Cybersecurity Advisories & Technical Guidance

NSA Leverages its elite technical capability to develop advisories and mitigations on evolving cybersecurity threats.

Browse or search our repository of advisories, info sheets, tech reports, and operational risk notices listed below. Some resources have access requirements.

For a subset of cybersecurity products focused on telework and general network security for end users, view our Telework and Mobile Security Guidance page here.

ImageTitlePublication Date
 CSA: Conti Ransomware9/22/2021
 CSI_KEEPING_SAFE_ON_SOCIAL_MEDIA_20210806.PDFCSI: Keeping Safe on Social Media (August 2021 Update)8/6/2021
 CTR_KUBERNETES HARDENING GUIDANCE.PDFCTR: Kubernetes Hardening Guidance8/3/2021
 CSI_SECURING_WIRELESS_DEVICES_IN_PUBLIC.PDFCSI: Securing Wireless Devices in Public Settings (July 2021)7/29/2021
 CSA_CHINESE_STATE-SPONSORED_CYBER_TTPS.PDFCSA: Chinese State Sponsored Cyber TTPs7/19/2021
 CSA_GRU_GLOBAL_BRUTE_FORCE_CAMPAIGN_UOO158036-21.PDFCSA: Russian GRU Global Brute Force Campaign7/1/2021
 CSI_DEPLOYING SECURE VVOIP SYSTEMS.PDFCSI: Deploying Secure Unified Communications/Voice and Video over IP Systems (Abridged) (June 2021)6/17/2021
 CTR_DEPLOYING SECURE VVOIP SYSTEMS.PDFCTR: Deploying Secure Unified Communications/Voice and Video over IP Systems (June 2021)6/17/2021
 CSI_PROTECTIVE DNS_UOO117652-21.PDFInfo Sheet: Selecting a Protective DNS Service (May 2021 Update)5/31/2021
 POTENTIAL THREAT VECTORS TO 5G INFRASTRUCTURE.PDFPotential Threat Vectors To 5G Infrastructure5/10/2021
Page 1 of 10

Additional Documents

The following resources require use of a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate. Read more information about these access requirements.