Cyber Security News

New bill strips Facebook, Twitter of Section 230 immunity for spreading vaccine falsehoods Senators target algorithmic curation to limit spread
Incel's Dream Of 'Slaughtering' Women Dashed After Cops Find His Manifesto And Machine Gun Tres Genco hoped to kill 3,000
A priest’s phone location data outed his private life. It could happen to anyone. How an unregulated market for personal
China's new software policy weaponizes cybersecurity research China’s new policies would allow its hacking teams to free ride on cybersecurity
Following SolarWinds & Colonial Hacks, Leading National Security Senators Introduce Bipartisan Cyber Reporting Bill WASHINGTON — U.S. Sen. Mark R.
U.S. announces new cybersecurity requirements for critical pipeline owners The Department of Homeland Security warned of "urgently needed protections" on
Apple's iPhone has a 'major blinking red five-alarm-fire problem with iMessage security,' according to a cybersecurity researcher An iMessages security
U.S., allies accuse China of hacking Microsoft and condoning other cyberattacks The condemnation stops short, however, of punishing China for
Israel and Morocco Sign Agreement to Promote Bilateral Cybersecurity Efforts Israel and Morocco Sign Agreement to Promote Bilateral Cybersecurity Efforts
Reporters Reveal 'Ugly Truth' Of How Facebook Enables Hate Groups And Disinformation In a new book, Cecilia Kang and Sheera

Cyber Security News

Why track cyber security news? Cyber security is a world unto itself. It’s a profession, an IT discipline and now a major industry. Companies, consumers and governments are spending billions of dollars a year on cyber security. Security also pervades many areas of life that have little to do, seemingly, with cyberspace. Thus, to keep up with the world in general, it’s helpful to stay aware of news that relates to cyber security.

For example, the dispute between the US government and Huawei is at once about international trade, national security, telecom industry competition… and cybersecurity. Security is a root issue with Huawei, given the suspicions about the company’s connections to the Chinese Communist Party (CCP). However, the company’s size, reach and technological innovation push the matter to the forefront of US-China relations.

cyber security newsOr, take consumer cyber risks. We cover cyber security news that deals with consumers’ exposure to cybercrime and fraud. Consumers are increasingly at risk for identity theft, credit card and other malfeasance at the hands of cyber criminals. The articles we curate on this subject come from law enforcement publications, mainstream media and specialized blogs.

Public policy is now being influenced (or should be) by cyber security news. Policy makers should be aware of how cyber security affect their jobs and constituents’ lives. For instance, the “smart city” is both an innovation and a threat. Using IoT sensors and advanced data analytics to improve municipal services is a great idea. However, the smart city also exposes government data to breach.

This is particularly urgent given the relatively insecure technologies (e.g. Chinese-made sensors) used for the smart city and the wireless connectivity that make it all possible. Add malicious nation-state actors to the mix, such as the ones currently paralyzing American cities with ransomware, and one can see the potential danger.

 

New bill strips Facebook, Twitter of Section 230 immunity for spreading vaccine falsehoods

New bill strips Facebook, Twitter of Section 230 immunity for spreading vaccine falsehoods

Senators target algorithmic curation to limit spread of health misinformation.

New bill strips Facebook, Twitter of Section 230 immunity for spreading vaccine falsehoods

Incel’s Dream Of ‘Slaughtering’ Women Dashed After Cops Find His Manifesto And Machine Gun

Incel’s Dream Of ‘Slaughtering’ Women Dashed After Cops Find His Manifesto And Machine Gun

Tres Genco hoped to kill 3,000 students at an Ohio university.

Incel’s Dream Of ‘Slaughtering’ Women Dashed After Cops Find His Manifesto And Machine Gun

A priest’s phone location data outed his private life. It could happen to anyone.

A priest’s phone location data outed his private life. It could happen to anyone.

How an unregulated market for personal data is legal, and what it means for your own data.

A priest’s phone location data outed his private life. It could happen to anyone.

China’s new software policy weaponizes cybersecurity research

China’s new software policy weaponizes cybersecurity research

China’s new policies would allow its hacking teams to free ride on cybersecurity research conducted outside its borders, turning defensive research into offensive capabilities.

China’s new software policy weaponizes cybersecurity research

Following SolarWinds & Colonial Hacks, Leading National Security Senators Introduce Bipartisan Cyber Reporting Bill

Following SolarWinds & Colonial Hacks, Leading National Security Senators Introduce Bipartisan Cyber Reporting Bill

