<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>Cyber - Federal Times</title>
	<atom:link href="https://www.federaltimes.com/cyber/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.federaltimes.com/cyber/</link>
	<description>Covering the federal workforce, acquisition, IT adoption and management issues for a new era of public service.</description>
	<lastBuildDate>Sat, 08 Aug 2026 18:35:20 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1.1</generator>

<image>
	<url>https://one.sightlinemg.com/wp-content/uploads/2026/06/favicon-fed.png?w=32</url>
	<title>Cyber - Federal Times</title>
	<link>https://www.federaltimes.com/cyber/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255331619</site><atom:link rel="next" type="application/rss+xml" href="https://www.federaltimes.com/feed/?paged=2" />
	<item>
		<title>QinetiQ’s American unit agrees to buy software specialist Avantus</title>
		<link>https://www.federaltimes.com/acquisition/2022/08/09/qinetiqs-american-unit-makes-deal-to-buy-software-specialist-avantus/</link>
					<comments>https://www.federaltimes.com/acquisition/2022/08/09/qinetiqs-american-unit-makes-deal-to-buy-software-specialist-avantus/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Tue, 09 Aug 2022 18:32:39 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Procurement]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[“This acquisition is an important step in the execution of QinetiQ’s five-year ambitions to expand our presence in the US,” according to the company’s CEO.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/acquisition/2022/08/09/qinetiqs-american-unit-makes-deal-to-buy-software-specialist-avantus/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19268</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/5373156.jpg.jpg" width="6720" height="4480" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/5373156.jpg.jpg" width="6720" height="4480" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — The U.S. arm of British defense technology company QinetiQ struck a deal to acquire software provider Avantus Federal from NewSpring Holdings for $590 million.</p>



<p class="wp-block-paragraph">“This acquisition is an important step in the execution of QinetiQ’s five-year ambitions to expand our presence in the US, the largest security and defence market in the world,” the company’s CEO, Steve Wadey, said in a statement Aug. 5.</p>



<p class="wp-block-paragraph">The deal would double QinetiQ’s U.S. business, according to the release, and is to be completed by the end of this year, subject to regulatory approvals. A combination of existing cash and new debt facilities are expected to finance the acquisition.</p>



<p class="wp-block-paragraph">QinetiQ was the 64th largest defense firm in 2021, per <a href="https://people.defensenews.com/top-100/" target="_blank">Defense News’ Top 100 list, which ranks companies according to defense revenue</a>. Its total revenue for the fiscal year that ended March 31, 2022, was about £1.32 billion, or $1.8 billion, per the list. According to the company, its revenue has grown for the last five years.</p>



<p class="wp-block-paragraph">Avantus, which was not on the list, brought in $298 million in total revenue in the fiscal year that ended June 30, 2022, and its revenue has grown by double-digit rates over the last three years, according to the release.</p>



<p class="wp-block-paragraph">Founded in 2016 and based in McLean, Virginia, Avantus provides data and cyber services to the departments of Defense and Homeland Security, among other American military and government entities. QinetiQ also provides products and services to the U.S. government.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Troops’ use of TikTok may be national security threat, FCC commissioner says</title>
		<link>https://www.federaltimes.com/it-networks/2022/07/14/troops-use-of-tiktok-may-be-national-security-threat-fcc-commissioner-says/</link>
					<comments>https://www.federaltimes.com/it-networks/2022/07/14/troops-use-of-tiktok-may-be-national-security-threat-fcc-commissioner-says/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Thu, 14 Jul 2022 21:22:08 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<category><![CDATA[Oversight]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[A U.S. regulator says troops' and families' use of TikTok on personal devices could pose a national security threat.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/it-networks/2022/07/14/troops-use-of-tiktok-may-be-national-security-threat-fcc-commissioner-says/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">29659</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/Tik1.jpg.jpg" width="1500" height="1052" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/Tik1.jpg.jpg" width="1500" height="1052" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Troops and family members could be jeopardizing national security with their use of the TikTok video-sharing app, a U.S. regulator told lawmakers.</p>



<p class="wp-block-paragraph">While the military services have banned the use of TikTok from government devices, troops and family members do use the app on personal devices.</p>



<p class="wp-block-paragraph">TikTok is owned by the Beijing-based ByteDance, said Brendan Carr, the senior Republican on the Federal Communications Commission. And he’s concerned about the amount of non-public sensitive data Americans upload that could be <a href="https://www.militarytimes.com/news/your-military/2019/11/04/concerns-rise-over-possibility-chinese-could-use-tiktok-to-collect-troops-data/" target="_blank">flowing into the hands of the Chinese government. </a></p>



<p class="wp-block-paragraph">TikTok has grown in popularity in the military community. For example, troops often upload videos of barracks, military equipment and maneuvers, Carr said in testimony Wednesday before the House Oversight Committee’s panel on national security.</p>



<p class="wp-block-paragraph">“With TikTok, this is a device right in your pocket. It’s going inside the military installation, looking at location data, which can give people information on troop movements,” Carr said. “There’s a range of ways that that sensitive data going back to Beijing with their sophisticated [artificial intelligence] can ultimately be used to harm U.S. national security.”</p>



<p class="wp-block-paragraph">The hearing was held to explore financial fraud targeting service members and veterans. The threats to active duty and veterans come from a variety of sources, according to Carr, and many of the frauds seen on other online platforms are also perpetrated on TikTok. But there are unique national security concerns when it comes to this video-sharing app.</p>



<p class="wp-block-paragraph">“TikTok has engaged in a pattern of misrepresentation regarding both the amount and extent of data it’s collected as well as how much has been accessed from inside China,” Carr said.</p>



<p class="wp-block-paragraph">He cited a recent <a href="https://www.buzzfeednews.com/article/emilybakerwhite/tiktok-tapes-us-user-data-china-bytedance-access" target="_blank">BuzzFeed News report of leaked audio from 80 internal TikTok meetings</a> that showed China has repeatedly accessed Americans’ user data.</p>



<p class="wp-block-paragraph">“The flow of this non-public sensitive data into China is particularly troubling given the [People’s Republic of China’s] track record of engaging in espionage and other nefarious acts,” Carr said.</p>



<p class="wp-block-paragraph">“At its core, TikTok functions as a sophisticated surveillance tool that harvests extensive amounts of sensitive data from search and browsing history, keystroke patterns, location data, and biometrics including face prints and voice prints,” Carr added. “All of the concerns with TikTok are heightened in the military context.”</p>



