Policy & Regulation: Page 17


  • Image attribution tooltip
    Courtesy of Colonial Pipeline Company
    Image attribution tooltip

    TSA revises cybersecurity requirements for oil and gas pipelines

    The agency released performance-based requirements after extensive industry debate following the May 2021 Colonial Pipeline ransomware attack.

    By July 22, 2022
  • The California state flag waves in the wind.
    Image attribution tooltip
    Stock Photo via Getty Images
    Image attribution tooltip

    California privacy rules target dark patterns through technology design

    California Privacy Rights Act provisions that will go into effect in January will provide more control to consumers over how companies use their data. 

    By Robert Freedman • July 21, 2022
  • A person standing at a podium speaking before a group of people in a room with an ornate floor.
    Image attribution tooltip
    Retrieved from Jen Easterly/CISA.
    Image attribution tooltip

    White House takes on cyber workforce gap through 120-day apprenticeship sprint

    A cyber workforce and education summit at the White House Tuesday was designed to address the long-standing shortage of qualified and diverse candidates for security operations teams. 

    By July 20, 2022
  • Google logo displayed outside the company's New York City office.
    Image attribution tooltip
    Drew Angerer via Getty Images
    Image attribution tooltip

    Google deal to buy Mandiant clears key antitrust hurdle

    The Department of Justice cleared the deal last week, but the $5.4 billion agreement remains subject to approval by foreign regulators.

    By July 19, 2022
  • Huawei logo depicted on side of building at company's campus in Dongguan, China.
    Image attribution tooltip
    Kevin Frayer via Getty Images
    Image attribution tooltip

    US effort to rip and replace hardware made in China is ballooning in cost

    A yearslong push to remove telecom equipment deemed a national security threat continues to vex regulators.

    By July 18, 2022
  • CISA, cybersecurity, agency
    Image attribution tooltip
    Photo illustration by Danielle Ternes/Cybersecurity Dive; photograph by yucelyilmaz via Getty Images
    Image attribution tooltip

    CISA eyes cross-pond cyber cooperation with London office

    Federal agencies have worked closely with allies to combat malicious cyber activity and illicit use of cryptocurrency.

    By July 18, 2022
  • Secretary of State Antony Blinken speaks alongside President Joe Biden.
    Image attribution tooltip
    Mark Makela/Getty Images via Getty Images
    Image attribution tooltip

    The US is losing the cyberspace race

    Decades-old policies have failed to stem a growing threat, the Council of Foreign Relations said. What if the U.S. embraced a more limited and realistic strategy?

    By July 15, 2022
  • The U.S. Capitol Building at night with lightning in the background.
    Image attribution tooltip
    Naomi Eide/Cybersecurity Dive
    Image attribution tooltip

    Log4j is far from over, cyber review board says

    Exploitation of Log4j occurred at lower levels than experts predicted, yet it remains an "endemic vulnerability," the Cyber Safety Review Board said.

    By Naomi Eide • July 14, 2022
  • A person works next to a 5G logo.
    Image attribution tooltip
    David Ramos/Getty Images via Getty Images
    Image attribution tooltip

    What to watch with 5G network security

    For wireless network carriers, 5G is a model of what’s next. But it also introduces features and services that dramatically expand the threat surface.

    By July 8, 2022
  • Federal Trade Commission
    Image attribution tooltip
    Carol Highsmith. (2005). "The Apex Building" [Photo]. Retrieved from Wikimedia Commons.
    Image attribution tooltip

    Lawmakers amplify calls for federal agencies to increase data privacy after Dobbs decision

    Seventy-two Democratic members of Congress want the FTC to use its full power to guard patients from data brokers collecting and selling data that could be used to prosecute pregnancy-related crimes.

    By Rebecca Pifer • July 7, 2022
  • Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    Cash-strapped Main Street organizations face global cyberthreats

    A House subcommittee hearing in Michigan helped show the persistent risks faced by local schools, government agencies and Main Street businesses.

    By June 29, 2022
  • Carnival, Cruise, Privacy, violatons
    Image attribution tooltip
    Courtesy of Carnival Corp.
    Image attribution tooltip

    Carnival to pay $5M for cyber violations to NY financial regulator

    The cruise line failed to implement multifactor authentication and took 10 months to report the first of four data incidents.

