Cybersecurity

CISA Shares Details About Ransomware that Shut Down Pipeline Operator

One cybersecurity firm links the incident to a December attack on the Coast Guard.

Cybersecurity

CISA, FBI and DOD Issue Warning on North Korea-Linked Malware

New threat variants allow Hidden Cobra to remotely access and control systems—and banks should look sharp.

Cybersecurity

Coming Cyber Commission Report Loaded with 75 Ways to Improve Security—Plus the Bill Proposals

Key lawmaker highlighted recommendations focused on Congressional reform and a new type of information sharing.

Cybersecurity

Federal Contracts to Require Secure Timing and Navigation Under Executive Order

Key stakeholder says the president’s edict is insufficient and likely to cause confusion over the role of various departments.

Cybersecurity

CISA Director Makes Case for Subpoena Power over Internet Service Providers

A key lawmaker pointed to concerns over privacy if the agency could request who’s behind internet addresses.

Cybersecurity

Justice Department Attributes Equifax Hack to Chinese Military Officers 

Officials highlight the theft of intellectual property, in addition to personal information.

Cybersecurity

Industry Leaders Rebuke Barr’s Dismissal of White House-Backed Plan to Avoid Huawei 

Attorney General breaks with government partners in proposing a more immediate, and controversial solution. 

Cybersecurity

Senate Intel Report: Key Officials Excluded From 2016 Election Response

Committee leaders recommend an integrated response to cyber events and disregard for political affiliations moving forward.

Cybersecurity

FBI Director Argues Private Companies Shouldn’t Decide Encryption Debate 

A key lawmaker questioned whether the Justice Department’s position is at odds with the Defense Department’s.

Cybersecurity

ODNI Plans to Share More About Cyber Threats Under New Counterintelligence Strategy

The strategy requires the intelligence community to think of the private sector as consumers of its threat information.

Cybersecurity

Pentagon Announces Final Version of Cyber Standards for Contractors

Mythbusting officials explain why the Defense Department’s certification plan will have a slow rollout.

Cybersecurity

Workforce Specialist to DOD: Sweat the Small Stuff Rolling Out CMMC

Assessment guides for auditors will be just one key to ensuring the program doesn’t become a meaningless checklist.

Cybersecurity

House Panel Clears Bills to Give CISA Subpoena Power, Retain Leadership

The Homeland Security Department’s newest agency enjoys bipartisan support in shaky times.

Cybersecurity

Final DOD Cybersecurity Certification Model Due Friday

The Defense Department will seek information within weeks to build a sophisticated database that will serve as a repository for auditors.

Cybersecurity

Union Leader Says Utilities Not Incentivized to Report Cyber Incidents or Implement Protections

FERC’s recently “expanded” reporting requirements leave it up to entities to decide on qualifying events.

Digital Government

Unclear NSA CIO Role Puts the Agency’s IT at Risk, IG Says

Auditors report the position is not even in the agency’s organizational chart.

Cybersecurity

NSA Offers Advice on Securing Clouds 

A CISA release noting the guidance directs administrators to an analysis of Microsoft Office 365.

Cybersecurity

Another Poor Cybersecurity Audit at State Department Draws Scrutiny

Auditors have been reporting weaknesses in IT security controls for over a decade.