<p class="wp-block-paragraph">Rep. Glenn Grothman, R-Wisc., proposed that the military should be proactively urging troops to not use the app.</p>



<p class="wp-block-paragraph">“Should the military be doing more to tell our members to stay off of TikTok?” he asked.</p>



<p class="wp-block-paragraph">The federal government should be doing more, Carr said. The government “should address the continued use of TikTok on military installations, as well as any use that depicts U.S. military operations,” he added.</p>



<p class="wp-block-paragraph">Ongoing national security reviews of TikTok, currently being conducted by officials in the Treasure and Commerce departments, should be finished soon, according to Carr.</p>



<p class="wp-block-paragraph">Leaders of the Senate Select Committee on Intelligence, chairman Sen. Mark Warner, D-Va., and vice chairman Sen. Marco Rubio, R-Fl., called on the Federal Trade Commission in a July 5 letter to initiate an investigation of TikTok.</p>



<p class="wp-block-paragraph">In light of reports about the Chinese government’s access to the data, they wrote, the FTC should immediately launch an investigation “on the basis of apparent deception by TikTok, and coordinate this work with any national security or counter-intelligence investigation that may be initiated by the U.S. Department of Justice.”</p>



<p class="wp-block-paragraph">Carr has also called on Google and Apple to remove TikTok from their app stores. In a July 5 blog, a TikTok official addressed the company’s approach to keeping U.S. data secure.</p>



<p class="wp-block-paragraph">“The security of the data our community entrusts us with is a top priority at TikTok, despite recent reports questioning that commitment,” wrote Michael Beckerman, TikTok’s head of public policy for the Americas.</p>



<p class="wp-block-paragraph">TikTok recently stood up a new U.S. data security division “to bring heightened focus and governance to our ongoing efforts to strengthen our data protection policies and protocols, further protect our users, and build confidence in our systems and controls in the United States,” he stated.</p>



<p class="wp-block-paragraph">The creation of that division was an important milestone in the goals they previously laid out, he said: “minimizing access to U.S. user data and minimizing data transfers across regions – including to China.”</p>
]]></content:encoded>
	</item>
		<item>
		<title>UN stresses strategic communications to combat disinformation ‘weapon of war’</title>
		<link>https://www.federaltimes.com/cyber/2022/07/13/un-stresses-strategic-communications-to-combat-disinformation-weapon-of-war/</link>
					<comments>https://www.federaltimes.com/cyber/2022/07/13/un-stresses-strategic-communications-to-combat-disinformation-weapon-of-war/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Wed, 13 Jul 2022 14:13:29 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[U.N. Secretary-General Antonio Guterres told the council that the world in which peacekeepers operate "is more hazardous today than any time in recent memory," with geopolitical tensions reverberating locally and conflicts "more complex and multi-layered."]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/cyber/2022/07/13/un-stresses-strategic-communications-to-combat-disinformation-weapon-of-war/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">23946</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP22031558740921.jpg.jpg" width="5760" height="3840" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP22031558740921.jpg.jpg" width="5760" height="3840" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The U.N. Security Council said Tuesday that more needs to be done to counter disinformation and misinformation about the U.N.’s 12 peacekeeping operations, which have faced growing attacks especially on social media.</p>



<p class="wp-block-paragraph">A Brazilian-drafted presidential statement approved by all 15 council members said the U.N. must “improve the culture of strategic communications across civilian, military and police components” of peacekeeping missions in order to protect civilians — a key mandate for the U.N.’s 90,000 peacekeepers in Africa, the Middle East, Asia and Europe.</p>



<p class="wp-block-paragraph">The council noted “with great concern the increasing amount of disinformation and misinformation directed against United Nations peacekeeping operations, which may negatively impact missions and peacekeepers.”</p>



<p class="wp-block-paragraph">Brazilian Foreign Minister Carlos França, whose country holds the council presidency this month and chaired Tuesday’s meeting, said that “strategic communications are essential for a successful peacekeeping operation.”</p>



<p class="wp-block-paragraph">U.N. Secretary-General Antonio Guterres told the council that the world in which peacekeepers operate “is more hazardous today than any time in recent memory,” with geopolitical tensions reverberating locally and conflicts “more complex and multi-layered.”</p>



<p class="wp-block-paragraph">“Peacekeepers are facing terrorists, criminals, armed groups and their allies — many with access to powerful modern weapons, and many with a vested interest in perpetuating the chaos in which they thrive,” the U.N. chief said.</p>



<p class="wp-block-paragraph">But, he added, “The weapons they wield are not just guns and explosives. Misinformation, disinformation, and hate speech are increasingly being used as a weapon of war.”</p>



<p class="wp-block-paragraph">Guterres said a recent survey found that nearly half of all U.N. peacekeepers feel misinformation and disinformation severely affect their work and threaten their safety and security.</p>



<p class="wp-block-paragraph">As an example of false information spreading “like wildfire,” Guterres said a fake letter alleging that U.N. peacekeepers in Mali were collaborating with armed groups “went viral on WhatsApp and was picked up by national media.” It stirred up hostility and resentment against peacekeepers and made their efforts to protect civilians even harder, he said.</p>



<p class="wp-block-paragraph">Lt. Gen. Marcos Da Costa, commander of the peacekeeping force in Congo, told the council that it operates in a country where successive surveys find “an overall poor perception” among the population about the mission’s relevance in improving their security.</p>



<p class="wp-block-paragraph">“Anti-mission sentiment prevails in certain parts of the country that even prevent some of our deployments,” he said. “Unfair speeches by several actors against the mission put in risk the safety of our peacekeepers. The extensive use of social media by armed groups and other spoilers undermines the confidence in the U.N.”</p>



<p class="wp-block-paragraph">He said these armed militias “use regular information warfare techniques” and their fake news diffusing through messaging and social media is difficult to distinguish from reality.</p>



<p class="wp-block-paragraph">“These emerging technologies are driving a fundamental change to the character of the war, and peace operations are already being affected,” Da Costa said.</p>



