Executive Order Would Strengthen Cybersecurity Requirements for Federal Agencies
#1
Information 
Quote:The U.S. federal government is mulling changes to up its cybersecurity software game in the wake of the sprawling SolarWinds cyberattacks that came to light in December, including requiring data-breach notifications.
 
In a draft executive order from President Joe Biden, software companies would be required to disclose any security issues to government users, according to a report from Reuters.
 
“The federal government needs to be able to investigate and remediate threats to the services it provides the American people early and quickly,” a spokeswoman for the National Security Council told the outlet. Referring to the SolarWinds incident, she noted that, “Simply put, you can’t fix what you don’t know about.”
 
In that campaign, adversaries were able to use SolarWinds’ Orion network management platform to infect targets by pushing out a custom backdoor called Sunburst via trojanized product updates. Sunburst was delivered to almost 18,000 organizations around the globe, starting last March, before being discovered in December. With Sunburst embedded, the attackers were then able to pick and choose which organizations to further penetrate, in a massive cyberespionage campaign that has hit nine U.S. government agencies, tech companies like Microsoft and 100 others hard.
 
The other draft cybersecurity orders in the EO, according to Reuters, include requiring a “software bill of materials” for all packages in use across the government, detailing the source of all code, including open-source and partner pieces. And, it would mandate the use of multifactor authentication and data encryption for federal agencies.
 
The order as it now stands would also require vendors to keep digital records and work with the FBI and the Cybersecurity and Infrastructure Security Agency (CISA) on incident response, according to the report.

Read more: E.O. Would Strengthen Federal Cyber Requirements | Threatpost
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Kaspersky\VPN\KSOS 21.23 & KES 12.11 bet...
harlan4096 — 08:55
ESET 18.2.18
A quick hotfix for...harlan4096 — 08:53
AdGuard Browser Extension 5.1.145 (MV3 s...
AdGuard Browser Ex...harlan4096 — 08:50
Brave 1.82.166
Release Channel 1....harlan4096 — 08:49
NVIDIA GeForce Game Ready 581.29 driver
Highlights  Gam...harlan4096 — 08:48

[-]
Birthdays
Today's Birthdays
No birthdays today.
Upcoming Birthdays
avatar (38)fapedDow
avatar (48)pohudidere
avatar (48)rarinsWax
avatar (25)DianaBrown
avatar (38)eqiduseb
avatar (45)ThomasLYDAY
avatar (40)upakoExapy
avatar (50)diplomasync
avatar (49)Myronjax
avatar (49)skepwHug
avatar (38)RicardoGoase
avatar (42)Edwardgef
avatar (43)Denpokhew
avatar (35)azidony
avatar (40)maskbSleew

[-]
Online Staff
There are no staff members currently online.

>