# NSA and CISA Urge Router Hardening

The National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and Department of Defense Cyber Crime Center have jointly issued a cybersecurity advisory urging critical infrastructure organizations to harden router security against ongoing cyberattacks attributed to Russian FSB Center 16. The guidance, targeting sectors including defense, energy, healthcare, and government, emphasizes implementing SNMPv3, disabling vulnerable protocols, enforcing strong password policies, and maintaining up-to-date firmware. Eligible U.S. organizations are encouraged to enroll in no-cost cybersecurity services offered by CISA and NSA to strengthen their defenses.

- **Why this matters:** Procurement professionals should prioritize acquiring cybersecurity solutions and services that support router hardening and network infrastructure protection to meet federal guidance.
- Agencies and contractors in critical infrastructure sectors must evaluate current network device configurations and consider investments in advanced monitoring, patch management, and microsegmentation technologies.
- Security vendors offering compliance support, vulnerability assessments, and managed services aligned with NSA and CISA recommendations may find increased demand.
- Organizations should integrate these cybersecurity requirements into upcoming solicitations and contract renewals to mitigate risks from nation-state cyber threats.

**Jurisdictions:** federal
**Industries:** Defense & Military, Energy & Utilities
**Topics:** Cybersecurity
**Published:** July 14, 2026

### Government Entities
- National Security Agency (NSA)
- Cybersecurity and Infrastructure Security Agency (CISA)
- Federal Bureau of Investigation (FBI)
- Department of Defense Cyber Crime Center (DoD Cyber Crime Center)

### Vendors
- SOCRadar (security vendor)
- ColorTokens (security vendor)
- Merlin Group (security vendor)
- Finite State (security vendor)

### Key Quotes
> Organizations should treat internet-facing network infrastructure as a priority attack surface by eliminating default credentials, restricting management interfaces, and ensuring that routers receive the same level of monitoring and patching as other critical systems.
> — Matthew Hartman, Chief Strategy Officer at Merlin Group

> This warning demonstrates that nation-state attackers do not always need a sophisticated zero-day to penetrate critical infrastructure.
> — Ensar Seker, CISO at SOCRadar

> Microsegmentation represents one of the most effective long-term defenses against campaigns like this.
> — Louis Eichenbaum, Federal CTO at ColorTokens

### Sources
- [
		NSA, CISA and allies urge router hardening across critical infrastructure against FSB Center 16 attacks - Industrial Cyber	](https://industrialcyber.co/cisa/nsa-cisa-and-allies-urge-router-hardening-across-critical-infrastructure-against-fsb-center-16-attacks) - Industrial Cyber