<p class="wp-block-paragraph">Guterres said the U.N. is moving to improve communications in peacekeeping operations between uniformed and civilian personnel, seek military and police officers skilled in communicating, and work with tech and media companies and member states to collect and share best practices.</p>
]]></content:encoded>
	</item>
		<item>
		<title>National Guardsmen may soon use personal electronics in deployments</title>
		<link>https://www.federaltimes.com/it-networks/2022/06/28/national-guardsmen-may-soon-use-personal-electronics-in-deployments/</link>
					<comments>https://www.federaltimes.com/it-networks/2022/06/28/national-guardsmen-may-soon-use-personal-electronics-in-deployments/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Tue, 28 Jun 2022 20:20:54 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[“Bring Your Own Approved Device” initiative would allow guardsmen to use personal mobile equipment to perform the same functions in the field that they would otherwise carry out at a desktop in their offices.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/it-networks/2022/06/28/national-guardsmen-may-soon-use-personal-electronics-in-deployments/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">32260</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21116836146190.jpg.jpg" width="5062" height="3375" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21116836146190.jpg.jpg" width="5062" height="3375" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — National Guardsmen may soon be able to use their personal electronic devices for official functions during domestic deployments to help fill a resources gap and reduce mobilization time, according to the service’s chief information officer.</p>



<p class="wp-block-paragraph">Speaking during a <a href="https://events.c4isrnet.com/office-hours-crisis-communications/" target="_blank">C4ISRNET </a>webcast, Kenneth McNeill said an initiative called “Bring Your Own Approved Device” would allow guardsmen to use personal mobile equipment to perform the same functions in the field that they would otherwise carry out at a desktop in their offices.</p>



<p class="wp-block-paragraph">“In a typical state, all of our guardsmen, unfortunately, they may not have government-furnished devices — mobile cellphones, iPads,” McNeill said. “It cuts down on time when we’re planning for a mobilization.”</p>



<p class="wp-block-paragraph">The initiative, which is a collaboration with the Department of the Army and the Pentagon’s cybersecurity office, is in its third phase of a pilot program consisting of a yearlong trial with the largest sample size to date. After this trial, if deemed successful, the initiative will be enacted, McNeill said.</p>



<p class="wp-block-paragraph">Work began on the initiative before the pandemic, which drove a transition to remote work. The realities of the situation forced the Guard to accelerate its efforts.</p>



<p class="wp-block-paragraph">“This is another tool in the toolkit that will give us an opportunity to allow our workforce, even after the pandemic, to continue to telework and [perform] remote work that is critical in the National Guard,” McNeill said. “I don’t think we’re going back [to] everyone in the office. I think this is the future of how we’re going to operate here in the government and in the Department of Defense.”</p>



<p class="wp-block-paragraph">While deployed to the streets of Washington, D.C., following the Jan. 6 insurrection on the Capitol, the National Guard employed a similar capability called Commercial Virtual Remote to carry out the mission that was limited in scope and time.</p>



<p class="wp-block-paragraph">“Now we will have a capability that really links our force, even before they are called up for deployment,” he said. “This will be a game-changer.”</p>



<h2 class="wp-block-heading">JADC2</h2>



<p class="wp-block-paragraph">McNeill also discussed an addition to the Joint All-Domain Command and Control concept being implemented by the DoD that would focus on the needs of the National Guard’s mission set. Called “Project Homeland,” the initiative would apply the same capabilities of JADC2 to the domestic front.</p>



<p class="wp-block-paragraph">JADC2 is a project by the Department of Defense to connect all the sensors from the individual services and compile data collected into a single information network. Previously, each service had their own tactical networks that were unable to interface with each other.</p>



<p class="wp-block-paragraph">“JADC2 is a warfighting necessity to keep pace with the volume and complexity of data in modern warfare and to defeat adversaries decisively,” the department said in a statement. “JADC2 enables the Joint Force to ‘sense,’ ‘make sense,’ and ‘act’ on information across the battle-space quickly using automation, artificial intelligence (AI), predictive analytics, and machine learning to deliver informed solutions via a resilient and robust network environment.”</p>



<p class="wp-block-paragraph">Project Homeland would apply those same capabilities during domestic deployments across the 54 states and territories National Guard units and their civilian interagency partners as opposed to the military services and their coalition forces.</p>



<p class="wp-block-paragraph">McNeill spoke to the challenges the National Guard faced during their humanitarian relief operations post Hurricane Katrina. On the ground, the Guard was unable to talk with the local first responders because they did not have cross-banding communication systems.</p>



<p class="wp-block-paragraph">“We learned from that experience that we’ve got to think out of the box,” McNeill said. “We’ve got to look at capabilities that can talk to first responders and focus on what we do in the homeland.”</p>
]]></content:encoded>
	</item>
		<item>
		<title>US must prepare for proliferation of cyber warfare</title>
		<link>https://www.federaltimes.com/it-networks/2022/06/24/us-must-prepare-for-proliferation-of-cyber-warfare/</link>
					<comments>https://www.federaltimes.com/it-networks/2022/06/24/us-must-prepare-for-proliferation-of-cyber-warfare/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Fri, 24 Jun 2022 11:51:10 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Inside the Agencies]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<category><![CDATA[Opinion]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[To build cyber resilience in this heightened threat environment, agencies must work closely with both international counterparts and industry to align on a proactive, global approach to all cyber threats –– not just state-sponsored attacks.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/it-networks/2022/06/24/us-must-prepare-for-proliferation-of-cyber-warfare/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19318</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/63801881.jpg.jpg" width="6000" height="4000" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/63801881.jpg.jpg" width="6000" height="4000" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Urgent calls from the Biden administration to strengthen cyber defenses amid the Ukraine crisis and overall heightened threat environment underscore the growing concern over the impact a cyber incident would have on U.S. networks and critical infrastructure.</p>



<p class="wp-block-paragraph">This year’s <a href="https://www.whitehouse.gov/briefing-room/legislation/2022/03/15/bill-signed-h-r-2471/">$1.5 trillion omnibus spending package</a> includes an <a href="https://www.cisa.gov/news/2022/03/11/statement-cisa-director-easterly-passage-cyber-incident-reporting-legislation">unprecedented budget increase</a> for the Cybersecurity and Infrastructure Security Agency, as well as tightened cyber incident reporting requirements for sectors like transportation and energy.</p>



<p class="wp-block-paragraph">To build cyber resilience in this heightened threat environment, agencies must work closely with both international counterparts and industry to align on a proactive, global approach to all cyber threats –– not just state-sponsored attacks. That means understanding the threat landscape, shoring up critical infrastructure and developing a plan to coordinate well before attacks happen.</p>



<p class="wp-block-paragraph"><b>Understanding an increasingly turbulent cyber threat landscape</b></p>



