Policy

Section 702 renewal has support in Congress, but intelligence officials are leery of warrant measure

The disputed surveillance authority expires April 19, and the intelligence community is sending a full-court press to keep it from garnering significant privacy reforms.

Exclusive People

Ex-NSA innovation chief’s new startup looks to future-proof federal agencies against cyberthreats

Kevin Keaton’s Eyris would fuse blockchain technologies into advanced security solutions to defend federal agencies, the Pentagon and others against cyber threats.

People

NSA cyber director to step down after 34 years of service

His departure comes amid heightened security fears in 2024 and debate over whether to renew a controversial spying power.

Cybersecurity

Cyber, intelligence chiefs urge U.S. to strengthen against Chinese cyber threats

In a collective call to action, officials warned of invasive actions that China-backed hackers can take against U.S. infrastructure and elections.

Cybersecurity

Top cyber, intelligence chiefs to call out China as leading cyber threat

Researchers and officials have previously designated China as a clandestine, preparatory operator in cyberspace, quietly breaching and securing systems to use to their advantage at a later time.

Defense

NSA illegally purchases Americans’ internet data without a warrant, senator says

The NSA’s purchases of commercial metadata without a court order — revealed in documents exchanged with Sen. Ron Wyden — violate consumer protection laws, the Oregon Democrat claims.

Cybersecurity

New CISA, NSA guidance highlights pain points in identity and security management

A public-private working panel recommends vendors invest more in security measures like multifactor authentication.

Emerging Tech

New post-quantum cryptography guidance offers first steps toward migration

Several agencies partnered to release the first federal recommendations for organizations to begin upgrading their networks and systems to quantum cryptography-resilient security schemes. 

Cybersecurity

Agencies Warn of State-Sponsored Volt Typhoon’s Hacking Tactics

In collaboration with international and private sector partners, CISA released a new advisory warning network defenders of PRC-linked Volt Typhoon’s infiltration tactics. 

Cybersecurity

Cyber Agencies Unveil Updated Ransomware Guide

The 2023 version offers more detailed, step-by-step guidance and associated recommendations to fortify public and private networks against sophisticated ransomware.

Cybersecurity

Federal Operation Takes Down Sophisticated Russian Malware

Snake malware has plagued international digital networks for nearly two decades; a joint federal effort finally dismantled the web of espionage spyware.

Cybersecurity

Federal, International Agencies Release Principles to Enhance Security of Tech Products

The new guidance pushes software and technology manufacturers to take more responsibility for the security of their devices by adhering to secure-by-design and -default principles.

Emerging Tech

Senator Calls for Cybersecurity Audit of Law Enforcement Wireless Network

FirstNet is a cellular network built for first responders around the country, but at least one federal official told the senator’s office they had “no confidence” in the network’s security.

Emerging Tech

Enhanced Information Sharing With Industry Key to Deterring Digital Threats, NSA Cyber Chief Says

NSA Cybersecurity Director Rob Joyce said intelligence sharing initiatives between government and industry empower companies to implement actionable cyber defense measures.

Digital Government

NSA Bills Itself as a 'Soft Landing Place' for Laid off Tech Workers

The intelligence agency has been quietly moving over the past few months to recruit talented workers affected by the wave of layoffs at tech companies and startups.

Cybersecurity

CISA, NSA and Industry Outline Security Responsibilities of Software Suppliers

New guidance from the federal agencies—and major companies serving the government—tries to distinguish between the security duties of software developers, suppliers and consumers.

Cybersecurity

NSA Advocates Active Defense, as Industry Lawyer Advises Against Incident Reports

Speakers at a new conference hosted by cybersecurity firm Mandiant highlighted the challenge the government faces in motivating companies to report attacks on critical infrastructure.

Cybersecurity

CISA, NSA Guidance Tries to Reduce Alternatives for Securing Industrial Control Systems

Policymakers in Congress and the administration are grappling with how to set a performance bar for companies' mitigation of cyber threats against critical infrastructure they own, while allowing flexibility the companies say is needed to run their operations.

Cybersecurity

NSA Releases Post-Quantum Algorithms, Aims for Full Implementation by 2035

The National Security Agency worked in conjunction with NIST to prepare stakeholders for upcoming quantum cryptographic requirements.