Senators ask Trump administration how badly shutdown hurt federal cybersecurity

After former U.S. officials raised concerns that the longest government shutdown in history had weakened federal cybersecurity, lawmakers are asking the Trump administration how bad the damage is. “We are concerned that these circumstances have left our government and citizens vulnerable to cyberattacks,” five Democratic senators wrote in a letter Tuesday to Homeland Security Secretary Kirstjen Nielsen and Gen. Paul Nakasone, head of the National Security Agency and U.S. Cyber Command. The senators – Minnesota’s Amy Klobuchar, Massachusetts’ Ed Markey, New Mexico’s Tom Udall, Nevada’s Catherine Cortez Masto, and New Jersey’s Cory Booker – want to know how agencies are preparing to harden their networks for a future shutdown, citing past experience as a cautionary tale. During the 2013 government shutdown, the senators wrote, Chinese hackers compromised the Federal Election Commission’s computer network, crashing sensitive computer systems that disclose billions of dollars in spending each election cycle. “Shutdowns have severe […]

The post Senators ask Trump administration how badly shutdown hurt federal cybersecurity appeared first on CyberScoop.

Continue reading Senators ask Trump administration how badly shutdown hurt federal cybersecurity

The Lack of US Privacy Regulations, Nest Camera’s Hijacked – WB53

Watch this episode on our YouTube Channel! This is your Shared Security Weekly Blaze for January 28th 2019 with your host, Tom Eston. In this week’s episode: Where are the US federal privacy regulations and details on Nest camera’s being hi… Continue reading The Lack of US Privacy Regulations, Nest Camera’s Hijacked – WB53

Rep. Langevin: We need a DHS briefing to understand extent of DNS hijacking threat

A key House Democrat wants the Department of Homeland Security to brief lawmakers “as soon as possible” on a new domain name system hacking threat to federal computer networks, and the emergency order the department issued in response. DHS should brief members of the House Homeland Security Committee on the cyberthreat because “we need to understand the scope of this action and how many agencies were actually affected,” Rep. Jim Langevin, D-R.I., said in an interview Wednesday. Langevin was reacting to a rare emergency directive that DHS issued Tuesday ordering civilian agencies to tighten security controls in the face of a suspected Iranian hacking campaign. DHS issued the order out of concern that civilian agencies could be vulnerable to cyberattacks on platforms for managing domain name system (DNS) records, which help ensure that a computer user reaches an intended website. By manipulating DNS records, hackers could direct unwitting users to malicious websites. At least […]

The post Rep. Langevin: We need a DHS briefing to understand extent of DNS hijacking threat appeared first on CyberScoop.

Continue reading Rep. Langevin: We need a DHS briefing to understand extent of DNS hijacking threat

Senators worry that new D.C. Metro railcars could carry cyber risk

Senators who represent the Washington, D.C., area have raised concerns about added cybersecurity risks in the region’s Metro system after reports that a Chinese state-owned manufacturing company could win a $1 billion procurement for railcars. The four Democrats – Sens. Mark Warner and Tim Kaine of Virginia, and Ben Cardin and Chris Van Hollen of Maryland – wrote to the Washington Metropolitan Area Transit Authority expressing their “serious concerns” of possible foreign bidding on the project, “particularly when it could involve foreign governments that have explicitly sought to undermine our country’s economic competitiveness and national security.” The Jan. 18 letter to WMATA CEO Paul J. Wiedefeld, the lawmakers exhorted him to “take the necessary steps to mitigate growing cyber risks to these cars.” The worry is that technology in the transit system, including video surveillance cameras and the automated aspects of railcars, could be a target of spies or hackers. The state-owned China Railway […]

The post Senators worry that new D.C. Metro railcars could carry cyber risk appeared first on CyberScoop.

Continue reading Senators worry that new D.C. Metro railcars could carry cyber risk

Lawmakers ask DHS to take action on pipeline cybersecurity

The top Democrats on the House and Senate energy committees have urged the Department of Homeland Security to assess cyber and physical protections for natural gas and oil pipelines following an audit that criticized the department’s approach to the issue. “The results of this assessment will help policymakers evaluate the security of our nation’s energy assets,” Sen. Maria Cantwell, D-Wash., and Rep. Frank Pallone, Jr., D-N.J. wrote to Homeland Security Secretary Kirstjen Nielsen on Wednesday. Operators of the nation’s 2.7 million miles of pipelines for oil, natural gas, and other hazardous liquids have grappled with cybersecurity risk as their infrastructure becomes more digitized. Those pipelines are a natural target for nation-state hackers, a Federal Energy Regulatory Commission official said in August, according E&E News. Cantwell and Pallone, Jr., said much more needs to be done to counter the threat. They were reacting to a Government Accountability Office audit that found […]

The post Lawmakers ask DHS to take action on pipeline cybersecurity appeared first on CyberScoop.

Continue reading Lawmakers ask DHS to take action on pipeline cybersecurity

As China tensions mount, U.S. officials outline efforts to combat economic espionage

In congressional testimony Wednesday, U.S. officials described the vast scope of alleged Chinese theft of American intellectual property and outlined ongoing efforts to counter such threats amid a dispute with Beijing. From 2011 to 2018, more than 90 percent of Justice Department cases claiming economic espionage by a state or for its benefit involved China, Assistant Attorney General John Demers said at a Senate Judiciary Committee hearing. “The [Chinese] playbook is simple: rob, replicate, and replace,” Demers said, describing Beijing’s alleged efforts to build technology-rich companies through stolen American know-how. China is “the most severe counterintelligence threat facing our country today,” said Bill Priestap, assistant director of the FBI’s Counterintelligence Division. The hearing comes at a fraught time for U.S.-China relations on technology, trade, and cybersecurity issues. Secretary of State Mike Pompeo alleged during an interview Wednesday with Fox News that China is responsible for a data breach at Marriott that exposed personal […]

The post As China tensions mount, U.S. officials outline efforts to combat economic espionage appeared first on CyberScoop.

Continue reading As China tensions mount, U.S. officials outline efforts to combat economic espionage

Google’s Own Email Filters Flag Google’s Party Invite as Malicious

A cybersecurity reporter says his own Google-provided email app flagged an email about a Google party because it included content “typically used to steal personal information.” Continue reading Google’s Own Email Filters Flag Google’s Party Invite as Malicious