NSA Cybersecurity Advisories & Guidance


NSA leverages its elite technical capability to develop advisories and mitigations on evolving cybersecurity threats.

Browse or search our repository of advisories, info sheets, tech reports, and operational risk notices listed below. Some resources have access requirements.

For a subset of cybersecurity products focused on telework and general network security for end users, view our Telework and Mobile Security Guidance page.

To read our complete series on protecting DoW microelectronics from adversary influence, view our DoW Microelectronics Guidance page.

ImageTitlePublication Date
 Joint CSI: Establishing a Coordinated  Vulnerability Disclosure Program  to Work With Security ResearchersJoint CSI: Establishing a Coordinated Vulnerability Disclosure Program to Work With Security Researchers7/15/2026
 Joint CSA: Iranian-Affiliated Cyber Actors  Exploit Programmable Logic Controllers Across US Critical InfrastructureJoint CSA: Iranian-Affiliated Cyber Actors Exploit Programmable Logic Controllers Across US Critical Infrastructure7/22/2026
 Joint CSA: Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration SuiteJoint CSA: Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite7/23/2026
Page 19 of 19

Additional Documents

Some guidance is protected and requires use of a DoW Common Access Card (CAC) to access. Visit https://cyber.mil/nsa/cybersecurity-advisories-and-technical-guidance/ to access the following and other protected documents:

  • Avoid Dangers of Wildcard TLS Certificates and the ALPACA Technique (FOUO version)
  • Protecting VSAT Communications
  • Quantum Security of Symmetric Cryptography and Hash Functions: A Review
  • Securing AWS S3
  • Security Considerations for Office 365 Government Customers