Defense Systems

Pipeline ransomware attack renews infrastructure concerns

Senior administration officials say multiple government agencies are working to distribute information to industry about the ransomware attack that led to the shutdown of a key natural gas pipeline for the East Coast.

Ideas

Why National Cyber Defense Is a ‘Wicked’ Problem

Vulnerable supply chains, sloppy security, and a talent shortage made events like the Colonial Pipeline ransomware attack and the SolarWinds hack all but inevitable.

Science & Tech

To Understand 'Zero Trust,' Look to the Roman Empire

When the Romans realized that they could no longer prevent border incursions, they developed methods of fighting the attackers within.

Defense Systems

Boosting student loan debt forgiveness could pay off for cyber recruiting

Almost all Defense Department personnel who have sought student loan debt forgiveness have been denied -- a trend that, if unchanged, could make it even harder to recruit and retain tech talent.

Defense Systems

DHS, White House turn spotlight on ransomware

The Department of Homeland Security and the White House are putting the spotlight on combatting ransomware, actively developing plans to confront the issue.

Defense Systems

DOD expands bug bounty program to public networks, systems

The vulnerability disclosure program, which was started from the Defense Digital Service's 2016 Hack the Pentagon initiative, was initially restricted to public-facing websites and applications.

Defense Systems

Prepare for the next Sunburst by protecting controlled unclassified information

Protecting the supply chain and CUI will only become more challenging as the number of defense contractors and the amount of data they house continues to increase.

Defense Systems

Pentagon readies new policy to boost cyber workforce

The Defense Department is developing a new policy series aimed at improving the cyber workforce, but it has substantial work to do to recruit the talent needed in the future.

Defense Systems

Space Command moves for tighter cyber integration

U.S. Space Command is standing up a dedicated joint cyber center to improve integration with U.S. Cyber Command.

Defense Systems

CISA issues warning on exploited VPN flaw

A Chinese hacking campaign is using known flaws in a virtual private network application to breach entity networks and implant the SUPERNOVA malware.

Defense Systems

Russian operations targeting cloud and email, advisory warns

A new advisory describes how organizations can counter tactics and techniques used by Russia’s SVR foreign intelligence service, the attackers behind the intrusion involving SolarWinds.

Defense Systems

USTRANSCOM prepares for third-party cyber compliance assessments

U.S. Transportation Command is preparing a proof of principle for a cyber compliance program in preparation for broad adoption of CMMC.

Defense Systems

Russia sanctioned over SolarWinds, election interference -- even as cyber espionage continues

The White House announced a range of sanctions against Russia, and security agencies warned of software vulnerabilities that Russian intelligence services are actively exploiting.

Defense Systems

Nakasone deflects senators' invitations to seek domestic spying powers

Lawmakers have continued to prod the NSA chief to request new surveillance authorities that might prevent another SolarWinds-type breach.

Exclusive Science & Tech

Free the Data: Vice Chiefs Launch an Acquisition Crusade

Better access to weapon data is crucial to faster Pentagon purchasing — and dangerous to industry business models.

Defense Systems

White House stands down SolarWinds, Microsoft Exchange cyber response groups

The White House is suspending the two interagency groups tasked with managing the government's response to the cybersecurity incidents involving SolarWinds and Microsoft Exchange, citing improving trends in patching.

Defense Systems

Biden taps Inglis, Easterly for top cyber jobs

National Security Agency veterans will serve as first national cyber director and lead the Cybersecurity and Infrastructure Security Agency.

Defense Systems

IC warns that U.S. adversaries are ramping up cyber attacks

The worldwide threat assessment by the U.S. intelligence community comes one day before the heads of several agencies are scheduled to testify during open and closed session to the Senate Select Committee on Intelligence.

Defense Systems

Microsoft patches new Exchange CVEs, credits NSA with discovery

The new vulnerabilities found in Exchange servers running on-premises are separate from zero-day exploits discovered and announced in March.