<p class="wp-block-paragraph">In general, the massive state-sponsored cyberattacks many analysts expected on critical infrastructure in Ukraine and elsewhere have yet to materialize. Still, the conflict has given rise to a <a href="https://www.nbcnews.com/tech/security/hacktivists-new-veteran-target-russia-one-cybers-oldest-tools-rcna20652">complex and shadowy landscape</a> of citizen cyber hacktivists, vigilantes and criminal groups taking advantage of the crisis to steal money and working as potential proxies for state actors.</p>



<p class="wp-block-paragraph"><a href="https://www.fortinet.com/blog/threat-research/bad-actors-capitalize-current-events-email-scams">Chatter within ransomware groups</a> indicates some threat actors are siding with Russia, some with the West and some are simply using the theater of war as a smokescreen to facilitate cybercrime. FortiGuard Labs researchers also identified email <a href="https://www.fortinet.com/blog/threat-research/bad-actors-capitalize-current-events-email-scams">phishing scams</a> perpetrated by opportunistic criminals posing as trusted organizations like the United Nations to fraudulently solicit donations and potentially infect devices.</p>



<p class="wp-block-paragraph">History shows the potential for outsized impact when the tools of cyber conflict inevitably proliferate. In 2017, for example, the <a href="https://www.fortinet.com/blog/industry-trends/analyzing-the-history-of-ransomware-across-industries">NotPetya</a> ransomware initially was launched in the update servers for accounting software in Ukraine but quickly and predictably spread worldwide, affecting even large and well-prepared firms and causing an estimated <a href="https://www.apextechservices.com/topics/articles/435235-notpetya-worlds-first-10-billion-malware.htm">$10 billion</a> in damage.</p>



<p class="wp-block-paragraph">Many analysts believe that despite having some of the surface charactaristics of ransomware, NotPetya was intended from the outset to be destructive, rather than a tool for criminal profit. And as the conflict in Ukraine continues, threat researchers are encountering increasing amounts of “wiperware”––malicious software designed to disrupt operations or delete data.</p>



<p class="wp-block-paragraph"><b>Shoring up critical infrastructure</b></p>



<p class="wp-block-paragraph">Within the United States, new investments in cybersecurity from both the omnibus bill and the <a href="https://www.whitehouse.gov/briefing-room/statements-releases/2021/08/02/updated-fact-sheet-bipartisan-infrastructure-investment-and-jobs-act/">Infrastructure Investment and Job Act</a> offer a unique opportunity to help mitigate the risk of both state-sponsored and criminal cyberattacks on critical infrastructure.</p>



<p class="wp-block-paragraph">Recent <a href="https://www.cisa.gov/control-systems-goals-and-objectives">CISA guidance</a> emphasizes the vital importance of including cybersecurity in the design of new infrastructure projects, regardless of the sector or the size of the organization. This is where national cybersecurity becomes a state and local issue as well. <a href="https://statescoop.com/state-local-cyber-grant-program-summer-cisa/">This summer,</a> CISA is expected to issue guidelines to help mayors and governors utilize the law’s $1 billion cyber grant program dedicated to building cyber maturity at the state and local level. However, if we spent only $1 billion on cybersecurity out of a $1.2 trillion total, we would be woefully underinvesting in cybersecurity and resilience.</p>



<p class="wp-block-paragraph">For those state and local governments, it’s better to build in cyber protocols now as the infrastructure upgrades are being planned and implemented than trying to chase down vulnerabilities as they’re being exploited.</p>



<p class="wp-block-paragraph"><b>Coordinating across borders and sectors</b></p>



<p class="wp-block-paragraph">In addition to fortifying our defenses domestically, slowing the success of malicious cyber actors will require robust cooperation beyond our borders, as well collaboration with the private sector.</p>



<p class="wp-block-paragraph">That means more information sharing before, during and after attacks. President Biden even went so far as to write guidelines into his 2021 cyber <a href="https://www.whitehouse.gov/briefing-room/presidential-actions/2021/05/12/executive-order-on-improving-the-nations-cybersecurity/">executive order</a>, ensuring that IT services providers be able to share information with the government as a whole and require them to share certain breach information. And the recently enacted <a href="https://www.cisa.gov/circia">Cyber Incident Reporting for Critical Infrastructure Act</a> requires that critical infrastructure providers notify CISA of any significant cyber incident within 72 hours or any ransomware payment within 24 hours.</p>



<p class="wp-block-paragraph">Internationally, governments and the private sector should be aligning cyber defense and mitigation playbooks among NATO allies—a critical first step to mitigate the risk of burgeoning threats. Beyond that, multilateral organizations such as the <a href="https://www.fortinet.com/ru/corporate/about-us/newsroom/press-releases/2019/fortinet-serves-as-a-founding-partner-of-world-economic-forum-s-">World Economic Forum Centre for Cybersecurity</a> could convene global public-private partnerships to encourage information-sharing and the development of cyber norms.</p>



<p class="wp-block-paragraph">This is just a taste of what we’ll need to do in the coming months and years, but it’s a good start.</p>



<p class="wp-block-paragraph">Delivering more effective cybersecurity to protect our nation’s networks is a complex challenge –– one that will require governments and industry to work together effectively to confront. Progress is necessary and it will take an effort of allies. No single government or organization or cybersecurity vendor can take this on alone.</p>



<p class="wp-block-paragraph"><i>Jim Richberg is public sector field CISO at Fortinet. He formerly served as the national intelligence manager for cyber in the Office of the Director of National Intelligence, where he set national cyber intelligence priorities.</i></p>
]]></content:encoded>
	</item>
		<item>
		<title>What the Cyber Workforce bill means for federal IT professionals</title>
		<link>https://www.federaltimes.com/opinions/2022/06/24/what-the-cyber-workforce-bill-means-for-federal-it-professionals/</link>
					<comments>https://www.federaltimes.com/opinions/2022/06/24/what-the-cyber-workforce-bill-means-for-federal-it-professionals/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Fri, 24 Jun 2022 10:46:34 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Inside the Agencies]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Opinion]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[President Biden signed the Federal Rotational Cyber Workforce Program Act into law, offering agencies a practical solution to the cyber staffing crisis—if they act proactively.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/opinions/2022/06/24/what-the-cyber-workforce-bill-means-for-federal-it-professionals/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">24547</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-903456766.jpg.jpg" width="1200" height="592" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-903456766.jpg.jpg" width="1200" height="592" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Following the invasion of Ukraine and the sanctions imposed against Russian interests by NATO allies, <a href="https://www.whitehouse.gov/briefing-room/statements-releases/2022/03/21/statement-by-president-biden-on-our-nations-cybersecurity/">the U.S. is on heightened cyber alert</a>.</p>



