Cyber Defense

US can focus on both offensive and defensive cyber, top NSC official says

Offensive measures are “an important tool of the toolbox that we’ll be unafraid to use,” Alexei Bulazel said. “But that’s not to say we don’t need to do normal blocking-and-tackling cyber defense.”

White House cyber office calls for ‘whole of nation’ effort to deter nation-state hackers

Newly-confirmed ONCD director Sean Cairncross wants to work with the private sector to develop a toolkit for stopping foreign hackers and boosting U.S. cyberdefenses.

The federal government’s data protection depends on resilience — not just cybersecurity

COMMENTARY | An increasingly AI-driven threat landscape demands a resilience-first mindset across federal agencies.

Noem terminates 24 FEMA workers for failing to address cyber vulnerabilities

An internal FEMA email obtained by Nextgov/FCW ordered all agency employees to change their passwords “due to recent cybersecurity incidents and threats.”

Wyden calls for review of US court systems’ cyber posture after case system hack

Since the incident, several district courts have instructed filers not to submit sealed documents, amid risks that the systems protecting them may not be secure.

Microsoft announces plan to transition to quantum resilience by 2033

Microsoft is taking a phased approach to ensuring its products meet a post-quantum cryptography standard.

Government layoffs are making us less safe in cyberspace, experts fear

There’s been a mass exodus of government cyber expertise during the Trump administration.

Basic cybersecurity lapses are leaving US infrastructure exposed, top experts warn

To make U.S. networks more “toxic” to adversaries, “we need to have an ability for authentication to have some meaning,” former NSA director Gen. Paul Nakasone said.

Operational tech is ‘underprioritized’ in cyberdefense, experts tell Congress

Witnesses' calls for better investment in securing such systems come just two months before a key cybersecurity information-sharing law is set to expire.

OMB draft memo sets agency and vendor quantum security standards

The Office of Management and Budget is drafting a new memorandum to outline steps for the federal government’s migration to a post-quantum cryptographic standard.

How the federal government can tackle its on-prem sensitive data dilemma

COMMENTARY | The new cyber battleground isn’t just in the cloud — it’s also in legacy on-prem servers teeming with forgotten data that are ripe for exploitation.

Exclusive

Former Biden cyber chief defends Cyber Trust Mark in the face of FCC review

Anne Neuberger told Nextgov/FCW the Cyber Trust Mark, as it stands, is the most effective path to labeling secure devices and reducing reliance on insecure tech from China.

Secure by Design is just the start, CISA official says

A program manager for the Cybersecurity and Infrastructure Security Agency said ongoing threat vigilance is needed post-implementation of the agency’s Secure by Design framework.

Trump cyber executive order aims to amend ‘problematic’ parts of Biden, Obama cyber orders

The order strips certain Biden-era cyber directives and looks to orient federal cyber policy around concrete technical measures, including secure software development, quantum-resistant encryption and labeling standards for IoT devices.

Senate Homeland panel likely to approve Cairncross, Plankey for key cyber positions

Sean Plankey, tapped to lead CISA, did not appear at a Thursday hearing due to reported clearance-related delays, but his name was still added to a list of nominees to be voted on next week.

‘I do not have confidence’ that US infrastructure is cyber-secure, former NSC official says

At the AI Expo for National Competitiveness, Anne Neuberger told audiences that artificial intelligence tools are an enhancement opportunity for U.S. cyber defenses and intelligence collection.

CISA projected to lose a third of its workforce under Trump’s 2026 budget

The White House’s latest spending proposal projects nearly 1,000 jobs will be slashed at the nation’s lead civilian cyber agency. Related cyber and intel programs across government also face funding rollbacks.