Cybersecurity

Changes coming to federal cyber in wake of massive breach

The supply chain hack that targeted IT management software SolarWinds and other vendors will result in changes to the federal government's cybersecurity posture, according to the official charged with leading the administration's response.

Cybersecurity

Lawmakers press NSA for answers about Juniper hack from 2015

A group of Democratic lawmakers is calling on the NSA to explain its part in developing a flawed encryption algorithm that was used and subsequently exploited through Juniper Network's security products, citing the supply chain hack involving SolarWinds Orion.

Cybersecurity

DOD moves to centralize security clearance disputes

The Defense Department issued new policy for those who have had their clearances revoked.

Cybersecurity

SolarWinds hack blights the Trump administration's cybersecurity record

The consequences of the SolarWinds Orion hack are far from clear, but analysts and lawmakers say that officials at CISA and NSA made notable strides to improve the government's cybersecurity posture.

Cybersecurity

Rob Joyce to lead NSA cyber office

Joyce's predecessor, Anne Neuberger, is joining President-elect Joe Biden's administration as a deputy national security advisor.

Cybersecurity

White House task force says Russia likely to blame for SolarWinds hack

The Cyber Unified Coordination Group said in a statement on Tuesday that fewer than 10 government agencies have been "compromised by follow-on activity" on federal systems as a result of the hack.

Cybersecurity

Lawmakers press Trump to sign NDAA in the wake of massive hack

The annual defense bill includes a section on cybersecurity based on recommendations from the Solarium Commission.

Cybersecurity

NSA warns on Russian hackers stealing data through VMware flaw

The National Security Agency says a vulnerability in a software used by federal agencies is being exploited by Russia-sponsored actors.

Acquisition

NSA warns contractors on China hacks

The National Security Agency released details on 25 existing vulnerabilities that Chinese state-sponsored threat groups are using to try to penetrate defense industrial base networks.

Cybersecurity

Intel and BYOD

The intelligence community is warming to the concept of bringing your own device to work -- except when it comes to highly classified work.

Cybersecurity

Cyber Command takes the fight abroad

The head of U.S. Cyber Command defends "persistent engagement" strategy with adversaries, explaining that proactive cyber operations won't lead the U.S. into an "all out war."

Cybersecurity

FBI, NSA reveal undisclosed Russian hacking tool

The GRU malware targets Linux operating systems and is used to conduct cyber espionage on behalf.

Modernization

Top secret telework 'is not a thing'

The National Security Agency is expanding its use of Microsoft Office 365 to support unclassified telework

Cybersecurity

NSA wants NatSec users to mask location data

The spy agency is advising users of Defense Department and National Security Systems to take steps to mask their location data on mobile devices and computers.

Cybersecurity

NSA and CISA push guidance for BootHole fix

Federal agencies are moving to put out custom guidance for dealing with a widespread bootloader bug that can be complicated to patch due to software and firmware interdependencies.

Cybersecurity

Spy chief sees 2020 election security as 'number one goal'

Gen. Nakasone's remarks come as a group of former senior officials seek funds to counter the "extraordinary challenges" posed by coronavirus pandemic and foreign interference to state and local election administrators.

Cybersecurity

NSA to release advisory on VPN security amid telework boom

Organizations that spent the past decade hardening their corporate networks must now contend with their workforce signing in from insecure, unmanaged personal devices at home.

Cybersecurity

NSA launches pilot program to secure defense contractors

The National Security Agency is testing a secure domain name system model to better secure companies in the defense industrial base, which houses much of the nation's weapons technology.

Cybersecurity

Lawmakers want answers on Juniper backdoors

Members of Congress are pressing Juniper's CEO for details of an internal probe into how modified code for a compromised NSA encryption algorithm wound up in the company's firewall products.

Cybersecurity

NSA's cyber wing looks to safeguard COVID research and expand outreach

The spy agency's deputy director said its new cyber directorate is focused on protecting vaccine research from hackers and supporting activities that help get Americans back to work.