Tag: federal agencies
116 articles

Wyden Presses NSA on Commercial VPN Security Risks
Senator Ron Wyden is raising a red flag about the security risks of commercial VPNs, warning that they may not be as protective as users think against sophisticated online threats. He's pressing the NSA for clearer guidance on the potential dangers of relying on standard consumer VPNs for online security.

Federal Agencies Rethink Security with Continuous Authorization
Federal agencies are shaking up their security approach with continuous authorization, recognizing that a system's security can't be judged by its paperwork alone. By treating compliance as a stepping stone to mission success, agencies can deliver secure outcomes faster, without sacrificing speed for security.

Federal Agencies Shift DevSecOps from Pilots to Operational Capability
The conversation around DevSecOps in federal agencies has officially shifted from "should we?" to "how can we make it work at scale?" Agencies are now focused on turning their DevSecOps pilots into fully-fledged operational capabilities.

US Officials Disrupt Chinese Espionage Operation Targeting Federal Agencies
US officials have successfully disrupted a sophisticated Chinese espionage operation targeting federal agencies, seizing tools used by hackers to launch online attacks on our nation's critical infrastructure. This significant crackdown, made possible through court-authorized seizures, has denied People's Republic of China-linked hackers access to their arsenal.

FedRAMP High Becomes Benchmark for Mission-Critical Government Cloud Operations
The cloud is no longer just a migration target, but the operating environment for government missions, and FedRAMP High has become the benchmark for ensuring the security and reliability of mission-critical cloud operations. FedRAMP High is now a mission requirement, not just a compliance checkbox, providing the highest level of security controls for systems where data loss could have serious consequences.

Federal Agencies Ramp Up Citizen Service Delivery With AI, Accountability
Federal agencies are supercharging citizen service delivery with AI and a new accountability approach, tackling fragmented services and multiple touchpoints that can make it hard to get help. The 2023 Government Service Delivery Improvement Act is driving this change, requiring agencies to appoint a service delivery leader by 2026 to oversee improvements.

CISA Warns of Active N-able Flaw Exploit in Federal Agencies
Exploiting the N-able flaw can give attackers unrestricted control over your N-central console, putting your entire operation at risk. Federal agencies have just three days to patch this high-severity vulnerability, tracked as CVE-2026-18577, under CISA's Binding Operational Directive 26-04.

Agencies Shift from Volume to Decision-Quality Security Outcomes
Federal agencies are revolutionizing their approach to cybersecurity by shifting from a focus on data volume to decision-quality outcomes, and those making intentional, decision-oriented data architectures are leading the way. By explicitly identifying the data needed to support operational decisions, these agencies are achieving clarity on data existence, location, and protection.

GAO Report Exposes Duplication in Federal Cybersecurity Reporting Rules
The Government Accountability Office has uncovered a staggering truth: nearly 7 in 10 federal cybersecurity reporting rules are duplicated, with 80 out of 117 rules at 37 agencies requiring redundant written reports. This revelation raises critical questions about the efficiency and effectiveness of current federal cybersecurity regulations.

CISA Flags Exploited SharePoint Zero-Day Vulnerability
Don't wait until it's too late: Federal agencies have until July 19, 2026, to patch a critical Microsoft SharePoint Server vulnerability, CVE-2026-58644, that's already being exploited by hackers to execute malicious code remotely. This high-severity flaw, with a CVSS score of 9.8, could allow attackers to take control of your SharePoint Server if left unpatched.

Agencies Modernize Identity Infrastructure to Counter Emerging Threats
Federal agencies are racing against the clock to modernize their identity infrastructure, securing legacy systems while navigating the rapid evolution of AI and emerging post-quantum threats. As AI continues to advance at breakneck speed, agencies must build adaptable cybersecurity strategies to stay ahead of the threat landscape.

Federal Agencies Overhaul Contact Centers to Enhance Citizen Experience
The Department of Veterans Affairs sets a shining example with its mission-centered approach to service delivery, and Maximus President and CEO Bruce Caswell believes this mindset should be the standard across all federal contact centers. By modernizing these hubs, government can turn frustrating interactions into enjoyable experiences that better serve citizens and federal employees alike.