<p class="wp-block-paragraph">Concerns about cybersecurity threats posed by foreign adversaries were on the rise even before the conflict. According to the <a href="https://investors.solarwinds.com/news/news-details/2022/For-the-First-Time-in-Five-Years-External-Threats-Overshadow-Internal-Threats-as-the-Greatest-Cybersecurity-Concern-for-the-Public-Sector/default.aspx">2022 SolarWinds Public Sector Cybersecurity Survey Report</a>, 56% of federal IT operations and security decision-makers state foreign governments are now one of the top security threats, along with the general hacking community and untrained insiders.</p>



<p class="wp-block-paragraph">To combat these threats, protect American critical infrastructure and safeguard personal information, the federal government is actively seeking to strengthen its cybersecurity workforce. Agencies must find innovative ways to compete with lucrative private sector positions to do so, but it’s a perpetual challenge. In recent years, many federal agencies have seen their <a href="https://www.washingtonpost.com/politics/2021/08/02/cybersecurity-202-governments-facing-severe-shortage-cyber-workers-when-it-needs-them-most/">pool of cyber talent shrink</a>.</p>



<p class="wp-block-paragraph">Here are some best practices federal agencies can implement to better attract and retain a federal cybersecurity workforce.</p>



<p class="wp-block-paragraph"><b>Make a Case for a Rotational Cyber Workforce Program</b></p>



<p class="wp-block-paragraph">On June 21, President Joe Biden signed the <a href="https://www.congress.gov/bill/117th-congress/senate-bill/1097?r=1&#038;s=1">Federal Rotational Cyber Workforce Program Act</a> into law, offering agencies a practical solution to the cyber staffing crisis—if they act proactively.</p>



<p class="wp-block-paragraph">Under this new law, the Office of Personnel Management must establish a cross-agency rotational workforce development program allowing employees to work outside a single position within a single public office. The idea is that as cybersecurity professionals move across departments, agencies will benefit from knowledge transfer and collaborative efforts to address advanced threats.</p>



<p class="wp-block-paragraph">The program could also be used as a recruitment and retention tool. In theory, cybersecurity professionals will gain substantial experience across different departments, enhancing career opportunities and facilitating the expansion of each person’s professional network.</p>



<p class="wp-block-paragraph">The program will be open to IT, cybersecurity, and cyber-related functions. The OPM will be charged with developing policies, processes, and procedures for detailing employees among rotational positions.</p>



<p class="wp-block-paragraph">Therefore, it behooves IT and security leaders to make a case for their agencies’ participation and eligibility for the program sooner rather than later.</p>



<p class="wp-block-paragraph"><b>Address the Soft Skills Gap</b></p>



<p class="wp-block-paragraph">Today’s cybersecurity professionals have a broad range of responsibilities. In addition to technical ability, they’re often called on to display nontechnical skills. For instance, they may be required to make a business case for IT investments, resource allocation, and new risk reduction strategies. They must also collaborate and share best practices within the federal government and industry.</p>



<p class="wp-block-paragraph">Unfortunately, these “soft” or “people” skills are rarely sought or fostered within the federal cybersecurity workforce. As agencies enter a new paradigm of cyber risk, they must do everything they can to address this gap and ensure employees have the soft skills to adapt quickly and easily to the future of cybersecurity and succeed in a federal career. Indeed, strengthening and empowering the high-tech federal workforce is a key goal of the Biden administration’s management agenda.</p>



<p class="wp-block-paragraph">For instance, strong communication skills are essential to ensuring teams understand the criticality of a project. Each stakeholder must appreciate the technical goals of any cybersecurity initiative and how it relates to the agency’s mission and convey all this in nontechnical terms (i.e., speak “the language of the business”). This is especially important if a project impacts many staffers and cyber professionals are called on to gain broader buy-in from the rest of the agency.</p>



<p class="wp-block-paragraph">Collaboration is also vital. No agency works in a vacuum, and different groups must work together to share intelligence and accelerate efforts to lock their digital doors.</p>



<p class="wp-block-paragraph">Adaptability is another crucial soft skill. Change is constant in today’s world, and the pressures on federal cyber pros have been unrelenting over the past few years. After successfully helping the federal government pivot to ensure secure remote work policies, many are hoping for a return to normal. But once again, society is at an inflection point, and there’s no room for overconfidence or security apathy.</p>



<p class="wp-block-paragraph">The ability to function in this ever-changing environment is becoming increasingly important. Federal cyber pros must be able to shift their thinking quickly and be willing to embrace—and thrive through—change.</p>



<p class="wp-block-paragraph">Communication, collaboration and adaptability will take on new significance with the recent implementation of the Federal Rotational Cyber Workforce Program Act. As such, IT and security leaders must revisit their job requirements (even for the most technical staffers) and prioritize skills development with strategic training opportunities capable of bringing value to the organization and the workforce—and time is of the essence.</p>



<p class="wp-block-paragraph"><i>Brandon Shopp is Group Vice President, Product Strategy, at SolarWinds, a supplier of network and systems management software.</i></p>
]]></content:encoded>
	</item>
		<item>
		<title>DHS announces creation of new cybersecurity review board</title>
		<link>https://www.federaltimes.com/cyber/2022/02/04/dhs-announces-creation-of-new-cybersecurity-review-board/</link>
					<comments>https://www.federaltimes.com/cyber/2022/02/04/dhs-announces-creation-of-new-cybersecurity-review-board/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Fri, 04 Feb 2022 19:20:58 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[The new board is modeled after the National Transportation Safety Board, which reviews plane crashes and other major accidents, and was mandated by an executive order President Joe Biden signed last May.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/cyber/2022/02/04/dhs-announces-creation-of-new-cybersecurity-review-board/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">23544</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-461493898.jpg.jpg" width="1200" height="822" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-461493898.jpg.jpg" width="1200" height="822" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The Department of Homeland Security announced Thursday the creation of a new Cyber Safety Review Board that will have public and private sector experts examine significant hacking incidents and recommend improvements.</p>



<p class="wp-block-paragraph">The new board is modeled after the National Transportation Safety Board, which reviews plane crashes and other major accidents, and was mandated by an executive order President Joe Biden signed last May. Some supporters of the&nbsp;<a href="https://apnews.com/article/russia-ukraine-joe-biden-technology-business-russia-6e9fe898a5cc1c241021baf386eff62e">new board have criticized&nbsp;</a>DHS for taking so long to get it up and running.</p>



