Feds seek centralized threat analysis with CTIIC

“Currently, no single government entity is responsible for producing coordinated cyber threat assessments, ensuring that information is shared rapidly among existing cyber centers and other elements within our government, and supporting the work of operators and policy makers with timely intelligence about the latest cyber threats and threat actors.”

Anthem breach enabled by compromising administrator credentials

As an internal investigation continues into the massive data breach reported last week by Anthem, the company has confirmed reports that administrators who discovered the breach in late January noticed unusual activity on Anthem’s database systems…

Update to FISMA signed into law

In December Congress passed, and the president signed into law the Federal Information Security Modernization Act of 2014, which provides the first comprehensive update to federal security legislation since 2002.

Tracking source of South Korean cyber attack illustrates challenges for U.S.

The ongoing analysis of the crippling if short-lived computer attack last week against South Korean financial institutions and media companies highlights some of the key difficulties facing the United States and other nations trying to establish…

Executive action on critical infrastructure protection renews debate on privacy and information sharing

The release last week of an Executive Order focused on “Improving Critical Infrastructure Cybersecurity” represents the latest move by the administration to encourage information sharing between the federal government and private sector entities responsible for operating…

When does technical competence trump historical performance

The joint announcement last week by the Department of Homeland Security (DHS) and the Department of Defense (DoD) to formalize a cooperative relationship between the two agencies to provide coordinated cybersecurity operations to protect government computing…

NITRD Tailored Trustworthy Spaces program suggests avenues for research

Among the areas announced as federal cybersecurity research priorities for the Networking and Information Technology Research and Development (NITRD) program is an initiative intended to promote development of “tailored trustworthy spaces” that not only reflect different…