CISA advisories and KEV updates, plus CloudBees Unify and Azure Managed Redis - Week of May 26, 2025
Companies mentioned
-
Amazon Web Services (AWS)
-
AMD
-
Astera Labs
-
CloudBees
-
Console Connect
-
Crusoe
-
CXL
-
CyberRatings.org
-
Cybersecurity and Infrastructure Security Agency (CISA)
-
Datacenter Dynamics
-
Docker
-
Fujitsu
-
GitHub
- Google Cloud Platform (GCP)
-
IBM
-
Ivanti
-
Microsoft
-
Mplify Alliance
-
Netskope
-
Nvidia
-
Qualcomm
-
Redis
-
Sanmina
-
Varonis
-
ZT Systems
Overview of Recent Activity
Recent updates covered enterprise DevOps governance with AI-enhanced tooling, production readiness for Azure Managed Redis, container supply-chain hardening, and telecom API integration. Security and infrastructure work included CISA advisories and KEV catalog expansion, CISA changes to cybersecurity alert distribution, and Varonis reporting on AI exposure risks. Networking and data platform efforts also included SASE evaluation tooling, WAN integration for secure access, and telemetry updates for network monitoring.
Key Themes and Developments
Technology Releases & Product Enhancements
CloudBees introduced CloudBees Unify to connect existing developer toolchains into a single, secure, AI-enhanced control plane, adding governance and observability. The release included features such as a Unified Control Plane, Progressive Adoption Model, Continuous Security, AI-Driven Testing and Optimization, and Artifact Traceability and Unified Releases. CloudBees SaaS also gained the “Deployed on AWS” designation in AWS Marketplace.
Azure Managed Redis reached general availability as a fully managed in-memory datastore in Azure. The service offered “up to 99.999% availability with multi-region Active-Active capabilities” and enabled access to Redis 7.4, with Redis 8 expected soon. Migrating from Azure Cache for Redis tiers was described as improving performance, scale and security, and access to Redis and Azure ecosystems.
Partnerships & Ecosystem Engagement
MEF introduced the LSO Adaptor Tool as an Open Source mapping tool developed with Console Connect, supported through GitHub and the MEF LSO Marketplace. MEF said the tool facilitated integration between proprietary APIs and MEF’s standardized LSO Business APIs. “The MEF LSO API Adaptor Tool marks an important step toward accelerating the adoption of standardized APIs for global interoperability,” Pascal Menezes, CTO of MEF, said.
Astera Labs announced a collaboration with NVIDIA to enhance NVLink solutions within its Intelligent Connectivity Platform. The partnership targeted AI infrastructure requirements and described platform integration across PCIe, CXL, and Ethernet hardware with its COSMOS software suite. “This partnership is positioned to strengthen Astera Labs' offerings with the integration of NVLink solutions, catering to the evolving requirements of AI infrastructure,” the release said.
Infrastructure, Platform, or Deployment Updates
CISA issued a joint Cybersecurity Advisory on Russian GRU targeting technology companies and Western logistics entities involved in coordination, transport, and delivery of foreign assistance to Ukraine. The advisory described “a Russian state-sponsored cyber espionage-oriented campaign” and stated GRU unit activity is likely connected to widescale targeting of Internet Protocol cameras in Ukraine and NATO-bordering nations.
CISA also expanded its Known Exploited Vulnerabilities (KEV) Catalog with six new entries, including vulnerabilities for Ivanti Endpoint Manager Mobile and Synacor Zimbra Collaboration Suite (ZCS). Separately, CISA changed how it shares cybersecurity updates, stating that starting May 12, announcements would only be shared through CISA social media platforms, email, and RSS feeds tied to Cybersecurity Alerts & Advisories distribution changes.
Full Update Index
CloudBees Unify; Varonis AI data security report; Deca Technologies and IBM manufacturing agreement; MEF and Console Connect open source LSO Adaptor Tool; Azure Managed Redis general availability; Astera Labs and NVIDIA NVLink collaboration; CISA GRU targeting advisory; CISA KEV catalog expansion; CISA cybersecurity alert distribution changes; Docker Hardened Images; Varonis FedRAMP authorization; AMD ZT Systems sale to Sanmina; NVIDIA DGX Cloud Lepton; NVIDIA robotics updates; NVIDIA RTX PRO Servers; NVIDIA DGX Spark and DGX Station systems; NVIDIA NVLink Fusion for industry; Gemtek 800G optics and AI router at COMPUTEX; SASE RFP toolkit; Netskope One Gateway integration with Google Cloud WAN; Netskope unified DLP guidance; ONES 3.1 network monitoring updates; ONES telemetry enhancements for compute environments.