<p class="wp-block-paragraph">Department of Homeland Security Secretary Alejandro Mayorkas said the board will have 15 members and will be a mix of public and private officials.</p>



<p class="wp-block-paragraph">Robert Silvers, a top DHS policy official, will be the new board’s chairman. And Heather Adkins, a senior director at Google, will be the deputy chair. New board members include officials from the FBI, NSA and Defense Department, as well as Verizon and Microsoft.</p>



<p class="wp-block-paragraph">The board’s first review will be of the log4j vulnerability, a&nbsp;<a href="https://apnews.com/article/technology-business-lifestyle-software-apple-inc-aed3cc628fc602079b100757974c8f01">flaw first made public in December</a>&nbsp;that lets internet-based attackers easily seize control of everything from industrial control systems to web servers and consumer electronics.</p>



<p class="wp-block-paragraph">Biden’s executive order directed the board to conduct its first review on the massive Russian cyber espionage campaign known as SolarWinds, but DHS said it and the White House now agree that reviewing the log4j incident is the best use of the new board’s expertise.</p>
]]></content:encoded>
	</item>
		<item>
		<title>FBI chief: Threat from China ‘more brazen’ than ever before</title>
		<link>https://www.federaltimes.com/federal-oversight/doj-fbi/2022/02/01/fbi-chief-threat-from-china-more-brazen-than-ever-before/</link>
					<comments>https://www.federaltimes.com/federal-oversight/doj-fbi/2022/02/01/fbi-chief-threat-from-china-more-brazen-than-ever-before/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Tue, 01 Feb 2022 16:53:42 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[DOJ/FBI]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Oversight]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[The speech at the Ronald Reagan Presidential Library amounted to a stinging rebuke of the Chinese government just days before Beijing is set to occupy the global stage by hosting the Winter Olympics.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/federal-oversight/doj-fbi/2022/02/01/fbi-chief-threat-from-china-more-brazen-than-ever-before/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">11023</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP22032105394399.jpg.jpg" width="4353" height="2902" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP22032105394399.jpg.jpg" width="4353" height="2902" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The threat to the West from the Chinese government is “more brazen” and damaging than ever before, FBI Director Christopher Wray said Monday night in accusing Beijing of stealing American ideas and innovation and launching massive hacking operations.</p>



<p class="wp-block-paragraph">The speech at the Ronald Reagan Presidential Library amounted to a stinging rebuke of the Chinese government just days before Beijing is set to occupy the global stage by hosting the Winter Olympics. It made clear that even as American foreign policy remains consumed by Russia-Ukraine tensions, the U.S. continues to regard China as its biggest threat to long-term economic security.</p>



<p class="wp-block-paragraph">“When we tally up what we see in our investigations, over 2,000 of which are focused on the Chinese government trying to steal our information or technology, there’s just no country that presents a broader threat to our ideas, innovation, and economic security than China,” Wray said, according to a copy of the speech provided by the FBI.</p>



<p class="wp-block-paragraph">The bureau is opening new cases to counter Chinese intelligence operations every 12 hours or so, Wray said, with Chinese government hackers pilfering more personal and corporate data than all other countries combined.</p>



<p class="wp-block-paragraph">“The harm from the Chinese government’s economic espionage isn’t just that its companies pull ahead based on illegally gotten technology. While they pull ahead, they push our companies and workers behind,” Wray said. “That harm — company failures, job losses — has been building for a decade to the crush we feel today. It’s harm felt across the country, by workers in a whole range of industries.”</p>



<p class="wp-block-paragraph">Chinese government officials have repeatedly rejected accusations from the U.S. government, with the spokesman for the embassy in Washington saying last July that Americans have “made groundless attacks” and malicious smears about Chinese cyberattacks. The statement described China as a “staunch defender of cybersecurity.”</p>



<p class="wp-block-paragraph">The threat from China is hardly new, but it has also not abated over the last decade.</p>



<p class="wp-block-paragraph">“I’ve spoken a lot about this threat since I became director” in 2017, Wray said. “But I want to focus on it here tonight because it’s reached a new level — more brazen, more damaging, than ever before, and it’s vital — vital — that all of us focus on that threat together.”</p>



<p class="wp-block-paragraph">The Justice Department in 2014 indicted five Chinese military officers on charges of hacking into major American corporations. One year later, the U.S. and China announced a deal at the White House to not steal each other’s intellectual property or trade secrets for commercial gain.</p>



<p class="wp-block-paragraph">In the years since, though, the U.S. has continued to level accusations against China related to hacking and espionage. It’s&nbsp;<a href="https://apnews.com/article/technology-7aa7a893d0dc15da21a5920ab7d9f221">charged Chinese hackers with targeting firms</a>&nbsp;developing vaccines for the coronavirus and with launching&nbsp;<a href="https://apnews.com/article/microsoft-exchange-hack-biden-china-d533f5361cbc3374fdea58d3fb059f35">a massive digital attack of Microsoft Exchange email server software,</a>&nbsp;and also blacklisted a broad array of Chinese companies.</p>



<p class="wp-block-paragraph">In his speech, Wray highlighted as an example the case of a Chinese intelligence officer who was convicted last November of economic espionage for targeting an advanced engine by GE that Chinese state-owned enterprises were working to copy.</p>



<p class="wp-block-paragraph">But there have also been some setbacks. Though the FBI director mentioned Monday night that the bureau was working to protect academic research and innovation at American colleges and universities, he did not discuss the much-criticized China Initiative.</p>



<p class="wp-block-paragraph">That Justice Department effort was created in 2018 to counter economic espionage and to protect against research theft, but critics have accused investigators of scrutinizing researchers and professors on the basis of ethnicity and of chilling academic collaboration. Earlier this month,&nbsp;<a href="https://apnews.com/article/science-technology-massachusetts-boston-massachusetts-institute-of-technology-c12c84da32fecc07c3e26ad0276a585e">prosecutors dropped a fraud case against a Massachusetts Institute of Technology professor</a>, saying they could no longer meet their burden of proof.</p>



