Author Archive

David DiMolfetta

Cybersecurity Reporter, Nextgov/FCW

David DiMolfetta
David DiMolfetta covers cybersecurity for Nextgov/FCW. Previously, he researched The Cybersecurity 202 and The Technology 202 newsletters at The Washington Post and covered AI, cybersecurity and technology policy for S&P Global Market Intelligence. He holds a BBA from The George Washington University and an MS from Georgetown University. Get in touch with him on X/Twitter: @ddimolfetta . If you have a tip you'd like to share, David can be securely contacted at djd.99 on Signal.
People

CISA officials who led Secure by Design initiative resign

Bob Lord and Lauren Zabierek are the latest to depart the cyber agency, as DOGE-fueled cuts and broader Trump reduction plans have placed it in the crosshairs.

Policy

US urging allies to cease talks with Chinese satellite industry

Internal talking points also give State Department officials guidance on how to respond to allies’ concerns about SpaceX’s Starlink.

Cybersecurity

CISA warns threat hunting staff of end to Google, Censys contracts as agency cuts set in

“We understand the importance of these tools in our operations and are actively exploring alternative tools to ensure minimal disruption,” said the email sent to several hundred CISA cyber threat hunters.

Cybersecurity

Chinese telcos provide backbone for US allies’ mobile traffic, raising espionage concerns

A report from iVerify and other researchers found that mobile networks in countries like Japan, South Korea and New Zealand route telecom traffic through Chinese state-backed infrastructure.

Cybersecurity

Former cyber official Chris Krebs to leave SentinelOne in bid to fight Trump pressure

“For those who know me, you know I don’t shy away from tough fights. But I also know this is one I need to take on fully — outside of SentinelOne,” Krebs said.

Cybersecurity

CISA extends MITRE-backed CVE contract hours before its lapse

“Last night, CISA executed the option period on the contract to ensure there will be no lapse in critical CVE services,” an agency spokesperson said.

Updated Cybersecurity

MITRE-backed cyber vulnerability program to lose funding Wednesday

Organizations across industry, government, national security and critical infrastructure rely on the CVE Program, which serves as the de-facto global standard for vulnerability identification and management.

Cybersecurity

User with Russian IP address tried to log into NLRB systems following DOGE access, whistleblower says

The blocked login attempts, detailed in an extensive whistleblower complaint filed to the Senate Intelligence Committee and others, may indicate foreign adversaries have begun leveraging DOGE inroads into sensitive federal systems.

Cybersecurity

Chinese police say NSA hacked networks of Asian Winter Games

The accusations, which name three supposed NSA operatives, come amid escalating trade tensions between the U.S. and China.

Cybersecurity

Top homeland security lawmaker calls for cautious cuts to CISA

“We have to be very careful about who and what we cut, because [the Cybersecurity and Infrastructure Security Agency] does have a mission to overwatch our critical infrastructure and make sure the bad guys aren’t getting in,” said Rep. Mark Green, R-Tenn.

People

Loss of NSA leaders will cause disruptions, agency’s former chief says

Gen. Paul Nakasone praised former NSA Director Timothy Haugh and former NSA Civilian Deputy Director Wendy Noble, who were fired from their positions last week.

People

Trump signs order targeting former CISA head Chris Krebs

Krebs previously led the Cybersecurity and Infrastructure Security Agency and contradicted baseless claims President Donald Trump made in 2020 that the election that year was rigged against him.

Cybersecurity

Treasury regulatory office reports ‘major information security incident’

The disclosed breach into the Office of the Comptroller of the Currency comes just months after another incident involving Chinese hacks into Treasury Department offices.

Cybersecurity

Senator puts hold on Trump cyber nominee, citing ‘cover up’ of telecom security report

An unreleased 2022 report is said to contain vital information about the security posture of the U.S. telecommunications sector, according to Sen. Ron Wyden, D-Ore., who is blocking Sean Plankey’s nomination to lead CISA.

Cybersecurity

China is trying to recruit current and former feds, intelligence document warns

The notice is one of the first public acknowledgements from the U.S. intelligence community showing how adversaries are leveraging DOGE-led layoffs to target the government.

Cybersecurity

Top NSA, Cyber Command officials pulled from premier cybersecurity conference

Notifications about their speaking engagements went out Tuesday afternoon, just days after President Trump fired the head of NSA and Cyber Command.

People

NSA firings stoke fears of Trump installing a partisan loyalist to lead spy agency

“We saw it’s possible, without adequate oversight, for our spy agencies to do inappropriate things,” a former senior intelligence official said, referencing the 1970s congressional investigations that revealed many spying abuses against Americans.

People

CISA to make comprehensive staff cuts in coming days, people familiar say

The nation’s premier cybersecurity agency, which sits in the Department of Homeland Security, has been in the Trump administration’s crosshairs for some time.

People

Trump fires head of NSA and Cyber Command

Gen. Timothy Haugh’s removal was spurred by far-right activist Laura Loomer, who, earlier Thursday, reportedly urged the president to terminate multiple National Security Council staffers.

Cybersecurity

Tariffs create more volatile environment for cyberattacks, industry executive warns

Tenable Co-CEO Steve Vintz told Nextgov/FCW that the potential trade wars stoked by the Trump administration’s tariffs facilitate conditions that incentivize hacking activity around the globe.