    By June 27, 2022
  • High voltage towers in the dusk of the evening
    Image attribution tooltip
    yangphoto via Getty Images
    Image attribution tooltip

    Department of Energy rethinks cyber resilience in strategy to secure the grid

    The agency wants to help the energy sector incorporate more cybersecurity safeguards during the design phase and better withstand attacks. 

    By June 23, 2022
  • An aerial view on a sunny morning of several of San Francisco's most well known architectural landmarks. A backdrop of the skyscrapers and Bay Bridge behind them.
    Image attribution tooltip
    DianeBentleyRaymond via Getty Images
    Image attribution tooltip

    5 takeaways from the RSA Conference

    The event tried to pick up where it left off 28 months ago. Can defenders keep up with the accelerated pace and scale of the cyber threat?

    By June 13, 2022
  • CISA Director Jen Easterly, RSA Conference 2022
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    America's cyber chiefs have a long to-do list

    The federal government wants to lead by example and communicate the urgency of the moment. First, it needs to get its security affairs in order. 

    By June 9, 2022
  • FBI Director Christopher Ray speaking at the annual Boston Conference on Cyber Security
    Image attribution tooltip

    Lee Pellegrini, Boston College

    Image attribution tooltip

    Russia, backed by ransomware gangs, actively targeting US, FBI director says

    The FBI is laser focused on preventing a destructive attack, FBI Director Christopher Wray said. The agency previously, helped to disrupt a 2021 Iran-backed attack on Boston Children’s Hospital. 

    By June 2, 2022
  • Image attribution tooltip
    Kevin Dietsch via Getty Images
    Image attribution tooltip

    Feds remain in the dark as ransomware disclosure lags

    The government's lack of ransomware data makes it more difficult to prevent, mitigate and recover from attacks, said Sen. Gary Peters, D-MI.

    By May 25, 2022
  • close up programmer man hand typing on keyboard laptop for register data system or access password at dark operation room , cyber security concept - stock photo
    Image attribution tooltip
    Chainarong Prasertthai via Getty Images
    Image attribution tooltip

    Feds release grim reminder: Threat actors prey on basic security mishaps

    Federal authorities and U.S. allies admonished companies to tighten weak controls and configurations.

    By May 20, 2022
  • The United States Capitol in February 2020
    Image attribution tooltip
    Megan Quinn/Cybersecurity Dive
    Image attribution tooltip

    Biden administration makes inroads amid zero trust rollout

    More than 50 federal agencies expect to have EDR technology by the end of fiscal year.

    By May 19, 2022
  • Image attribution tooltip
    Sean Rayford / Stringer via Getty Images
    Image attribution tooltip

    How the Colonial Pipeline attack instilled urgency in cybersecurity

    The federal government and private sector are still coming to terms with how to protect operational technology in an increasingly volatile threat environment.

    By May 17, 2022
  • Securities and Exchange Commission, SEC, Building in Washington DC
    Image attribution tooltip
    qingwa via Getty Images
    Image attribution tooltip

    Companies need to align cyber and disclosure efforts: SEC attorney

    The SEC aims to protect investors from cyber-related risks by cracking down on companies that release misleading disclosures about cyberattacks. 

    By Jim Tyson • May 13, 2022
  • Aerial view of the city of Washington DC including the Capitol, the Washington Monument, the National Mall and the Lincoln Memorial at the blue hour
    Image attribution tooltip
    Amy Sparwasser/ iStock via Getty Images
    Image attribution tooltip

    Tech giants pledge multimillion down payment to secure open source

    Top technology companies offered $30 million toward a two-year goal to bolster software supply chain security.

    By May 13, 2022
  • Image attribution tooltip
    Alex Wong via Getty Images
    Image attribution tooltip

    White House cyber executive order still has unfinished business

    The Biden administration is up against key hurdles in its effort to raise software security standards and establish zero trust across federal agencies.

    By May 12, 2022
  • Image attribution tooltip
    Anastasia Vlasova via Getty Images
    Image attribution tooltip

    US, allies blame Russia for Viasat cyberattack

    The Five Eyes and other EU authorities linked Russia to a series of web defacement, DDoS and destructive wiper attacks in the weeks leading up to the Ukraine invasion.

    By May 11, 2022
  • US Capitol
    Image attribution tooltip
    Retrieved from GPA Photo Archive.
    Image attribution tooltip

    Vet software security as part of enterprise procurement, NIST says

    The guidance, an answer to last year's executive order, examines where and when potential supply chain vulnerabilities can surface.

    By May 9, 2022