#cyberpolicy — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #cyberpolicy, aggregated by home.social.
-
🚨 SIGINT // Cybersecurity Watch — 2026-08-15
US greenlights private companies to conduct offensive 'hack back' cyberattacks against criminal gangs — a historic policy reversal.
https://techcrunch.com/2026/08/13/in-a-first-us-will-allow-some-private-firms-to-carry-out-cyberattacks/
#CyberPolicy #InfoSec #Cybersecurity #HackBack -
With the new hack-back memo, the US has shot itself in the foot again. And most of the initial online discussions miss how far the damage reaches. For the US.
Quick summary. On August 12 the President signed a memorandum letting vetted American companies break into foreign systems used by criminal groups and disrupt or destroy them. It is not vigilantism: the companies act under federal direction, and two officials approve every operation in writing.
Americans lost more than $20 billion to this fraud last year, so the motivation is real. I am not against acting. I am against this approach, and I know the arguments because I spent years making them to governments that wanted the same thing.
The debate so far has been about whether private firms should do this, and whether innocent foreigners get hurt. However I analyze it, the first casualty is American:
- Why would anyone share threat intel with Americans, when it could now be used to attack infrastructure in their own country?
- Why would a non-US CISO keep American EDR and XDR agents deep in their stack, when nobody can tell them whether that vendor also runs surveillance and offensive operations for the state?
- Why would anyone outside the US let an American vendor build the map of their weakest cryptography, in the PQC discovery and inventory work their own regulator is forcing them to do?
- Why would a European buyer accept "we cannot comment" as a tender answer?
- Why would an American firm disclose the flaw it just found, when its other contract values that flaw unpatched?
- Why would a sovereign wealth fund hold a listed US security vendor it has no way to assess?
- Why would an allied service share access with a partner whose contractors may be on the same box?
- How does a US prosecutor explain the next indictment of a Chinese contractor hacker?
- What does Washington say when Beijing runs the same program and calls it law enforcement?
Procedures are due October 11 and need not be published. Which means these questions may never get a public answer, and every one of them will get answered by assumption instead. None of those assumptions will favor the American cybersecurity industry.
https://postquantum.com/cyber-kinetic-security/cyber-privateers-what-breaks/
#Cybersecurity #CISO #CyberPolicy #ThreatIntel #NationalSecurity #InfoSec #VendorRisk #PQC
-
With the new hack-back memo, the US has shot itself in the foot again. And most of the initial online discussions miss how far the damage reaches. For the US.
Quick summary. On August 12 the President signed a memorandum letting vetted American companies break into foreign systems used by criminal groups and disrupt or destroy them. It is not vigilantism: the companies act under federal direction, and two officials approve every operation in writing.
Americans lost more than $20 billion to this fraud last year, so the motivation is real. I am not against acting. I am against this approach, and I know the arguments because I spent years making them to governments that wanted the same thing.
The debate so far has been about whether private firms should do this, and whether innocent foreigners get hurt. However I analyze it, the first casualty is American:
- Why would anyone share threat intel with Americans, when it could now be used to attack infrastructure in their own country?
- Why would a non-US CISO keep American EDR and XDR agents deep in their stack, when nobody can tell them whether that vendor also runs surveillance and offensive operations for the state?
- Why would anyone outside the US let an American vendor build the map of their weakest cryptography, in the PQC discovery and inventory work their own regulator is forcing them to do?
- Why would a European buyer accept "we cannot comment" as a tender answer?
- Why would an American firm disclose the flaw it just found, when its other contract values that flaw unpatched?
- Why would a sovereign wealth fund hold a listed US security vendor it has no way to assess?
- Why would an allied service share access with a partner whose contractors may be on the same box?
- How does a US prosecutor explain the next indictment of a Chinese contractor hacker?
- What does Washington say when Beijing runs the same program and calls it law enforcement?
