Tech

U.S. accuses Chinese hackers of a 14-year campaign targeting government officials

The coordinated charges include sanctions on Chinese government-affiliated hackers and an up to $10 million reward for information about the defendants.

Tech

U.S. still finding victims of advanced China-linked hacking campaign, NSA official says

The Volt Typhoon hacking collective, backed by the Chinese People’s Liberation Army, has been working to burrow into sensitive U.S. systems, officials previously said.

Tech

Ex-NSA innovation chief’s new startup looks to future-proof federal agencies against cyberthreats

Kevin Keaton’s Eyris would fuse blockchain technologies into advanced security solutions to defend federal agencies, the Pentagon and others against cyber threats.

Tech

CISA targeted through Ivanti VPN vulnerabilities, reports say

The DHS agency has been issuing warnings about Ivanti products since at least 2020.

Management

New bill aims to bring SNAP card security up to credit card standards

Security standards for SNAP cards have not kept pace with industry advancements, lawmakers say.

Tech

Government facilities were third largest ransomware target in 2023, FBI says

The FBI’s IC3 findings also show government official impersonation scams are on the rise.

Tech

FCC staff targeted in phishing attack that cloned agency login site

A cybercriminal group built a duplicate webpage used by employees to validate their login credentials.

Tech

Energy to fund 16 infrastructure cybersecurity projects 

The White House’s cybersecurity strategy implementation plan asks the agency to identify pilot projects for energy infrastructure security.

Defense

Top Pentagon IT official departs deputy CIO role

Lily Zeleke will be taking over “new responsibilities” at the agency, though it’s still unknown what her new position is.

Tech

Biden to sign executive order boosting cybersecurity of ports, maritime vessels

The order empowers the Coast Guard to shore up cyber protections for maritime systems and harden current cyber incident reporting rules.

Tech

NSA cyber director to step down after 34 years of service

His departure comes amid heightened security fears in 2024 and debate over whether to renew a controversial spying power.

Tech

The Pentagon is notifying individuals affected by 2023 email data breach

The exposed contents were not secured with a password at the time of their compromise.

Tech

Some 6,600 current and former employees impacted in a January GAO data breach

The breach, which also included some companies doing business with GAO, may further galvanize concerns about the federal government’s ability to defend itself from cyber intrusions.

Tech

Proposed contractor cyber reporting rule sets a ‘significantly problematic’ bar, industry groups say

The groups, which represent tech and cybersecurity companies sometimes contracted by the government, say the proposals are too rigorous and inconsistent.

Tech

National Cyber Strategy needs better implementation measures, GAO argues

The White House Office of the National Cyber Director can improve on performance measures and cost estimations, the U.S. federal oversight agency said in a Thursday analysis.

Tech

Agencies must disconnect all exposed Ivanti products by Friday, cyber officials say

The directive follows a related warning issued last month about cybersecurity flaws in Ivanti systems.

Oversight

Former DHS employees sentenced for plot to steal government software, databases

The trio wanted to to build a commercial software product that would have been sold to government agencies.

Oversight

NSA illegally purchases Americans’ internet data without a warrant, senator says

The NSA’s purchases of commercial metadata without a court order — revealed in documents exchanged with Sen. Ron Wyden — violate consumer protection laws, the Oregon Democrat claims.

Oversight

GSA used ‘egregiously flawed’ data to clear purchase of Chinese-made cameras, watchdog says

The inspector general's report noted that the acquired video conferencing cameras were not compliant with the 1979 Trade Agreements Act and contained security flaws that, in some instances, had still gone unpatched.