Cybersecurity

Threat indicator data needs a wide net, experts say

Robust, cross-cutting organizational networks are key to disseminating cybersecurity threat information.

Cybersecurity

NIST seeks 'lightweight' encryption standards

The National Institute of Standards and Technology wants public input on the best way to design evaluation criteria dictating new encryption standards for small computing devices.

Cybersecurity

7 Steps for getting right with NIST 800-171

The pressure for DOD contractors to bring their systems into compliance is especially strong, but these best practices can help any organization working with federal data.

Cybersecurity

Why is no one raising a hand to regulate the internet of things?

The U.S. is developing a pair of reports dealing with cybersecurity standards for internet-of-things devices and combatting botnets, but recommendations will be non-binding and officials said not to expect a significant federal regulatory push.

Cybersecurity

Can federal purchasing power counteract botnets?

New guidance required under the cybersecurity EO suggests that government purchasing power could induce tech manufacturers, especially in the emerging IoT space, to market more secure devices.

Cybersecurity

Will new breach reporting rules make defense firms more secure?

A coming 72-hour breach disclosure mandate from the Department of Defense could inadvertently provide a new attack vector for hackers to harass defense contractors.

Cybersecurity

Whitehouse renews call for cyber IG

One lawmaker thinks it's time for a dedicated inspector general with the authority to do penetration testing of federal agency networks and systems.

Cybersecurity

DHS: A 'vast majority' of agencies on track with Kaspersky directive

It is too soon to tell how long it will take to fully purge the embattled vendor from federal systems, according to a DHS official.

Cybersecurity

House bill looks to secure IoT ecosystem

New legislation would improve security and oversight of connected devices.

Cybersecurity

Walter Copan tapped to lead NIST

A former senior executive at the Brookhaven National Lab is President Trump's pick to lead the National Institute of Standards and Technology.

Cybersecurity

New guidelines for hack-proof elections get a key vote of approval

A committee of the Election Assistance Commission approved a set of guidelines designed to make voting more secure and more accessible.

Cybersecurity

NIST retools security and privacy controls for IoT era

NIST expands its security and privacy governance strategies to address the new ecosystem of connected devices.

Cybersecurity

Figuring out multifactor authentication

With NIST now restricting the use of Short Message Service, what are the authentication options for federal agencies?

Cybersecurity

Can government help fight the war on botnets?

As the number of internet-connected devices increases, along with the threat of botnets and potential attacks, the role of government should not be solely focused on prescribing new legal mandates.

Digital Government

Re-evaluating the need for 'I' in IoT

A "network of things" might be a better way to describe and categorize elements of connected-device environments.

Cybersecurity

Expert: Battling botnets requires standards and automation

The departments of Commerce and Homeland Security have embarked on a year-long study on how to reduce botnets, but one former official says steps must be taken now to combat the growing problem.

Cybersecurity

Why the cyber EO won't solve botnets

One section of the Trump administration’s cyber executive order calls for reducing threats from botnets, but members of the interagency team studying the topic warn it will be an uphill battle.

Cybersecurity

Want to stop the next WannaCry? Stop classifying and start sharing

The former federal CISO and other experts tell Congress that aggressive public-private collaboration is the key to warding off global contagion attacks.

Cybersecurity

NIST's school for cyber

The federal government's standards setter is offering agencies advice on how to implement the cybersecurity framework.

Cybersecurity

What does the internet of things mean for data breaches?

Regulators say new troves of hackable data created by connected devices make the need for a national data breach standard that much more urgent.