Procedures are due October 11 and need not be published. Which means these questions may never get a public answer, and every one of them will get answered by assumption instead. None of those assumptions will favor the American cybersecurity industry.
https://postquantum.com/cyber-kinetic-security/cyber-privateers-what-breaks/
#Cybersecurity #CISO #CyberPolicy #ThreatIntel #NationalSecurity #InfoSec #VendorRisk #PQC
-
📰 Senate Confirms Adam Cassady as U.S. Cyber Ambassador
The U.S. Senate has confirmed Adam Cassady as the new Ambassador-at-Large for Cyberspace and Digital Policy. He will lead the State Department's cyber diplomacy efforts, a key post that has been vacant since Jan 2025. #CyberPolicy #Diplomacy #Gov
-
Five governments (CISA, NSA, UK, NL, Japan) just published joint guidance on how to run a vulnerability disclosure program: safe harbor, security.txt, a CVE for every finding, no gag NDAs. Soft law, not statute, but now a citable five-government benchmark.
This week's Policy Pulse: https://blog.disclose.io/policy-pulse-issue-25-week-of-july-18-2026/
-
Five governments (CISA, NSA, UK, NL, Japan) just published joint guidance on how to run a vulnerability disclosure program: safe harbor, security.txt, a CVE for every finding, no gag NDAs. Soft law, not statute, but now a citable five-government benchmark.
This week's Policy Pulse: https://blog.disclose.io/policy-pulse-issue-25-week-of-july-18-2026/
-
Pentagon Integrates Cyber into Operations, Prioritizes AI Security
The Pentagon is revolutionizing its approach to cyber operations, shifting away from treating it as a separate entity and instead weaving it into every military operation from the ground up. By doing so, the Defense Department aims to harness the full power of information on the battlefield, with AI security at the…
#CyberOperations #ArtificialIntelligence #AiSecurity #CyberPolicy #NationalSecurity
-
📰 New Executive Order 14390 Shifts US Federal Focus to Combating Cybercrime Against Citizens
📜 A new White House directive, Executive Order 14390, shifts U.S. policy to directly combat cybercrime against citizens & businesses, raising the stakes for enterprise cybersecurity maturity. #CyberPolicy #EO14390 #Cybersecurity
🌐 cyber[.]netsecops[.]io
-
📰 White House Overhauls Federal Logging Policy, Mandating Risk-Based, AI-Driven Monitoring
📜 POLICY UPDATE: The White House has issued a new logging mandate (M-26-14) for federal agencies, replacing M-21-31. The new rule emphasizes a risk-based approach, AI-driven detection, and IoT/OT monitoring. #CyberPolicy #OMB #CISA #ZeroTrust
🌐 cyber[.]netsecops[.]io
-
Twelve people are dead. Four men from Lynn, Massachusetts are now looking at a combined 57-plus years in federal prison. And the pills that caused all of it were sold as Oxycodone, Adderall, and Xanax.
The final sentencing in this darknet counterfeit pill case closed out a conspiracy that ran from May 2022 to June 2025 — three years of manufacturing and distributing fentanyl-laced pills via darknet marketplaces and, notably, the U.S. Postal Service. Court documents link the operation to at least 9,000 sales and at least 12 fatal overdoses...
Full Details:🔗 https://www.technadu.com/fourth-individual-sentenced-in-darknet-counterfeit-pill-distribution-conspiracy/628472/
#Cybercrime #DarkWeb #LawEnforcement #DigitalForensics #CyberPolicy
-
EU cyber policy sparks China pushback
European Commission move questioned
Security vs protectionismSource: https://english.news.cn/20260121/e7010f5bd4a04d86a0b30def30ccfcea/c.html
💬 Thoughts? Follow @technadu
-
Just attended CyberNext Brussels, Belgium (in the neighborhood of the Royal Palace) : bringing together policymakers, institutions, and industry voices to discuss the future of cybersecurity globally. #Cybersecurity #CyberPolicy #Brussels #CyberNext #EU https://www.cybernextconference.org/
-
Just attended CyberNext Brussels, Belgium (in the neighborhood of the Royal Palace) : bringing together policymakers, institutions, and industry voices to discuss the future of cybersecurity globally. #Cybersecurity #CyberPolicy #Brussels #CyberNext #EU https://www.cybernextconference.org/
-
US Cyber Strategy Advances with Executive Orders on Horizon
The US national cyber strategy is gaining momentum, with National Cyber Director Sean Cairncross confirming that its execution is actively underway. Executive orders are likely on the horizon, leaving us wondering what's next and who will lead the charge.
