Modernization

Court to Explore Whether Trump Administration Interfered in JEDI Cloud Contract

The Defense Department previously said lengthy litigation could bring the contract’s future into question.

Cybersecurity

White House Endorses Inclusion of Cybersecurity in Water Infrastructure Bill 

A recent attempt by hackers to poison the water supply in a Florida town prompted calls for more resources.

Cybersecurity

CISA experiments with cloud log aggregation to ID threats

CISA's chief technology officer said the cybersecurity watchdog has pilot projects underway with several departments and agencies to explore whether it can compile cloud logs as a way to increase its visibility into agency networks.

Cybersecurity

House Solarium Commission Members Press for More CISA Funding

“Congress was right to give the agency new authorities that allow it to better defend our interests in cyberspace, but without requisite funding, we’re setting CISA up for failure," the lawmakers wrote.

Cybersecurity

Senators Introduce Fresh Slate of Cybersecurity-Centered Bills

A couple would codify recommendations made by the Cyberspace Solarium Commission.

Ideas

The FBI Is Breaking into Corporate Computers to Remove Malicious Code – Smart Cyber Defense or Government Overreach

The actions raise questions about the power of courts to regulate cybersecurity without the consent of the owners of the targeted computers.

Cybersecurity

New bill would task CISA with infrastructure risk assessments

A new Senate bill would mandate the Department of Homeland Security continually reassess risks to critical infrastructure and that the White House provide a report to lawmakers outlining what legislative steps should be taken to mitigate potential problems.

Cybersecurity

Federal Agencies Detail Russian Tactics Used in Recent Cyber Intrusions

The FBI, Homeland Security Department and Cybersecurity and Infrastructure Security Agency issued an alert on Russian government cyber tradecraft and mitigation techniques for targets.

Artificial Intelligence

A Better Way to Spot Deep-Faked Satellite Images

Training AIs to look at 26 subtle features may help thwart attempts to peddle fraudulent imagery.

Ideas

How Do You Retire Technology and Limit Risk?

The challenge is that while many get excited about the new software when it’s installed, too few make long-term plans for removal at software end of life.

Cybersecurity

How the Federal CISO Views Zero Trust

Federal Chief Information Security Officer Chris DeRusha and other federal officials also advocated moving away from siloed cybersecurity budgeting for agencies.

Cybersecurity

CISA warns on new threat group using VPN flaw

A new report by the government's cybersecurity agency warns about another threat actor using malware initially discovered during the response to the intrusion involving SolarWinds.

Emerging Tech

JADC2 Strategy Nearing Completion, Official Says

Lt. Gen. Dennis Crall said the strategy has been briefed to the Chairman of the Joint Chiefs of Staff and the deputy secretary of defense.

Cybersecurity

Existing Agency Threat Hunters Welcome CISA’s New Authorities 

For the Department of Education, proactive threat hunting means not just taking down questionable URLs but buying them up.

Ideas

Misinformation, Disinformation and Hoaxes: What’s the Difference?

Though many people are just paying attention to these problems now, they are not new – and they even date back to ancient Rome.

Cybersecurity

CISA Issues Deadline for Federal Agencies to Address Pulse Secure Vulnerabilities

The vulnerabilities led to the compromise of government agencies early last summer and, together with a newly disclosed flaw, continue to be exploited.

Cybersecurity

CISA issues third emergency directive since SolarWinds

The government's cybersecurity watchdog is increasingly issuing emergency instructions to agencies for handling high-risk vulnerabilities, something analysts say reflects both CISA's stature and the environment its working in.

Cybersecurity

DOD’s Cybersecurity Accreditation Partner Working to Address Conflict of Interest Issues

Multiple members of the Accreditation Body’s board of directors also serve as consultants in the cybersecurity space, which critics say gives them an unfair advantage to cash in on the program.

Cybersecurity

CISA confirms U.S. agencies affected by Pulse Connect VPN vulnerabilities

The cybersecurity firm FireEye suspects at least one of the campaigns it reported on operates on behalf of the Chinese government.