Author Archive

David DiMolfetta

Cybersecurity Reporter, Nextgov/FCW

David DiMolfetta
David DiMolfetta covers cybersecurity for Nextgov/FCW. Previously, he researched The Cybersecurity 202 and The Technology 202 newsletters at The Washington Post and covered AI, cybersecurity and technology policy for S&P Global Market Intelligence. He holds a BBA from The George Washington University and an MS from Georgetown University. Get in touch with him on X/Twitter: @ddimolfetta . If you have a tip you'd like to share, David can be securely contacted at djd.99 on Signal.
People

Senate confirms Ethan Klein to be fifth US CTO

In a sweeping nominee package, Klein was confirmed alongside Kirsten Davies to be DOD CIO and Pedro Allende to be DHS Undersecretary for Science and Technology.

People

Trump formally taps Joshua Rudd to lead NSA, Cyber Command

The nomination marks a turning point for the electronic surveillance and hacking teams that have been without a permanent leader for eight months.

Cybersecurity

Sen. Cotton urges top White House cyber official to protect open-source software

A letter from the chairman of the Senate Intelligence Committee cites previous Nextgov/FCW reporting about a potential Russian backdoor into a Defense Department software suite.

People

CISA opens 100 applications for CyberCorps students

Earlier hiring snags had forced the scholarship program to pause recruitment of top student talent for cyber jobs.

Cybersecurity

Potential NSA, Cyber Command leader nomination transmitted to Senate

The signals intelligence titan and combatant command have been without a permanent leader for months since far-right activist Laura Loomer pushed for the firing of Gen. Timothy Haugh in April.

Cybersecurity

Rep. Garbarino ‘disappointed’ Senate hasn’t approved Trump’s CISA nominee

The House Homeland Security Committee chairman also questioned a recent FCC vote to reverse telecom security rules put in place after a major Chinese cyber intrusion.

Cybersecurity

Trump admin to revisit bedrock cyber policies as it implements new strategy

Corresponding executive actions on cybercrime and ransomware are in the works. The forthcoming cyber strategy also includes an offensive pillar focused on “preemptive erosion” of foreign adversaries’ hacking attempts.

Cybersecurity

Cyber takes back seat to immigration in global threats hearing

Witnesses briefly touched on concerns about encrypted messaging and the threat China poses in cyberspace, as well as efforts to protect infrastructure that supports the worldwide internet.

Cybersecurity

US charges former Accenture employee with misleading feds on cloud platform’s security

Danielle Hillmer, most recently employed with SentinelOne, allegedly concealed a cloud product’s noncompliance with federal security regulations.

Policy

Trump’s national security strategy risks blinding US to other threats, former officials warn

The White House’s push to prioritize Venezuela, coupled with hardline policies on migration and drug trafficking, threatens to pull intelligence resources away from enduring security challenges in Europe, Asia and beyond, they argue.

Cybersecurity

Defense authorization bill includes billions for cyber, intelligence matters

The NDAA notably deviates partly from President Donald Trump’s national security strategy, which seeks some distance between the U.S. and Europe. It also makes a sweeping regulatory harmonization demand.

Policy

House Homeland leaders seek briefings from Apple, Google on ICE-tracking apps

Republican lawmakers say crowdsourced tools that flag immigration enforcement activity may endanger federal personnel and disrupt operations.

Cybersecurity

Trump’s national security strategy wants spy agencies to watch world supply chains

The paper puts much of its emphasis on the Western Hemisphere, while pushing for closer cyber collaboration with both regional partners and the private sector.

People

DHS, cyber industry mobilize to get CISA director nominee confirmed

“It’s a national security risk to not have him,” said a current U.S. official.

Cybersecurity

China is using advanced ‘Brickstorm’ malware against government and IT orgs, US assesses

The malware was detected in the recently disclosed breach of F5, an application delivery and security provider.

Cybersecurity

CISA tells staff to not speak with reporters, internal email shows

“CISA does not comment on leaked internal emails, especially when they’re about leaking internal emails,” CISA Director of Public Affairs Marci McCarthy told Nextgov/FCW when asked for comment.

People

NSA has met 2,000-person workforce reduction goal, people familiar say

A broader Pentagon goal to shrink the nation’s defense budget over the coming five years could potentially subject the agency to further downsizing.

Cybersecurity

New bill proposes government-wide processes to attribute, sanction hackers

The measure would permit “robust sanctions against designated actors, including asset blocking, financial restrictions, export controls, procurement prohibitions, visa bans and suspension of assistance.”

Defense

Foreign spies are targeting Army soldiers, civilians and families, official warns

Current and former federal workers, especially those with security clearances, should be aware of the attempts, an Army intelligence chief said in a November memo.

People

ICE — overwhelmed with applicants — leans on cyber talent program to speed tech hiring

ICE’s acting CIO, Dustin Goetz, said the agency will need more personnel as it seeks to meet sweeping deportation and detainment demands set by the White House.