Ideas

Defense Leaders Can Mitigate Telework Risks

Remote work promises to make the workforce more responsive and efficient, but it also presents significant security challenges, a former ODNI cyber chief says.

Podcasts

Critical Update: How Federal Agencies Can Help Avert Quantum Catastrophe

The White House is working on plans to roll out new cryptographic systems that will require epic levels of funding from Congress and coordination, both within the government and in partnership with industry. 

Ideas

What Is Pegasus? A Cybersecurity Expert Explains How the Spyware Invades Phones and What It Does When It Gets In

Since 2019, Pegasus users have been able to install the software on smartphones with a missed call on WhatsApp.

Policy

Senate Legislation Would Improve Data Collection on Cybercrimes

The Better Cybercrime Metrics Act would bring comprehensive metrics to the impact of cybercrime on Americans.

Cybersecurity

Report Draws Attention to Vulnerabilities in Commercial-Off-the-Shelf Products 

Commercial products bought without modification are largely exempt from government acquisition regulations, including the Defense Department’s emerging certification program.

Cybersecurity

Senate Homeland Security Committee Advances Workforce, Supply Chain Bills

Lawmakers look to grow an already lengthy to-do list at the Cybersecurity and Infrastructure Security Agency. 

Cybersecurity

Advisory Details How to Defend Container Tech from Crypto Miners

Old fashioned data theft is still the main reason adversaries are targeting a popular open-source application management system.

Cybersecurity

Survey: Nearly 3 in 4 Organizations Suffered Data Breaches Due to Phishing

More than half of respondents indicated concerns about hybrid work environments and defending against malicious emails. 

Cybersecurity

CISA Offers Vulnerability Disclosure Platform for Civilian Agencies

The platform will provide triage and administrative services while allowing CISA to monitor agencies’ progress resolving reports from security researchers.

Cybersecurity

Wanted: Accountability for Addressing the Federal Cybersecurity Workforce Challenge

Even when some agencies succeed at bringing talent in, they aren’t able to hold on to it for long.

Cybersecurity

Survey: Pandemic Has Left Public Sector IT Exposed

The single largest risk factor reported by respondents is the influx in remote work.

Cybersecurity

The Most Targeted Vulnerability of the Year Was First Identified in 2017

In a joint advisory, international cybersecurity officials say failure to patch years-old vulnerabilities makes attributing cyberattacks more difficult.

Cybersecurity

White House Asks CISA, NIST to Set Performance Goals for Critical Infrastructure Operators

The initiative will not result in mandatory measures for the private sector, but the administration hopes to signal its commitment to cybersecurity and maybe get a little help from Congress on that front.

Cybersecurity

TSA, Transportation Officials Give Insight into New Cybersecurity Mandates for Pipeline Operators

Agency leaders expressed a commitment to avoiding duplication of their efforts as lines blur between cyber and physical security.