Digital Government

The Pentagon Should Keep Better Tabs on IT Cybersecurity, Supply Chain Risks, GAO Says

The findings come as the Defense Department continues to increase its investment in information technology and cybersecurity year over year—a trend that could likely mean more scrutiny.

Cybersecurity

Russia Might Try Reckless Cyber Attacks as Ukraine War Drags On, US Warns

Ground commanders have been unable to capitalize on at least one previous cyber strike.

Cybersecurity

White House Official: Administration Urgently Researching Central Bank Digital Currency

As due dates near for agency deliverables under an executive order, the Atlantic Council has produced a report that could help officials inform the president of implications for cybersecurity.

Cybersecurity

National Cyber Director: Mandates Coming to Secure Commercial Information Technology

An event hosted by the leading trade association for major tech vendors highlighted what has so far been an impasse between government and industry on cybersecurity policy.

Cybersecurity

China Compromised Telecom Firms Using Known Vulnerabilities, Federal Agencies Warn

The alert comes as the U.S. continues negotiations with countries like Russia and China on what constitutes “cybercrime” at the United Nations.

Cybersecurity

FBI, DOJ Seize Website Addresses, Associated Illegal Data Sales, Hacking Services

International law enforcement targeted and confiscated three internet domain names that sell cyberattacks and personal information.

Cybersecurity

Why Commerce Went Against Microsoft on Rule to Control Cyber Exploits

The rule aims to prevent certain countries—most notably China—from receiving U.S. exports that could advance their intrusion and surveillance technology.

Cybersecurity

CISA, DOD Report Gaps for Agencies Assessing 5G Security Risks

Agency officials identified a lack of guiding standards for determining and mitigating risk from certain implementations of the technology and advised agencies to proceed with caution, employing penetration tests accordingly.

Cybersecurity

Federal CISO: Recommendations In to Acquisition Council for Software Procurement

Federal CISO Chris DeRusha says he doesn’t want to tie agencies’ hands regarding self attestation versus third-party verification of vendor practices.

Cybersecurity

Senate Report Highlights Lack of Government Data on Ransomware Payments

A new report details the role cryptocurrencies play in incentivizing ransomware attacks and the government’s response.

Cybersecurity

CISA Orders Agencies to Mitigate VMWare Vulnerabilities Under Deadline

Advanced adversaries appear to be exploiting the vulnerabilities to get around multifactor authentication.

Cybersecurity

Agencies Showcase Federal Cyber Progress, Outline Future Threats

Witnesses from CISA, NIST, and the GSA spoke before a House Homeland subcommittee on their current efforts to bolster the nation’s cyber defenses.

Cybersecurity

Key Convener Releases Plan for Securing Open Source Software with White House

A crucial entity within the open source ecosystem is urging prioritization of libraries that support widespread applications like internet routing, among other things.

Ideas

One Year Later: A Hacker’s View on the Cybersecurity Executive Order

Federal network adversaries have evolved in the year since the order’s signing.

Cybersecurity

US, Allied Cybersecurity Agencies, Advise Reviewing Contracts with Tech Vendors

A joint advisory from CISA, domestic partners and counterpart agencies in the Five Eyes intelligence alliance warns of a heightened threat to managed service providers and their customers.

Cybersecurity

Survey: 93% of Americans Fear Cyber Warfare Against U.S.

A consumer survey suggests Americans are taking some steps to prepare for possible cyber warfare.

Ideas

Phishing Threats Attempt to Hook New Government Victims

While the government is focused on the dangers of ransomware, phishing campaigns can circumvent the usual protections placed on its networks.

Cybersecurity

CISA Adds New Russian Malware to Cyber Advisory

The agency updated its warning regarding malware deployed by Russian state actors as the country continues war against Ukraine.

Cybersecurity

Cybersecurity Pros Signal Regulatory Challenge for Securing Industrial Control Systems

A studious adversary may be hellbent on destruction, and a comprehensive approach is needed to successfully govern the protection of critical infrastructure, specialists say.