<p class="wp-block-paragraph">The department is in the process of reviewing the fate of the China Initiative, and expects to announce the results soon.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Cyberattacks increasingly hobble pandemic-weary US schools</title>
		<link>https://www.federaltimes.com/cyber/2022/01/31/cyberattacks-increasingly-hobble-pandemic-weary-us-schools/</link>
					<comments>https://www.federaltimes.com/cyber/2022/01/31/cyberattacks-increasingly-hobble-pandemic-weary-us-schools/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Mon, 31 Jan 2022 16:16:30 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[IT & Networks]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[Public school systems – which often have limited budgets and cybersecurity expertise -- have become an inviting target for ransomware gangs.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/cyber/2022/01/31/cyberattacks-increasingly-hobble-pandemic-weary-us-schools/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">22082</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP22025649441479.jpg.jpg" width="5760" height="3840" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP22025649441479.jpg.jpg" width="5760" height="3840" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">For teachers at a middle school in New Mexico’s largest city, the first inkling of a widespread tech problem came during an early morning staff call.</p>



<p class="wp-block-paragraph">On the video, there were shout-outs for a new custodian for his hard work, and the typical announcements from administrators and the union rep. But in the chat, there were hints of a looming crisis. Nobody could open attendance records, and everyone was locked out of class rosters and grades.</p>



<p class="wp-block-paragraph">Albuquerque administrators later confirmed the outage that blocked access to the district’s student database — which also includes emergency contacts and lists of which adults are authorized to pick up which children — was due to a ransomware attack.</p>



<p class="wp-block-paragraph">“I didn’t realize how important it was until I couldn’t use it,” said Sarah Hager, a Cleveland Middle School art teacher.</p>



<p class="wp-block-paragraph">Cyberattacks like the one that canceled classes for two days in Albuquerque’s biggest school district have become a growing threat to U.S. schools, with several high-profile incidents reported since last year. And the coronavirus pandemic has compounded their effects: More money has been demanded, and more schools have had to shut down as they scramble to recover data or even manually wipe all laptops.</p>



<p class="wp-block-paragraph">“Pretty much any way that you cut it, incidents have both been growing more frequent and more significant,” said Doug Levin, director of the K12 Security Information Exchange, a Virginia-based nonprofit that helps schools defend against cybersecurity risk.</p>



<p class="wp-block-paragraph">Precise data is hard to come by since most schools are not required to publicly report cyberattacks. But experts say public school systems — which often have limited budgets for cybersecurity expertise — have become an inviting target for ransomware gangs.</p>



<p class="wp-block-paragraph">The pandemic also has forced schools to turn increasingly toward virtual learning, making them more dependent on technology and more vulnerable to cyber-extortion. School systems that have had instruction disrupted include those in&nbsp;<a href="https://apnews.com/article/technology-maryland-coronavirus-pandemic-baltimore-9a16e3def4c99ce4845ffdf3620362a1">Baltimore County</a>&nbsp;and&nbsp;<a href="https://apnews.com/article/virus-outbreak-technology-hacking-us-news-fl-state-wire-aa598b14894f895c4c446d2dce0162a8">Miami-Dade County,&nbsp;</a>along with districts in New Jersey, Wisconsin and elsewhere.</p>



<p class="wp-block-paragraph">Levin’s group has tracked well over 1,200 cyber security incidents since 2016 at public school districts across the country. They included 209 ransomware attacks, when hackers lock data up and charge to unlock it; 53 “denial of service” attacks, where attackers sabotage or slow a network by faking server requests; 156 “Zoombombing” incidents, where an unauthorized person intrudes on a video call; and more than 110 phishing attacks, where a deceptive message tricks a user to let a hacker into their network.</p>



<p class="wp-block-paragraph">Recent attacks also come as schools grapple with multiple other challenges related to the pandemic. Teachers get sick, and there aren’t substitutes to cover them. Where there are strict virus testing protocols, there aren’t always tests or people to give them.</p>



<p class="wp-block-paragraph">In New York City, an attack this month on third-party software vendor Illuminate Education didn’t result in canceled classes, but teachers across the city couldn’t access grades.&nbsp;<a href="https://nypost.com/2022/01/15/nyc-schools-crippled-by-illuminate-educations-data-outage/">Local media reported</a>&nbsp;the outage added to stress for educators already juggling instruction with enforcing COVID-19 protocols and covering for colleagues who were sick or in quarantine.</p>



<p class="wp-block-paragraph">Albuquerque Superintendent Scott Elder said getting all students and staff online during the pandemic created additional avenues for hackers to access the district’s system. He cited that as a factor in the Jan. 12 ransomware attack that canceled classes for some 75,000 students.</p>



<p class="wp-block-paragraph">The cancellations — which Elder called “cyber snow days” — gave technicians a five-day window to reset the databases over a holiday weekend.</p>



<p class="wp-block-paragraph">Elder said there’s no evidence student information was obtained by hackers. He declined to say whether the district paid a ransom but noted there would be a “public process” if it did.</p>



<p class="wp-block-paragraph">Hager, the art teacher, said the cyberattack increased stress on campus in ways that parents didn’t see.</p>



<p class="wp-block-paragraph">Fire drills were canceled because fire alarms didn’t work. Intercoms stopped working.</p>



<p class="wp-block-paragraph">Nurses couldn’t find which kids were where as positive test results came in, Hager said. “So potentially there were students on campus that probably were sick.” It also appears the hack permanently wiped out a few days worth of attendance records and grades.</p>



<p class="wp-block-paragraph">Edupoint, the vendor for Albuquerque’s student information database, called Synergy, declined to comment.</p>



<p class="wp-block-paragraph">Many schools choose to keep attacks under wraps or release minimal information to prevent revealing additional weaknesses in their security systems.</p>



<p class="wp-block-paragraph">“It’s very difficult for the school districts to learn from each other, because they’re really not supposed to talk to each other about it because you might share vulnerabilities,” Elder said.</p>



<p class="wp-block-paragraph">Last year, the FBI issued a warning about a group called PYSA, or “Protect Your System, Amigo,” saying it was seeing an increase in attacks by the group on schools, colleges and seminaries. Other ransomware gangs include Conti, which last year demanded $40 million from Broward County Public Schools, one of the nation’s largest.</p>



<p class="wp-block-paragraph">Most are Russian-speaking groups that are based in Eastern Europe and enjoy safe harbor from tolerant governments. Some will post files on the dark web, including highly sensitive information, if they don’t get paid.</p>



<p class="wp-block-paragraph">While attacks on larger districts garner more headlines, ransomware gangs tended to target smaller school districts in 2021 than in 2020, according to Brett Callow, a threat analyst at the firm Emsisoft. He said that could indicate bigger districts are increasing their spending on cybersecurity while smaller districts, which have less money, remain more vulnerable.</p>



