Department of Homeland Security issues a compulsory directive to better protect federal information systems and the data that they contain against cyber-attack. The directive is based around CISA’s catalog of vulnerabilities that are known to pose a significant risk. In May of 2021, for example, a ransomware attack brought down the Colonial Pipeline, causing a serious fuel disruption for much of the United States. IT pros in the private sector should focus their efforts and their security resources on addressing vulnerabilities that have been exploited in the real world.”]
Source: https://thehackernews.com/2021/12/how-to-see-if-cybersecurity-of-your.html