Cybersecurity

What cyber risks will Biden's supply chain EO uncover?

The administration has ordered a wide-ranging assessment of the risks to manufacturing and technology supply chains. Analysts, former government officials and industry say a large workforce gap and problematic frameworks are among the threats cybersecurity poses to the country's supply chains.

Cybersecurity

Biden to use Quad as 'vehicle' for regional cyber cooperation

Jake Sullivan, the national security advisor, says President Joe Biden discussed both the supply chain attack on SolarWinds and vulnerabilities being exploited in Microsoft Exchange with leaders of Japan, India and Australia.

Cybersecurity

New bill looks to centralize CISA's role in ICS threat response

Rep. John Katko (R-N.Y.) cited the recent cybersecurity incident at a water treatment plant in Oldsmar, Fla., as the impetus for the legislation.

People

Biden signs Rescue bill, boosting TMF and adding pandemic leave for feds

The $1.9 trillion American Rescue Plan Act was signed into law on Thursday. In addition to a massive influx of funding to support Americans harmed by the economic fallout of the pandemic, there is funding available for IT modernization and provision to help the federal workforce cope with COVID-19.

Cybersecurity

CISA: No federal agencies compromised by Exchange hack so far

Two seniors officials at the Cybersecurity and Infrastructure Security Agency told House lawmakers today the attacks in recent months demonstrate the fact the federal government "must raise our game" in cybersecurity.

Cybersecurity

Pentagon issues cyber tasking order in response to Exchange hack

The Pentagon's new order to its agencies and commands aligns with the recent emergency directive issued by the Cybersecurity and Infrastructure Security Agency.

Cybersecurity

Hafnium hack poses new long-term threat for already overtaxed cyber workers

Federal agencies still reeling from the effects of a massive hack involving SolarWinds may face a new challenge of evicting any adversaries that breached their networks through recently discovered vulnerabilities in Microsoft's Exchange software.

Digital Government

TMF set to receive $1B infusion in COVID relief bill

Former federal IT leaders told FCW that the boost for the Technology Modernization Fund is welcome, but the big money may necessitate process changes.

Cybersecurity

Under new law, NIST looks to map out vulnerability disclosure policies for government

Lawmakers in December tasked NIST with to developing processes that would ensure software vulnerability reports flow to the appropriate government offices and the issues are promptly fixed.

Cybersecurity

CISA orders agencies to disconnect Microsoft Exchange on-prem servers

The government's leading cybersecurity agency is ordering all federal civilian agencies to provide a status report on its usage of Microsoft Exchange products by noon on Friday.

Cybersecurity

When water utilities get hacked, who should they call?

In the wake of a cybersecurity breach at a public water system, lawmakers have begun questioning what rules are in place to govern those facilities' cybersecurity and what changes may be necessary.

Cybersecurity

CIA nominee: Cyber threats are 'ever greater risk' for U.S. society

William Burns, the president's nominee to lead the Central Intelligence Agency, said the SolarWinds attack was a "harsh wake-up call" about the country’s vulnerabilities in both critical infrastructure and supply chains.

Acquisition

Supply chain hack took a thousand engineers to pull off, tech exec tells Congress

The scope and scale of the attack as described by Microsoft President Brad Smith is in keeping with the attribution being made by public sector and private sector officials that the hack was perpetrated by Russian-sponsored actors.

Cybersecurity

SolarWinds CEO: This could have happened to anyone

In what will be the first of several public appearances this week, Sudhakar Ramakrishna says his company will be transparent about the supply chain attack it suffered as a way to help other companies prepare for the next attack.

Cybersecurity

Biden pledges international cooperation on cyber in speech

Biden addressed the global security forum for the first time as president last week when he called for the United States to cooperate with European allies on establishing cyberspace norms.

Cybersecurity

Crowdstrike: Pandemic drove 2020 uptick in cyberattacks

The company's new report highlights the threats facing healthcare institutions by both criminal and nation state-backed actors.

Cybersecurity

CISA eyes changes to combat future supply chain hacks

The acting director of the Cybersecurity and Infrastructure Security Agency today said his agency is looking various changes to protect federal networks in the wake of the massive breach discovered late last year.

Cybersecurity

Changes coming to federal cyber in wake of massive breach

The supply chain hack that targeted IT management software SolarWinds and other vendors will result in changes to the federal government's cybersecurity posture, according to the official charged with leading the administration's response.

Cybersecurity

Warner seeks answers from FBI, EPA on Florida water utility breach

The top lawmaker on the Senate Select Committee on Intelligence today sent a letter to the agencies asking for a clearer picture of how hackers attempted to poison a Florida community's water supply and what is being done to prevent a future attack.

Cybersecurity

DOJ charges three in WannaCry attacks, attempts to steal $1.3B

In addition to unsealing the charges against three North Korean hackers, the U.S. government also published indicators of compromise for a family of malicious cryptocurrency applications called "AppleJeus."