Author Archive

David DiMolfetta

Cybersecurity Reporter, Nextgov/FCW

David DiMolfetta
David DiMolfetta covers cybersecurity for Nextgov/FCW. Previously, he researched The Cybersecurity 202 and The Technology 202 newsletters at The Washington Post and covered AI, cybersecurity and technology policy for S&P Global Market Intelligence. He holds a BBA from The George Washington University and an MS from Georgetown University. Get in touch with him on X/Twitter: @ddimolfetta
Cybersecurity

US advances on cyber goals amid rapidly changing threat environment, White House says

Cyber challenges in U.S. crosshairs include ransomware, AI, supply chain attacks and commercial spyware. A new version of an implementation plan might help address them.

Cybersecurity

CISA, FBI resuming talks with social media firms over disinformation removal, Senate Intel chair says

The Senate Intelligence Committee will hold an election security hearing in two weeks, according to Sen. Mark Warner, D-Va.

Cybersecurity

White House in talks with industry to build legal framework for software liability

As part of a broad cybersecurity strategy, the U.S. wants to create incentives for the tech industry to manufacture products and software that don’t contain major security flaws.

Cybersecurity

US sets sights on partnerships to counter cyberthreats, secure AI in new global cyber strategy

An update to US international cyberspace policy will leverage partnerships to defend against cyberattacks on critical infrastructure and help prevent surveillance misuses.

Digital Government

US to unveil new international cyber framework

The last international cyber blueprint came out more than a decade ago from the Obama administration.

Cybersecurity

US warns of North Korean hackers using email security flaws for phishing attacks

The readout urges organizations to change email configurations to prevent the malign messages from reaching their inboxes.

Cybersecurity

House cyber chairman tries again to undo SEC cyber disclosure rules

Rep. Andrew Garbarino, a New York Republican, said he plans to get the measure into a House Financial Services markup.

Cybersecurity

US warns of Russian hackers targeting operational technology in water systems

The advisory represents official U.S. confirmation that Russian operatives have breached water systems.

Cybersecurity

UnitedHealth CEO grilled over ‘clear national security threat’ from Change Healthcare hack

CEO Andrew Witty told members of Congress that UnitedHealth believes some members of the armed forces were exposed in the attack.

Cybersecurity

Critical infrastructure cyberattacks pushed NSA to unmask thousands of U.S. identities through spying law

The number of U.S. identity unmaskings NSA conducted in response to requests from other agencies through Section 702 of the Foreign Intelligence Surveillance Act tripled in 2023 compared to the prior year.

Cybersecurity

Critical infrastructure blueprint gets long-awaited update but maintains status quo on key sectors

The memorandum reaffirms the statutory authority of America’s top cyber agency, but doesn’t update the primary list of critical sectors that can be targeted in cyberattacks, notably leaving out space infrastructure

Cybersecurity

CISA to issue list of software products critical to agency security by end of September

The software offerings are crucial for federal cybersecurity because of certain privileges and controls they enable, as defined by NIST.

Policy

Biden signs extension of controversial spying program into 2026

The Section 702 authorities were reauthorized without the addition of a warrant requirement to review the communications of Americans caught up in foreign surveillance.

Digital Government

Federal CIO defends Login security after health agency dropped it from grantee system

Clare Martorana doubled down on Login’s capabilities, saying the government “needs to continue to rely” on the tool.

Digital Government

Foreign adversaries using AI to push disinformation, crumble election process, US warns

The documented reports and research of foreign propaganda campaigns align with new private sector analysis about recent efforts to flatline U.S. election confidence.

Cybersecurity

House passes bill barring spy agencies, law enforcement from buying Americans’ personal data

The measure doesn’t have support from the Biden administration, which argues it threatens national security and worsens Americans’ privacy protections.

Cybersecurity

Russian hackers breached, sabotaged Texas water treatment plant, cyber firm says

If confirmed by U.S. officials, it would add Moscow to the list of American adversaries that have infiltrated water infrastructure in the past year.

Cybersecurity

Hackers tried to breach, disable widely used open-source Java tools, groups warn

The alert comes just after a possible nation state entity attempted to hijack an open-source Linux tool last month.