FBI Issues PSA on Cyber Threats due to COVID-19 According to a Public Service Announcement (PSA) by the FBI, cyber threat actors are attempting to take advantage of the COVID-19 pandemic by exploiting virtual environments. “As of March 30, the FBI’s Internet Crime Complaint Center (IC3) has received and reviewed more than 1,200 complaints related […]
In the modern era of IT security, few have seen as much – and done more to make it secure – than Bill Rucker, president of Trustwave Government Solutions. In the midst of a 20-year stretch in the public sector market that began with Intellitactics prior to its acquisition by Trustwave, Rucker leads the company’s effort to help government fight cybercrime, protect data, and reduce security risk. […]
The U.S. Government Accountability Office (GAO) suggests that the Transportation Security Administration (TSA) update its Baseline Assessment for Security Enhancement (BASE) cybersecurity template to reflect key cybersecurity practices. […]
As efforts to control the COVID-19 coronavirus pandemic have increased, the Federal government has moved the majority of its workers to telework. While this is a great step to enable social distancing, it does open up serious cybersecurity concerns. […]
As the Continuous Diagnostics and Mitigation (CDM) program prepares for minimum viable product launch for agency dashboards in April 2020 and gears up to deliver the minimum viable Federal dashboard later this year, the project is undergoing major updates to improve user experience. […]
The Air Force Foundation (AFA) announced the release of its new children’s book – Ben the Cyber Defender. […]
In an estimate released March 31, the Congressional Budget Office (CBO) said that over the next five years the Cybersecurity State Coordinator Act would cost $37 million to enact. […]
The Colorado National Guard is ramping up its cybersecurity awareness, starting with a cultural change to normalize cyber practices and the introduction of a cyber mascot, CIO Col. Isaac Martinez shared at a March 31 Cybersmart webinar. […]
A coalition of 13 nonprofit organizations announced today the launch of the “Work From Home. Secure Your Business.” campaign. […]
In a report released March 30, security software firm Check Point found that cybercriminals are targeting the video communications platform Zoom. […]
While the IRS filing deadline may have been extended to July 15, that hasn’t dissuaded cybercriminals from leveling tax-related phishing attacks. […]
Sean Frazier, advisory CISO at Duo Security, carries an earlier cloud industry pedigree than most, and as such a long historical view of the sector’s ever-increasing influence on the technology capabilities of industry and government. […]
The Federal government and other entities are adjusting to and planning for the impact of the COVID-19 coronavirus. Here’s a quick look at some of the top developments of interest to the Federal IT community: […]
In a March 25 letter, Sen. Mark Warner, D-Va., urged six Internet networking device vendors to ensure their internet connectivity products “remain secure as Americans across the nation ramp up their use of these devices for remote work, health, and education purposes as part of COVID-19 social distancing efforts.” […]
The Department of Health and Human Services (HHS) Office of the Inspector General (OIG) has released a COVID-19 Fraud Alert to warn the public of fraud schemes. […]
The National Institute of Standards and Technology (NIST) released a bulletin note from the Information Technology Laboratory (ITL) on cybersecurity risks increasing with remotely accessible telework networks. […]
As Federal agencies increasingly move to telework due to the COVID-19 pandemic, Federal IT leaders across the government agreed that communication is a key building block for successful teleworking. The panelists specifically zeroed in on the importance of maintaining a strong cybersecurity posture even as employees begin to conduct work on their own network and potentially expose the agency to more cyberattacks. […]
A follow-up audit by the Department of Defense (DoD) Office of Inspector General (OIG) on corrective actions taken by DoD regarding its Cyber Red Team found that it did not consistently mitigate or include unmitigated vulnerabilities identified in the prior audit or during this audit. […]
In September 2019, the National Institute of Standards and Technology (NIST) released its Zero Trust Architecture draft, setting the tone for the future of Federal cybersecurity and a move toward enterprise-wide zero trust implementation. […]
The Government Accountability Office (GAO) identified five challenges to facilitate the growth and implementation of 5G wireless networks in the Federal government. […]
The Federal government and other entities are adjusting to and planning for the impact of the spreading COVID-19 coronavirus. […]
With COVID-19 dominating the national conversation, there has been growing discussion about how to reduce crowds and lines at polling places during the 2020 election cycle. One possibility is to enable voting via smartphones. However, cybersecurity experts remain incredibly cautious given security concerns. […]
The Cybersecurity and Infrastructure Security Agency (CISA) issued a reminder today of security considerations regarding the use of virtual private network (VPN) solutions as telework ramps up due to spread of the COVID-19 coronavirus. […]
Sens. Josh Hawley, R-Mo., and Rick Scott, R-Fla., said today they introduced legislation that would ban the use of the TikTok app on Federal government-provided devices out of concern that the company providing the service – ByteDance – has close ties to the Chinese government and could be compelled to share user data with the government. […]
Despite high salaries and growth potential, the tech industry is struggling to hire enough cybersecurity experts. […]
The Cybersecurity and Infrastructure Security Agency (CISA) late last week issued a practical checklist to help executives “think through” infrastructure protection, supply chain, and cybersecurity issues in light of the COVID-19 coronavirus, and potential effects to workforce and operations. […]
CrowdStrike, the cybersecurity firm that gained attention during the impeachment proceedings, released its annual global threat report, which showed telecoms and public institutions are being increasingly targeted. […]
Federal agencies are significantly better than private sector organizations at enforcing domain-based message authentication, reporting, and conformance (DMARC) standards to combat email domain spoofing, according to a new report from anti-phishing company Valimail. […]
The Department of Transportation’s Office of the Inspector General (OIG) announced in a March 4 memo that it will conduct an audit of the Federal Aviation Administration’s (FAA) security controls to protect 50 information systems where a breach would have a “catastrophically adverse effect.” […]
According to a new report by McAfee, cyber criminals are growing their capabilities to target smartphones by hiding certain apps. […]