Cybersecurity

Senators Relaunch Cybersecurity Bills Following log4j Concerns

The new package bill was introduced amid calls for increased government support of open-source software development.

Cybersecurity

IRS Suggests Need to Disclose Crypto Exchange Information to Law Enforcement

A letter the tax bureau sent to a key senator says stronger penalties for failure to report cryptocurrency-based income gains might also help deter cyber criminals.

Cybersecurity

NIST Suggests Agencies Accept the Word of Software Producers Per Executive Order

The standards agency said an attestation from vendors themselves would be sufficient when screening for cybersecurity, unless an agency's risk calculus suggests otherwise.

Cybersecurity

New Cyber Safety Board Pivots to Tackle log4j Vulnerabilities

The DHS body’s primary focus will be on addressing vulnerabilities in the commonly used log4j software library, but will also incorporate findings on the ‘SolarWinds’ hack.

Cybersecurity

DHS Official to Chair Biden-ordered Cyber Safety Review Board

Cybersecurity professionals say the board needs subpoena authority in order to be effective.

Cybersecurity

Supply Chain Security Training and FISMA Overhaul Bills Clear House Committee

The committee chair highlighted a need for incident reporting and other requirements for federal contractors.

Cybersecurity

The U.S. is Working to Improve Ukraine’s Cyber Defenses in the Face of Russian Threat

The prospect of a cyberattack amid heightened regional tensions creates a stark contrast against delicate diplomatic efforts the U.S. is pursuing to thwart ransomware criminals officials say are operating out of Russia.

Cybersecurity

Security Specialists: Microsoft’s Discounted Logging Offering Warrants Scrutiny 

The log management tool Microsoft is marketing as a way for agencies to fulfill administration requirements for network visibility could contribute to a risky ‘monoculture,’ according to cybersecurity professionals.

Policy

FCC Blocks US Access for Another Chinese Telecom Company

Concerns remain surrounding data centers controlled by entities like China Unicom Americas.

Cybersecurity

EPA Leading White House Effort to Secure the Water Sector Against Cyberattacks

This is the third in a series of 100-day sprints to shore up industrial control systems used in critical infrastructure.

Cybersecurity

Treasury Considering State and Local Grants to Implement Digital ID Systems

The effort to stimulate widespread use of digital identification is aligned with a White House order on cybersecurity and could help defend against ransomware attacks, officials said.

Cybersecurity

FISMA Bill Drops in House Amid Confusion Over Federal CISO Role

Rep. John Katko is continuing a campaign to make the Cybersecurity and Infrastructure Security Agency a central Chief Information Security Office—or CISO— for federal civilian agencies.

Emerging Tech

GSA Working to Expand on Social Security Administration’s Digital Identity System  

There’s a solid cybersecurity argument for electronic verification, but equity can’t be neglected, observers say.

Cybersecurity

NSA: Securing Cloud-Related PDFs Shouldn’t Mean Sacrificing Usability

The rise of editable Portable Document Files created a new avenue for attackers, but the right configuration can protect most systems without compromising functionality, NSA says.

Modernization

New FITARA Grades Show Agencies Failing to Transition Off Legacy Networking Services 

But agencies got all As on data center optimization, suggesting it may be time to retire or update that metric.

Cybersecurity

Biden Official Endorses Effort to Move Pipeline Cybersecurity Regulation to DOE

An emergency directive from the Transportation Security Administration following the Colonial Pipeline attack faced opposition from Senate Republicans after the industry complained they weren’t sufficiently consulted beforehand.

People

Congress losing a heavy hitter on cybersecurity

Rep. Jim Langevin, co-chair and founder of the House Cybersecurity Caucus, will not seek re-election.

Digital Government

Congress Losing a Heavy Hitter on Cybersecurity

Rep. Jim Langevin, co-chair and founder of the House Cybersecurity Caucus, will not seek re-election.

Cybersecurity

Big Tech Anxious About Commerce Plan to Secure Supply Chains from Foreign Influence

Comments an association of industry giants made on a notice of proposed rulemaking from the Commerce Department come amid multiple government efforts to reduce cybersecurity risks in globally produced information and communications technology.

Cybersecurity

Biden Official Credits Diplomacy With Russia for Arrest of Colonial Pipeline Hacker

A senior administration official disassociated the move from tensions between the U.S. and Russia amid a build-up of Russian troops near Ukraine and an unattributed cyberattack on the country’s government websites.