Cybersecurity

New Cyber Reports Will Show the Value of CISA Budget Investments, Director Says

Cyber incident reports will be shared with the agency under the soon-to-be implemented requirements of the Cyber Incident Reporting for Critical Infrastructure Act.

Cybersecurity

Biden Admin Targets ‘Misuse’ of Spyware with New Executive Order

The White House followed through on previous promises to pursue stronger oversight of commercial spyware companies and how their products are used in the U.S.

Cybersecurity

Lawmakers Warn of Cyber Threat Posed by Beijing, Moscow to Energy Sector

Enhancing collaboration and information sharing with industry partners can help mitigate threats, but concerns remain about the extent to which foreign-made equipment is embedded within the U.S. electric grid.

Cybersecurity

Acting National Cyber Director Explains New Cybersecurity Strategy to Congress

Acting National Cyber Director Kemba Walden highlighted some the strategy's key elements in testimony Thursday.

Cybersecurity

Industry reps like CISA's public-private cybersecurity collaborative, but offer tips on how to scale it

Rep. Eric Swalwell (D-Calif.) noted in the hearing that CISA’s Joint Cyber Defense Collaborative lacks a charter or membership criteria and previewed a forthcoming bill to “clarify activities of the JCDC.”

Cybersecurity

Collaboration Over Self-Preservation Highlighted in Latest Guide to Cyber Oversight

CISA Director Jen Easterly said that the updated cyber-risk oversight handbook aligns with the agency’s goal of “advancing corporate cyber responsibility.”

Cybersecurity

Lawmakers Propose Civilian Cyber Reserve to Bolster DOD and DHS

The bipartisan package of two bills would address the government’s shortage of skilled cyber personnel by allowing DOD and DHS “to recruit qualified civilian cybersecurity personnel to serve in reserve capacities.”

Cybersecurity

Treasury's system tracking federal debt still needs security improvements, GAO says

The watchdog found continued “information system control deficiencies,” despite Treasury’s progress on prior recommendations.

Cybersecurity

Senators Request Cyber Safety Analysis of Chinese-Owned DJI Drones

Lawmakers raised concerns that sensitive data could leak to adversaries through foreign-owned consumer technology. 

Cybersecurity

CISA: Election Security Still Under Threat at Cyber and Physical Level

Threats enacted by state-sponsored actors during the 2022 election have highlighted the need for “continued vigilance” in upcoming elections, said CISA Election Security Advisor Kim Wyman.

Cybersecurity

FDIC Fails to Establish Effective Controls to Secure Sensitive Data, Report Says

The agency tasked with supervising financial institutions nationwide is struggling to maintain effective information security measures, according to a new inspector general report.

Cybersecurity

White House Tech Council Launches Cyber-Physical Resilience Working Group

The President’s Council of Advisors on Science and Technology aims to use the initiative to improve resilience within the nation’s digital networks.

Cybersecurity

Biden Administration Seeks $26B in Cyber Funding for FY 2024

President Biden’s fiscal year 2024 budget aligns with the recently released national cybersecurity strategy by “investing in a whole-of-nation approach,” according to the acting national cyber director.

Cybersecurity

How International Acquisitions Can Become a Cybercrime Frontier

Public entities like the FBI and Department of Treasury are carefully monitoring international business transactions as potential backdoor threats to U.S. national security.

Cybersecurity

‘Multiple Threat Actors’ Used Old Exploit to Access Federal Agency Servers

At least two groups tried to exploit the vulnerability to get deeper into the agency’s networks, including a Vietnamese criminal gang.

Cybersecurity

Government employees and defense contractors still have got bad passwords, report says

According to new research, a majority of government employees with exposed passwords were found to have reused them across multiple accounts. 

Cybersecurity

NSA offers new tips on zero trust and identity

Weaknesses in identity and access controls are allowing cyber attacks to happen, NSA officials say. A new tip sheet is meant to help national security systems mature their controls.

Cybersecurity

CISA Launches Ransomware Warning Pilot for Critical Infrastructure

The new pilot program will enable “timely risk reduction” by alerting critical infrastructure owners and operators of vulnerabilities within their systems that are susceptible to ransomware attacks.

Emerging Tech

GAO Offers Quantum Guidance to Federal Agencies

As the federal government continues its push for mass post-quantum cryptography transitions, the Government Accountability Office offered fact-based summary and guidance.

Cybersecurity

Defense Unveils New Cyber Workforce Strategy

The strategy is focusing on four human capital pillars with six initiatives to build a robust workforce ready for current and future threats.