Cybersecurity

Treasury sanctions Iranian cyber officials tied to 2023 water system hacks

The hackers targeted a batch of Israeli-made programmable logic controllers used in water treatment plants around the U.S.

Cybersecurity

Ex-CIA officer and WikiLeaks source sentenced to 40 years for largest breach in agency history

Joshua Adam Schulte was found to have abused administrative privileges and secretly transmitted the documents in 2016.

Cybersecurity

National Cyber Strategy needs better implementation measures, GAO argues

The White House Office of the National Cyber Director can improve on performance measures and cost estimations, the U.S. federal oversight agency said in a Thursday analysis.

Cybersecurity

Agencies must disconnect all exposed Ivanti products by Friday, CISA says

The directive follows a related warning issued last month about cybersecurity flaws in Ivanti systems.

Cybersecurity

Biden to veto any efforts to shutter SEC cyber disclosure rules

The SEC argues the disclosure rule forces firms to be more transparent with investors. Opponents say it may compromise sensitive business data and publicize vulnerabilities.

Cybersecurity

Cyber, intelligence chiefs urge U.S. to strengthen against Chinese cyber threats

In a collective call to action, officials warned of invasive actions that China-backed hackers can take against U.S. infrastructure and elections.

Cybersecurity

US disrupts China-linked cyber campaign impacting critical infrastructure, Justice officials say

The hackers infected privately owned small office/home office routers to conceal the origins of their intrusions into critical infrastructure systems.

Cybersecurity

Top cyber, intelligence chiefs to call out China as leading cyber threat

Researchers and officials have previously designated China as a clandestine, preparatory operator in cyberspace, quietly breaching and securing systems to use to their advantage at a later time.

Exclusive Cybersecurity

‘Relatively few’ agency policies met standards for IoT security, OMB reports

Early last year, the White House office ran a sweeping assessment on agency IoT device security policies. Most fell short on aligning with NIST guidance, according to a letter sent to Sen. Mark Warner, D-Va.

Cybersecurity

NCA celebrates National Data Privacy Week while CISA eyes new cybersecurity guidelines

The week’s themes reflect a new era  where everything is interconnected and new threats like artificial intelligence are poised to make a big impact on cybersecurity.

Cybersecurity

Proposed law aims to boost food and agriculture industry’s cyber posture

The bill would direct multiple stakeholders to conduct exercises that simulate when the food and agriculture sectors are hacked.

Cybersecurity

Expect ‘AI versus AI’ cyber activity between US and adversaries, Pentagon official says

Researchers and officials say AI will usher in the next phase of cyber warfare, enabling new ways to carry out classic cyberattacks and build out new hacking tools.

Cybersecurity

US regulators have done little to address firmware vulnerabilities, think tank argues

Firmware connects the hardware and software of a device, but efforts to protect it have been absent in many of the government’s recent cybersecurity initiatives, according to the report.

Cybersecurity

Feds to compete for cyber glory at fifth annual President's Cup

CISA officials describe the positive impact the annual cybersecurity game aims to have across the federal workforce.

Cybersecurity

CISA directs agencies to mitigate widespread VPN bugs

Two unpatched flaws in Ivanti's Connect Secure VPN are being exploited by hackers in the wild.

Cybersecurity

Pentagon’s cyber red teams get clearer roles, governance

A document released by DOD’s chief information officer attempts to “address gaps in existing guidance” when it comes to the activities of the department’s cyber red teams.

Cybersecurity

CISA, FBI warn on risks of China-made drones

The new guidance is meant to alert critical infrastructure operators to potential security risks, including data exfiltration and cybersecurity risks, posed by unmanned aircraft systems manufactured in China.

Cybersecurity

CISA needs better collaboration with the EPA and water sector, watchdog says

CISA had “inconsistent collaboration” with relevant stakeholders due to a lack of formal mechanisms, according to the Department of Homeland Security Office of Inspector General.

Cybersecurity

State's cyber bureau has ‘raised the U.S. profile on cyber globally,’ watchdog says

The Government Accountability Office said the creation of the Bureau of Cyberspace and Digital Policy in 2022 has “helped to better position State to achieve its cyber diplomacy goals.”

Cybersecurity

White House looks to eliminate college degree requirements for cyber jobs with federal contractors

National Cyber Director Harry Coker also said Thursday that the federal government will be conducting a series of hiring sprints this year to fill seats.