In this week's Security Sprint, Dave and Andy talked about the following topics:
National Cybersecurity Strategy. Biden-Harris Administration Publishes the National Cybersecurity Strategy Implementation Plan (PDF). With notable references to ISACs & ISAOs, some emphasis on SBOMs, and more.
National Cyber Director unveils ‘roadmap’ for cyber strategy goalsTHE CYBERSECURITY 202: Court temporarily dunks water cybersecurity initiative
Water Cybersecurity Plan on Pause. Biden administration water cybersecurity plan temporarily blocked
https://apnews.com/article/mass-killings-record-gun-violence-0174103c37756fe4d247fd15cd3bc009
USA Today. https://www.usatoday.com/in-depth/graphics/2022/08/18/mass-killings-database-us-events-since-2006/9705311002/
Assessing the Political Motivations Behind Ransomware Attacks. https://www.karennershi.com/Assets/Assessing_Political_Motivations_Behind_Ransomware.pdf
THE CYBERSECURITY 202 - What we know (and don’t know) about the government email breach
Microsoft Email Hack Shows Greater Sophistication, Skill of China’s Cyberspies
Chinese threat actors hacking Microsoft and through that other organizations including The Dept. of State. Analysis of Storm-0558 techniques for unauthorized email access. ‘On July 11, 2023, Microsoft published two blogs detailing a malicious campaign by a threat actor tracked as Storm-0558 that targeted customer email that we’ve detected and mitigated: Microsoft Security Response Center and Microsoft on the Issues. As we continue our investigation into this incident and deploy defense in depth measures to harden all systems involved, we’re providing this deeper analysis of the observed actor techniques for obtaining unauthorized access to email data, tools, and unique infrastructure characteristics.’
Chinese hackers breach U.S. government email through Microsoft cloud
Chinese Hackers Breached Email of Commerce Secretary Raimondo, State Department Officials
Targeting of State Department, Others in Microsoft Hack ‘Intentional’
Bicameral, Bipartisan Leaders Introduce Legislation To Strengthen Federal Cybersecurity
Director Wray Champions FBI Before House Judiciary Committee
Christopher Wray's Congress Testimony—Five Key Moments
The FTC is investigating whether ChatGPT harms consumers; The agency’s demand for OpenAI’s documents about AI risks mark the company’s greatest U.S. regulatory threat to date
Ordering the Selected Reserve and Certain Members of the Individual Ready Reserve of the Armed Forces to Active Duty
What Is Operation Atlantic Resolve? Biden's Plan for U.S. Troops in Europe
Growing reliance on satellites requires new approach to cybersecurity in space, expert says
OT Cybersecurity Breach Disrupts Operations at the Port of Nagoya, Japan
CISA and FBI Release Cybersecurity Advisory on Enhanced Monitoring to Detect APT Activity Targeting Outlook Online.
view more