Cybersecurity

Biden Redirects Agencies on Securing Information and Communications Technology

A new executive order revokes bans on WeChat and TikTok but retains and adds to a Trump edict on U.S. tech, especially “connected software applications” tied to foreign adversaries.

Cybersecurity

Colonial Pipeline CEO talks ransom with lawmakers

House lawmakers on Wednesday were keen to ask Colonial Pipeline's chief executive officer what he knew about the ramifications of making a ransom payment and how it might affect the company's finances.

Policy

White House Presents Steps to Address Supply-Chain Problems

A new task force would examine issues that surfaced during the pandemic, including semiconductor shortages.

Cybersecurity

Space Force focuses on building a digital workforce

The U.S. Space Force is focusing on building its cadre of super coders amid a workforce boon with more interested applicants than available positions, according to the branch's chief of space operations.

Cybersecurity

Colonial Pipeline CEO: Cybersecurity Mandates From TSA Might Help

Hackers breached the company after gaining access to a virtual private network not protected by multifactor authentication.

Cybersecurity

Colonial CEO defends $4.3M ransomware payment

Joseph Blount, the chief executive officer of Colonial Pipeline, on Tuesday defended the company's ransom payment to the criminal group Darkside and said Colonial is continuing to work with law enforcement and cybersecurity consultants to restore their business systems.

Ideas

Study Shows AI-generated Fake Reports Fool Experts

Misinformation within communities of expertise has the potential for scary outcomes such as delivering incorrect medical advice to doctors and patients.

Cybersecurity

IRS' Use of Special Hiring Authorities Could Be Leading to Skills Gaps, IG Says

The agency has been using emergency authorities to meet staffing goals, but may be compromising on the quality of new hires as a result, according to an inspector general report.

Cybersecurity

States Bolster Data Security Technology in Response to Covid-19, Survey Finds

Governments have faced significant technology challenges during the pandemic, with 79% saying they faced major issues adopting and expanding remote work, according to the National Association of State Technology Directors.

Emerging Tech

DOD-NTIA Open 5G Challenge Could Lead to New Requirements

A Defense Department official said DOD’s 5G prototyping is also examining the benefits of hardware and software bills of materials to scrutinize the supply chain.

Modernization

Lawmakers Want IGs to Include Telework Vulnerabilities in Upcoming FISMA Audits

House Oversight Committee leaders want to know what vulnerabilities remote-access software introduced and whether agencies mitigated them.

Ideas

Executive Order Hints at FedRAMP Alternatives

The order calls for modernizing the cloud-security program and opens the door for other frameworks to be used for authorization.

Cybersecurity

IG: CISA-Run Monitoring Program Has Not Improved DHS’ Cybersecurity Posture

The department’s inspector general also found vulnerabilities in the department’s technology due to poorly defined patch management roles and configuration settings.

Cybersecurity

DHS expands collective bargaining for TSA airport screeners

Although the American Federation of Government Employees praised the move, the union says it is still going to press for legislation to move TSA employees into Title 5.

Cybersecurity

Army rolls back short-lived IoT telework policy

The Army is "restaffing" the policy, which would have required teleworkers to turn off or remove smart devices, such as Amazon Echo speakers, from their remote workspaces.

Cybersecurity

Why Government Needs More than Money to Fix Cybersecurity Issues

A bigger budget has its numerous benefits but it doesn’t magically scale teams or thwart threats.

Cybersecurity

Supreme Court narrows scope of hacking law, but questions remain

The Supreme Court's ruling on Thursday decided a police officer did not violate a 1980s anti-hacking law, but the court ultimately left open questions about the Computer Fraud and Abuse Act's applicability for other purposes such as cybersecurity research.

Cybersecurity

NIST Will Build on Existing Software Development Framework to Meet Executive Order

The agency also shared how it’s thinking about defining “critical software,” which is to be prioritized under the order.

Cybersecurity

Lawmakers seek IG probes of telework cybersecurity

A group of House lawmakers are calling on the inspectors general of nine executive departments and the intelligence community to see what cybersecurity vulnerabilities may have arisen due to the mass increase of telework during the coronavirus pandemic.

Cybersecurity

Justice Took Down Two Domains Used in USAID Hack 

The action demonstrates the department’s authorities beyond attributing malicious cyber activity.