- CloudBees Unveils CloudBees Unify Integrating AI-Enhanced DevOps Solutions for Enterprises
CloudBees Unify offers governance and security, improving efficiency in complex software environments while integrating with existing tools. - Varonis report highlights risks of AI on data security
New findings reveal that 90% of sensitive cloud data is open to AI, with risks stemming from misconfigurations and shadow apps. - Deca Technologies partners with IBM for manufacturing in Bromont
Deca Technologies and IBM have signed an agreement for M-Series and Adaptive Patterning technologies at IBM's Bromont facility. - MEF and Console Connect launch Open Source LSO Adaptor Tool for API integration
Developed with Console Connect, the MEF LSO Adaptor Tool supports efficient integration of existing proprietary APIs. - Azure Managed Redis now generally available on Microsoft Azure
Azure Managed Redis enables cost-effective scaling with advanced features, offering users improved management and integration. - Astera Labs collaborates with NVIDIA to enhance NVLink solutions
Astera Labs collaborates with NVIDIA to enhance its Intelligent Connectivity Platform with NVLink, targeting AI infrastructure needs. - CISA issues advisory on Russian GRU targeting tech firms
CISA warns of Russian GRU attacks on logistics and tech firms linked to Ukraine assistance, urging firms to enhance cybersecurity. - CISA expands Known Exploited Vulnerabilities Catalog with new entries
Binding Operational Directive 22-01 mandates response to catalog vulnerabilities for federal agencies, advised for all organizations. - CISA changes how it shares cybersecurity alerts
CISA will shift cybersecurity update announcements to social media and email from May 12, dropping the previous webpage listings. - Docker Announces Hardened Images to Boost Enterprise Software Supply Chain Security
Docker Hardened Images provide a catalog of security-hardened container images that support enterprise security standards and compliance. - Varonis Becomes the First Data Security Platform to Achieve FedRAMP Authorization
The FedRAMP certification confirms Varonis' Data Security Platform meets federal cloud security standards for protecting sensitive data. - AMD to sell ZT Systems' manufacturing business to Sanmina for $3 billion
AMD sells ZT Systems' data center business to Sanmina for $3 billion, retaining its design and customer teams. - NVIDIA introduces DGX Cloud Lepton for AI application development
CoreWeave, Crusoe, and others will supply GPUs on NVIDIA's new DGX Cloud Lepton marketplace, enhancing AI development. - NVIDIA enhances humanoid robotics capabilities with GR00T N1.5 and GR00T-Dreams
NVIDIA introduces GR00T N1.5 model, enhancing humanoid robotics training efficiency and task adaptability. - NVIDIA introduces RTX PRO Servers to enhance IT infrastructure for AI factories
NVIDIA launches RTX PRO Servers to enhance data center capabilities for AI, supporting varied enterprise workloads. - NVIDIA launches AI-first DGX personal computing systems with global computer makers
DGX Spark and DGX Station systems launch to cater to AI researchers, providing robust computing solutions in a compact format. - NVIDIA Unveils NVLink Fusion for Industry to Build Semi-Custom AI Infrastructure With NVIDIA Partner Ecosystem
Fujitsu and Qualcomm to integrate CPUs with NVIDIA GPUs via NVLink Fusion for enhanced data center efficiency. - Gemtek Technology to Showcase 800G Optical Module, Software Cloud, and AI Router at COMPUTEX TAIPEI 2025
Gemtek Technology will unveil its 800G Optical Module and Software Cloud platform at COMPUTEX TAIPEI 2025. - Secure Access Service Edge RFP Launches for Buyers
Collaboration between CyberRatings, SDxCentral, and Decision Insights led to a toolkit aiding in the SASE purchasing process. - Netskope integrates One Gateway with Google Cloud WAN
By partnering with Google Cloud, Netskope aims to streamline operations and modernize network infrastructure. - Netskope outlines the importance of a unified DLP strategy
A robust data loss prevention approach is essential for companies to manage sensitive data amid evolving privacy regulations and technologies. - Netskope explores the future of business technology leadership
Business technology leaders must prioritize relationship-building, adaptability, and security in their evolving roles. - ONES 3.1 Enhances IP Management for Network Monitoring
Automated alerts in ONES 3.1 ensure timely notifications for management IP changes, facilitating quick administrative responses. - ONES 3.1 enhances network management with updates
Default Rules with troubleshooting integrated into ONES 3.1 provide clearer insights and enhance operational efficiency for network operators. - ONES improves performance monitoring for compute environments
Efficient telemetry in ONES aids in diagnosing network performance, enhancing data reliability while monitoring various system components.