WASHINGTON — U.S. Sen. Mark R. Warner (D-VA), Chairman of the Senate Select Committee on Intelligence, U.S. Sen. Marco Rubio (R-FL), Vice Chairman of the Committee, and U.S. Sen. Susan Collins (R-ME), a senior member of the Committee, today led several colleagues in introducing bipartisan legislation requiring federal agencies, government contractors, and critical infrastructure owners and operators to report cyber intrusions within 24 hours of their discovery. The legislation is in part a response to the hack of IT management firm SolarWinds, which resulted in the compromise of hundreds of federal agencies and private companies, and the May 2021 ransomware attack on the Colonial Pipeline, which halted pipeline operations temporarily and resulted in fuel shortages along the Atlantic seaboard of the United States, as well as a recent onslaught of ransomware attacks affecting thousands of public and private entities. Under existing law, there is currently no federal requirement that individual companies disclose when they have been breached, which experts have noted leaves the nation vulnerable to criminal and state-sponsored hacking activity. The bipartisan Cyber Incident Notification Act of 2021 would require federal government agencies, federal contractors, and critical infrastructure operators to notify the Department of Homeland Security’s (DHS) Cybersecurity and Infrastructure Security Agency (CISA) when a breach is detected so that the U.S. government can mobilize to protect critical industries across the country. To incentivize this information sharing, the bill would grant limited immunity to companies that come forward to report a breach, and instruct CISA to implement data protection procedures to anonymize personally identifiable information and safeguard privacy. “It seems like every day Americans wake up to the news of another ransomware attack or cyber intrusion. The SolarWinds breach demonstrated how broad the ripple effects of these attacks can be, affecting hundreds or even thousands of entities connected to the initial target,” said Sen. Warner. “We shouldn’t be relying on voluntary reporting to protect our critical infrastructure. We need a routine federal standard so that when vital sectors of our economy are affected by a breach, the full resources of the federal government can be mobilized to respond to and stave off its impact.” “Cyberattacks against American businesses, infrastructure, and government institutions are out of control. The U.S. government must take decisive action against cybercriminals and the state actors who harbor them. It is also critical that American organizations act immediately once an attack occurs. The longer an attack goes unreported, the more damage can be done. Ensuring prompt notification will help protect the health and safety of countless Americans and will help our government track down those responsible,” Sen. Rubio said. “Having a clear view of the dangers the nation faces from cyberattacks is necessary to prioritizing and acting to mitigate and reduce the threat,” said Sen. Collins. “My 2012 bill would have led to improved information sharing with the federal government that likely would have reduced the impact of cyber incidents on both the government and the private sector. Failure to enact a robust cyber incident notification requirement will only give our adversaries more opportunity to gather intelligence on our government, steal intellectual property from our companies, and harm our critical infrastructure. I urge my colleagues to pass the Cyber Incident Notification Act of 2021, which is common sense and long overdue.” In addition to Sens. Warner, Rubio and Collins, the legislation is co-sponsored by Senate Intelligence Committee members Sens. Dianne Feinstein (D-CA), Richard Burr (R-NC), Martin Heinrich (D-NM), James Risch (R-ID), Angus King (I-ME), Roy Blunt (R-MO), Michael Bennet (D-CO), Bob Casey (D-PA), Ben Sasse (R-NE), and Kirsten Gillibrand (D-NY), along with Sen. Joe Manchin (D-WV), Chairman of the Senate Armed Services Subcommittee on Cybersecurity, and Sen. Jon Tester (D-MT), Chairman of the Senate Appropriations Subcommittee on Defense. “After years of talk about how our nation needs a real public-private partnership for better cybersecurity, we finally have concrete and critical action — the introduction of the bipartisan Cyber Incident Notification Act of 2021. We can’t track, or have any hope of stopping, foreign or domestic sources of cyber maliciousness unless we can find out about cyber problems quickly. This bill goes a long way in starting to solve the problem,” said Glenn Gerstell, former National Security Agency (NSA) General Counsel. “It’s encouraging to see continued bipartisan Congressional recognition of CISA’s critical role as the front door for industry to engage with the U.S. government on cybersecurity,”said Chris Krebs, former Director of the Cybersecurity and Infrastructure Security Agency. “This bill significantly advances the discussion around the need for mandatory notification of significant cyber activity to provide greater common situational awareness, better defend networks, and deepen our understanding about the scale and scope of the threat,” said Suzanne Spaulding, former Department of Homeland Security Under Secretary for Cyber and Infrastructure Protection. A copy of the legislation is available here. ###

Following SolarWinds & Colonial Hacks, Leading National Security Senators Introduce Bipartisan Cyber Reporting Bill

U.S. announces new cybersecurity requirements for critical pipeline owners

U.S. announces new cybersecurity requirements for critical pipeline owners

The Department of Homeland Security warned of “urgently needed protections” on Tuesday in a new security directive for pipeline owners and operators it said it issued in response to the ongoing cybersecurity threat to pipeline systems.

U.S. announces new cybersecurity requirements for critical pipeline owners

Apple’s iPhone has a ‘major blinking red five-alarm-fire problem with iMessage security,’ according to a cybersecurity researcher

Apple’s iPhone has a ‘major blinking red five-alarm-fire problem with iMessage security,’ according to a cybersecurity researcher

An iMessages security exploit was reportedly used by an Israeli spyware firm to give hackers access to iPhones.

Apple’s iPhone has a ‘major blinking red five-alarm-fire problem with iMessage security,’ according to a cybersecurity researcher

U.S., allies accuse China of hacking Microsoft and condoning other cyberattacks

U.S., allies accuse China of hacking Microsoft and condoning other cyberattacks

The condemnation stops short, however, of punishing China for its alleged actions, exposing the challenge of confronting the world’s second largest economy by an alliance with deep business ties there.

U.S., allies accuse China of hacking Microsoft and condoning other cyberattacks

Israel and Morocco Sign Agreement to Promote Bilateral Cybersecurity Efforts

Israel and Morocco Sign Agreement to Promote Bilateral Cybersecurity Efforts

Israel and Morocco Sign Agreement to Promote Bilateral Cybersecurity Efforts

Israel’s National Cyber Directorate announced on Thursday, July 15, the signing of an agreement in Rabat between Morocco’s head of the General Directorate of Information Systems Security El Mostafa Rabii, and the Moroccan Defense Minister Abdellatif Loudiyi.

Israel and Morocco Sign Agreement to Promote Bilateral Cybersecurity Efforts

Reporters Reveal ‘Ugly Truth’ Of How Facebook Enables Hate Groups And Disinformation

Reporters Reveal ‘Ugly Truth’ Of How Facebook Enables Hate Groups And Disinformation

In a new book, Cecilia Kang and Sheera Frenkel say Facebook failed in its effort to combat disinformation. “Facebook knew the potential for explosive violence was very real [on Jan 6],” Kang says.

Reporters Reveal ‘Ugly Truth’ Of How Facebook Enables Hate Groups And Disinformation