Ivanti-linked breach of CISA potentially affected more than 100,000 individuals

A senior CISA official shared details with CyberScoop regarding the incident after the agency notified Congress about it on Friday.

The post Ivanti-linked breach of CISA potentially affected more than 100,000 individuals appeared first on CyberScoop.

Continue reading Ivanti-linked breach of CISA potentially affected more than 100,000 individuals

ID.me misled IRS on processing times for identity verification, congressional investigators found

Wait times to receive identity verification were more than double than what ID.me initially represented to the IRS.

The post ID.me misled IRS on processing times for identity verification, congressional investigators found appeared first on CyberScoop.

Continue reading ID.me misled IRS on processing times for identity verification, congressional investigators found

House panel launches probe of government contracts with identity verification company ID.me

The committee twice cited CyberScoop reporting on the firm.

The post House panel launches probe of government contracts with identity verification company ID.me appeared first on CyberScoop.

Continue reading House panel launches probe of government contracts with identity verification company ID.me

SolarWinds CEO talks hack, remaining questions before Capitol Hill hearings

The chief executive of SolarWinds on Monday said his company is still seeking a fuller understanding of the scope of the hack on its Orion software — and laying the groundwork for what SolarWinds, as well as the federal government, should be doing next. “What we are… still learning is the breadth and depth of the sophistication of the attackers, number one,” Sudhakar Ramakrishna said at a Center for Strategic and International Studies online event where he noted that the company’s investigation into what happened is ongoing. “Number two is the patience with which they carried out these attacks, and obviously the persistence,” he said, citing as an example that the hackers appeared to use earlier versions of Orion code as a test bed for their eventual attack. Ramakrishna took over as CEO weeks after news about the hack of SolarWinds’ updates to its Orion software had become public. The […]

The post SolarWinds CEO talks hack, remaining questions before Capitol Hill hearings appeared first on CyberScoop.

Continue reading SolarWinds CEO talks hack, remaining questions before Capitol Hill hearings

Misinformation flooded Parler around Capitol insurrection, research finds

The overwhelming majority of news links shared on Parler in the days surrounding the Capitol insurrection last month were filled with misinformation, according to an analysis by NewsGuard and PeakMetrics. In all, 87% of news links shared on Parler around the Jan. 6 riots contained misinformation, the analysis published Wednesday concluded.  One of the most popular sites shared across the social networking platform was a site that appeared to be an American news outlet, called American Conservatives Today, but which actually was run from North Macedonia and plagiarized stories from The Gateway Pundit. The site, which was created in December of last year, spread lies that the voting equipment maker Dominion Voting Systems was switching votes from then-President Donald Trump to then-candidate Joe Biden. Other popular misinformation-based sites that spread falsehoods on Parler included a video website linked with Alex Jones, InfoWars.com’s founder, which spread lies that Biden was interested […]

The post Misinformation flooded Parler around Capitol insurrection, research finds appeared first on CyberScoop.

Continue reading Misinformation flooded Parler around Capitol insurrection, research finds

U.S. House Oversight Committee Meeting Disrupted by Zoom-Bombers

An internal government letter revealed that Zoom-bombers had disrupted a meeting held by the U.S. House Oversight Committee. In a letter sent to Representative Carolyn B. Maloney (D-N.Y.), chairwoman of the House of Representatives’ Committee on … Continue reading U.S. House Oversight Committee Meeting Disrupted by Zoom-Bombers

Facial recognition is real-life ‘Black Mirror’ stuff, Ocasio-Cortez says

“People think they’re going to put on a cute filter and have puppy dog ears, and not realize that that data’s being collected.” Continue reading Facial recognition is real-life ‘Black Mirror’ stuff, Ocasio-Cortez says

With Will Hurd’s retirement, Congress loses a key cybersecurity advocate

When Rep. Will Hurd made news Thursday night, just as the cybersecurity community was preparing to descend on Las Vegas for a week of events, it wasn’t about Hurd’s rescinded offer to speak at the Black Hat conference. The Texas Republican announced he will not seek re-election in 2020, becoming the sixth GOP representative and the third Texan in the past 10 days to announce retirement. Hurd, a former CIA officer, had distinguished himself among lawmakers for his attention to cybersecurity issues, including a support for encryption. He was slated to deliver a keynote address at the Black Hat cybersecurity conference next week until organizers canceled his invitation following a TechCrunch article that questioned the congressman’s voting records on women’s rights issues. In a statement on his website, Hurd said that he “made the decision to not seek reelection for the 23rd Congressional District of Texas in order to pursue opportunities outside the halls […]

The post With Will Hurd’s retirement, Congress loses a key cybersecurity advocate appeared first on CyberScoop.

Continue reading With Will Hurd’s retirement, Congress loses a key cybersecurity advocate

House panel: Equifax breach was ‘entirely preventable’

The devastating 2017 breach of credit-reporting company Equifax, which exposed data on 148 million people, was “entirely preventable” had the company applied proactive security measures, a congressional investigation has concluded. “Had the company taken action to address its observable security issues prior to this cyberattack, the data breach could have been prevented,” says the report issued Monday by the House Oversight and Government Reform Committee. The committee’s 96-page report lays out why the hack, which compromised people’s names, social security numbers, addresses, credit card numbers, and other identifiers, has become a case study in failed IT leadership and software patching. A “lack of accountability and no clear lines of authority in Equifax’s IT management structure” meant key security protocols were neglected, the House panel found: Equifax allowed over 300 security certificates to expire, including 79 for monitoring “business-critical” domains. Furthermore, the company did not spot data being exfiltrated from its […]

The post House panel: Equifax breach was ‘entirely preventable’ appeared first on Cyberscoop.

Continue reading House panel: Equifax breach was ‘entirely preventable’