<p class="wp-block-paragraph">A few days after Christmas, the 1,285-student district of Truth or Consequences, south of Albuquerque, also had its Synergy student information system shut down by a ransomware attack. Officials there compared it to having their house robbed.</p>



<p class="wp-block-paragraph">“It’s just that feeling of helplessness, of confusion as to why somebody would do something like this because at the end of the day, it’s taking away from our kids. And to me that’s just a disgusting way to try to, to get money,” Superintendent Channell Segura said.</p>



<p class="wp-block-paragraph">The school didn’t have to cancel classes because the attack happened on break, but the network remains down, including keyless entry locks on school building doors. Teachers are still carrying around the physical keys they had to track down at the start of the year, Segura said.</p>



<p class="wp-block-paragraph">In October, President Joe Biden signed the K-12 Cybersecurity Act, which calls for the federal cyber security agency to make recommendations about how to help school systems better protect themselves.</p>



<p class="wp-block-paragraph">New Mexico lawmakers have been slow to expand internet usage in the state, let alone support schools on cyber security. Last week, state representatives introduced a bill that would allocate $45 million to the state education department to build a cybersecurity program by 2027.</p>



<p class="wp-block-paragraph">Ideas on how to prevent future hacks and recover from existing ones usually require more work from teachers.</p>



<p class="wp-block-paragraph">In the days following the Albuquerque attack, parents argued on Facebook over why schools couldn’t simply switch to pen and paper for things like attendance and grades.</p>



<p class="wp-block-paragraph">Hager said she even heard the criticism from her mother, a retired school teacher.</p>



<p class="wp-block-paragraph">“I said, ‘Mom, you can only take attendance on paper if you have printed out your roster to begin with,’” Hager said.</p>



<p class="wp-block-paragraph">Teachers could also keep duplicate paper copies of all records — but that would double the clerical work that already bogs them down.</p>



<p class="wp-block-paragraph">In an era where administrators increasingly require teachers to record everything digitally, Hager says, “these systems should work.”</p>



<p class="wp-block-paragraph"><i>Associated Press writers Michael Melia in Hartford, Connecticut, and Alan Suderman in Richmond, Virginia, contributed to this report.</i></p>



<p class="wp-block-paragraph"><i>Attanasio is a corps member for the Associated Press/Report for America Statehouse News Initiative.&nbsp;</i><a href="https://www.reportforamerica.org/"><i>Report for America</i></a><i>&nbsp;is a nonprofit national service program that places journalists in local newsrooms to report on under-covered issues. Follow Attanasio on&nbsp;</i><a href="https://twitter.com/viaCedar"><i>Twitter</i></a><i>.</i></p>
]]></content:encoded>
	</item>
		<item>
		<title>Four agencies warn banks and customers of COVID-19 scams</title>
		<link>https://www.federaltimes.com/cyber/2020/05/21/four-agencies-warn-banks-and-customers-of-covid-19-scams/</link>
					<comments>https://www.federaltimes.com/cyber/2020/05/21/four-agencies-warn-banks-and-customers-of-covid-19-scams/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Thu, 21 May 2020 16:59:09 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<guid isPermaLink="false"></guid>

					<description><![CDATA[Criminals are using COVID-19 lures to trick banks and customers into providing personal and financial information.]]></description>
		
					<wfw:commentRss>https://www.federaltimes.com/cyber/2020/05/21/four-agencies-warn-banks-and-customers-of-covid-19-scams/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">20913</post-id><media:thumbnail url="https://one.sightlinemg.com/wp-content/uploads/2026/08/bankcovid.jpg.jpg" width="3770" height="2582" type="image/jpeg" />
<media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/bankcovid.jpg.jpg" width="3770" height="2582" type="image/jpeg" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Four federal agencies issued a joint alert May 21 warning that cybercriminals and other adversaries are using coronavirus-related lures to scam taxpayers and attempt to disrupt operations of institutions responding to the ongoing pandemic.</p>



<p class="wp-block-paragraph">The alert, sent out by the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency, the Internal Revenue Service, the Department of the Treasury, and the U.S. Secret Service, said the federal government “continues to encounter” attempts by cybercriminals to steal personal or banking information using coronavirus-related lures through email or text.</p>



<p class="wp-block-paragraph">The joint alert warns that “at a minimum” criminals will use phishing emails or scam websites exploiting the CARES Act — a $2 trillion aid package that provided direct financial relief to taxpayers and businesses — to trick financial institutions and their customers into providing private information.</p>



<p class="wp-block-paragraph">“Themes for these scams might include economic stimulus, personal checks, loan and grant programs, or other subjects relevant to the CARES Act,” the alert read. “These CARES Act-related cybercriminal attempts could support a wide range of follow-on activities that would be harmful to the rollout of the CARES Act.”</p>



<p class="wp-block-paragraph">The CARES Act sent $1,200 nontaxable payments to millions of taxpayers and provided billions of dollars in loans to small businesses.</p>



<p class="wp-block-paragraph">The four agencies also warned of adversaries and criminals attempting to disrupt the operations of organizations implementing parts of the CARES Act. To combat the threat, the agencies recommend that government agencies and financial institutions initiate a “comprehensive security review” of critical systems.</p>



<p class="wp-block-paragraph">According to the alert, the federal government and international partners have increased sharing threat intelligence and best practices with industry in response to the virus-related threats. The Secret Service is investigating malicious actors and will try to recover funds that are stolen as a result of their activity, it said.</p>



<p class="wp-block-paragraph">“These investigations will include actions over the near term, but also in the coming months and years to hold criminals accountable and recover assets,” the alert read.</p>



<p class="wp-block-paragraph">CISA, the federal agency under the DHS tasked with protecting critical infrastructure and federal networks from cyberattacks, has issued several alerts in recent weeks during the COVID-19 pandemic. In an April alert, <a href="https://www.fifthdomain.com/civilian/dhs/2020/04/08/dhs-cybersecurity-agency-warns-of-covid-19-phishing-attacks/" target="_blank">CISA and the National Cyber Security Centre in the United Kingdom</a> sent an alert warning of coronavirus-related phishing attempts.</p>



<p class="wp-block-paragraph">In early May, CISA and the NCSC again issued a <a href="https://www.fifthdomain.com/coronavirus/2020/05/05/dhs-uk-cybersecurity-agencies-reveal-large-scale-password-spraying-campaigns/" target="_blank">joint alert warning of “large-scale” malicious password-spraying campaigns</a> targeting health care organizations and medical research groups.</p>
]]></content:encoded>
	</item>
	</channel>
</rss>
