Skip to main content

Company intelligence

Cisa cybersecurity incidents and threat signals

cisa.gov

Cisa logo

This company page brings together public reporting currently associated with Cisa. It reflects signals published by Shadow Tier and should not be read as a complete incident history.

1

Published signals

currently linked to this company

0

Last 28 days

recent published signals

1

Last 90 days

recent published signals

0

High or critical

confidence classifications

June 29, 2026

Latest report

most recent published signal

Explore related intelligence

Explore this reporting from another angle

Based on all published signals currently linked to Cisa. Affected countries come from victim data; the company country above remains a separate profile fact. Counts describe this reporting set, not overall incident prevalence.

Company signals

All published signals involving Cisa

Cisa logoMisconfiguration or publishing error
Medium

CISA Contractor Leaks AWS GovCloud Keys and Internal Credentials on Public GitHub

A contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. The exposure was flagged by GitGuardian on May 15, 2026, and reported to KrebsOnSecurity. The repository, named 'Private-CISA,' contained plaintext credentials, cloud keys, tokens, and internal CISA files, exposed since November 2025. CISA acknowledged the leak and took the repository offline.

Cisa

FAQ

Questions about Cisa cybersecurity reporting

What does the Cisa page include?

It combines a reviewed organization profile with all current published Shadow Tier signals explicitly linked to Cisa.

Does every mention of Cisa appear here?

No. A signal must contain a reliable company connection and meet the publication criteria; incidental or ambiguous mentions are excluded.

Why can the incident count change?

The page follows current published reporting. Counts change as new evidence is added, classifications are reviewed, or older signals leave the reporting window.