Exclusive Cybersecurity

‘Widespread’ breach let hackers steal employee data from FEMA and CBP

A Citrix vulnerability — suspected to have led to firings of multiple FEMA technology staff — enabled the breach, which let hackers pilfer data from FEMA servers connected to states at the southern border.

Cybersecurity

Vital cyber data-sharing law appears likely to expire amid looming government shutdown

Law firms are advising clients to prepare for this possibility, although the extent of information sharing that will cease if the law lapses remains unclear.

Cybersecurity

CISA issues emergency patching directive for Cisco devices on federal networks

An emerging cyber threat group is exploiting vulnerabilities in Cisco devices, both the company and CISA said. The hackers have potential links to China, according to an analysis put out last year.

Cybersecurity

House funding extension tacks on two-month reprieve for key cybersecurity laws

The short-term measure gives lawmakers extra time to iron out differences between House and Senate versions of the renewal.

Cybersecurity

CISA ready to accept any extension for key cyber info-sharing law, official says

“Give us two years. Give us ten years. Give us 50. Whatever you take, we’ll take it,” CISA’s Nick Andersen said of the soon-to-expire 2015 Cybersecurity Information Sharing Act.

Cybersecurity

CISA weighs ‘alternative funding sources’ to preserve cyber vulnerability-tracking project

The Common Vulnerabilities and Exposures Program almost lapsed in April, according to MITRE, a key funder.

Cybersecurity

FEMA begins security overhauls following cyber incident and employee firings

The agency recently blocked users from accessing multiple websites and made password changes to an internet security tool in efforts to shore up its cyber posture, people familiar say.

Modernization

Change Healthcare attack delayed EHR testing at Chicago site, VA watchdog says

A joint VA-DOD rollout of a new Oracle Health electronic health record system occurred around the same time that UnitedHealth Group subsidiary Change Healthcare was targeted by a ransomware attack in February 2024.

Artificial Intelligence

Is artificial intelligence a friend, foe or frenemy? NIST wants to find out

The standards agency will be hosting a working session to discuss how AI-empowered attacks can be used to sometimes get around traditional defenses.

Cybersecurity

Salt Typhoon hackers targeted over 80 countries, FBI says

The Chinese campaign appears to have reached into other organizations beyond the telecom industry, including transportation and military infrastructure networks, according to a Wednesday advisory.

Exclusive Cybersecurity

Report: Russia-based Yandex employee oversees open-source software approved for DOD use

The package is listed inside Platform One’s Iron Bank, a vetted Defense Department software repository, people familiar say.

Cybersecurity

In pitch to hacker community, Trump’s NSC cyber lead says AI key to future of cyberdefense

At DEF CON, Alexei Bulazel said AI-powered tools will give software developers “incredible abilities” to harden networks by adding multilayered checks to the code-scanning process and catching flaws that might otherwise slip through.

Cybersecurity

US court system to boost cyber posture after hack of electronic case management tool

The breach may have revealed the identities of confidential informants involved in criminal cases in several federal district courts, according to Politico.

Cybersecurity

CISA officials commit to supporting top vulnerability cataloging program

Organizations around the world rely on the Common Vulnerabilities and Exposures Program, whose contract with CISA almost expired in April. It serves as the worldwide, de facto standard for vulnerability identification and management.

Updated Cybersecurity

‘High-severity’ Microsoft Exchange vulnerability disclosed on heels of Black Hat talk

Parts of the federal enterprise are likely susceptible to the flaw that allows hackers to hijack on-premises versions of Active Directory. CISA plans to release an emergency directive on Thursday, according to a person familiar with the matter.

Cybersecurity

New research shows Iran’s expansive cyber offensive during ‘12-Day War’ with Israel

One state-backed hacking group created conflict-themed websites to lure pro-Israel visitors and siphon their data, according to SecurityScorecard.

Cybersecurity

Foreign adversaries are trying to weaponize open-source software, report finds

Hacking units affiliated with nation-state adversaries are subtly contributing to open-source software tools and working to insert backdoors into publicly available code used by millions worldwide, new research says.

People

Senate confirms Sean Cairncross to be national cyber director under Trump

Sean Cairncross, a former RNC official, is the first person to head the Office of the National Cyber Director under Donald Trump.