Pentagon Unveils War Force to Lure Top Tech Talent
The Pentagon has launched War Force, a new initiative that connects top engineers with the Department of Defense to tackle complex challenges, building on the success of the Office of Personnel Management's Tech Force program. This move aims to lure the best tech talent to help drive defense missions forward.

Federal Agencies Modernize Security with Zero Trust Architecture
Federal agencies are revolutionizing their security approach with Zero Trust Architecture, shifting from mere compliance to a robust operational framework that enables seamless mobility, cloud modernization, and AI-driven decision making. By embracing this cutting-edge strategy, leaders are transforming their organizations to stay ahead of emerging threats.

CISA Warns of Actively Exploited Ubiquiti Flaws
The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning that hackers are actively exploiting security flaws in Ubiquiti UniFi OS devices, posing a significant threat to system security. Federal agencies have just three days to apply crucial updates or recommended fixes to avoid potential breaches.

Trump Order Accelerates Federal Post-Quantum Crypto Migration by 2030
The clock is ticking: by December 31, 2030, federal agencies must upgrade their cryptography to protect high-value assets from the looming threat of quantum computers, with digital signatures following suit by December 31, 2031. This executive order accelerates the migration to post-quantum cryptography, compressing the government's previous timeline by four to five years.

Federal Agencies Pivot to Human-Centered Modernization
To modernize effectively, federal agencies must put people first, prioritizing clear communication and collaboration to drive worker buy-in and prepare employees for success in new environments and roles. By doing so, they can reduce resistance to change and set themselves up for a smoother transition.

US Government Exposes 3,611 AI Use Cases Amid Transparency Concerns
The US government has just shed light on 3,611 AI projects in a surprise move, revealing a 70% surge in active or planned initiatives compared to the previous administration. But with sparse details, many questions remain unanswered about the goals, risks, and safeguards behind these ambitious AI endeavors.

Federal Agencies Pursue Secure AI With Data Clarity, Infrastructure Overhaul
The harsh reality is that most organizations are flying blind when it comes to their data, with little insight into what they have, where it's stored, or if it's properly secured. This knowledge gap is a major hurdle for federal agencies looking to harness the power of AI while keeping sensitive data safe.

Feds Seek Clear Guidance on AI-Powered Vulnerability Scanning Tool
The US government's adoption of a cutting-edge AI-powered vulnerability scanning tool has sparked a heated debate, with select federal agencies gaining access to Anthropic's powerful Mythos model through the secretive Project Glasswing initiative. But with great power comes great risk, and officials are now seeking clear guidance on the tool's use.

Federal Agencies Embrace Conversational Service Delivery with AI
The era of navigating federal websites is giving way to a new frontier: conversation. Driven by AI, chatbots, and voice assistants, conversational service delivery is becoming a go-to path for citizens seeking services and information, transforming the way they interact with the government.

CISA Overhauls Risk Prioritization Approach for Federal Agencies, Private Sector
CISA is shaking up its approach to risk prioritization, urging a smarter strategy for applying patches and tackling vulnerabilities. Acting director Nick Andersen emphasizes the need to focus on what matters most, rather than rushing to apply every patch as soon as it's released.

Trump Appoints Unlikely Official to Lead National Intelligence
President Trump has tapped William Pulte, a seasoned expert with a track record of handling America's most sensitive matters, to lead national intelligence on an acting basis. Pulte brings unparalleled experience to the role, having spearheaded the administration's mortgage fraud efforts and managed high-stakes initiatives.

Federal Agencies Face Data Storage Challenge in Meeting Legal, Compliance Needs
Federal agencies face a daunting data storage challenge, struggling to balance scale, defensibility, and continuity as they navigate a vast array of modern data types, from chat logs and cloud collaborations to videos and digital artifacts. Traditional storage solutions often fall short, failing to capture the native context of each data type.