dec 2025
Pro-Russia hacktivist groups are targeting virtual network computing connected human-machine interface devices to conduct opportunistic attacks on global critical infrastructure. Follow the advice in this new joint CSA to protect your organization. bit.ly/4oGdeQJ
24
87
211
27,366
18 Dec 2025
NSA’s recent report with @CISACyber & @cybercentre_ca warns of Chinese state-sponsored actors using BRICKSTORM malware for long-term persistence on victim systems. Review the report to learn about the IOCs & detection signatures associated with this activity.
4 Dec 2025
We’ve joined @CISACyber & @cybercentre_ca to attribute the broad campaign using BRICKSTORM to China state-sponsored cyber actors. Review the report for guidance on how to detect BRICKSTORM backdoor activity and improve your cybersecurity posture against this targeting. 🔗 media.defense.gov/2025/Dec/0…
19
86
234
20,885
17 Dec 2025
Critical infrastructure owners and operators should be aware of the risks and benefits associated with adopting AI into OT environments. Review our recent joint CSI for guidance on safe and secure integration of AI into OT systems. media.defense.gov/2025/Dec/0…

3 Dec 2025
Thinking of integrating AI into your operational technology environment? We’ve joined @CISACyber and others to publish guidance to help you safely and securely manage the associated risks and protect your environments. media.defense.gov/2025/Dec/0…
16
70
208
24,911