#NationalCyberStrategy #ExecutiveOrders #UsGovernment #CyberPolicy #EmergingThreats
-
@inex ❌ In Russia, the classifieds platform Avito has blocked a woman’s account after she used it for messaging during internet outages.
The service explained that the listing titled “Strict cat for friends” violated its rules because it did not offer a real product or service. The woman created it solely as a chat workaround, since Avito is included in the “whitelisted” resources accessible during shutdowns.
ℹ️ Residents of St. Petersburg and the Leningrad region have been reporting for the third consecutive day a lack of mobile internet and problems accessing websites and banking services, according to “Current Time.” The “whitelists” have been tested since summer 2025, but even they remain unstable.
❤️ Radio Liberty. Subscribe
#Russia #Avito #InternetShutdown #Censorship #DigitalRights #FreedomOfSpeech #Runet #Whitelist #TechNews #StPetersburg #LeningradRegion #InternetAccess #CyberPolicy #OnlineFreedom #MediaFreedom
-
Vom "Wheel of Distortion" zum "Wheel of Motion": Nachdem das #BSI anlässlich der #MSC die Herausforderungen in einer Welt zunehmender digitaler Unordnung präsentierte, folgte Ende letzter Woche mit einem "Wheel of Motion" der Blick auf einen strategischen Perspektivwechsel nationaler #Cyberpolicy.
Gegen #Cybercrime setzt das BSI auf mehr Automatisierung, gegen Cyber Conflict auf staatliche #Cyberabwehr, und gegen „Cyber Dominance“ auf mehr #Digitalsouveränität:
https://www.bsi.bund.de/DE/Service-Navi/Presse/Alle-Meldungen-News/Blog/Wheel_of_Motion_260306.html
-
Vom "Wheel of Distortion" zum "Wheel of Motion": Nachdem das #BSI anlässlich der #MSC die Herausforderungen in einer Welt zunehmender digitaler Unordnung präsentierte, folgte Ende letzter Woche mit einem "Wheel of Motion" der Blick auf einen strategischen Perspektivwechsel nationaler #Cyberpolicy.
Gegen #Cybercrime setzt das BSI auf mehr Automatisierung, gegen Cyber Conflict auf staatliche #Cyberabwehr, und gegen „Cyber Dominance“ auf mehr #Digitalsouveränität:
https://www.bsi.bund.de/DE/Service-Navi/Presse/Alle-Meldungen-News/Blog/Wheel_of_Motion_260306.html
-
The White House released “President Trump’s Cyber Strategy for America.”
The plan focuses on public–private coordination, investment in cybersecurity tech, and expanding cyber defense capabilities.
What should be the top priority for national cyber strategy?
Follow us for more infosec updates.
-
AI adoption across organizations is accelerating — but enforcement of security policies is struggling to keep pace.
In TechNadu’s International Women’s Day interview, Shahar Bahat, Founder & CEO of Stealth Startup, highlights the gap:
“Enforcement is the core gap. Policies degrade into emails, shared documents, or manual rules - and that breaks down fast.”Context, intent, and guardrails are becoming critical as AI expands across business users.
How are teams enforcing AI security policies today?
#WomenInCyber #AIWorkplaceSecurity #CyberPolicy #EnterpriseSecurity
-
Just a friendly reminder that the lead organization providing cybersecurity for the US has been gutted. So has information sharing with private sectors in Critical Infrastructure ... waits for the "I told you so" news
https://cyberscoop.com/cisa-information-sharing-lack-of-info-dangerous-op-ed/
#Cybersecurity #CISA #CyberPolicy #ThreatIntelligence #NationalSecurity
-
Policy development with cybersecurity implications.
Florida’s proposed HB 945 would establish a state-level operational intelligence unit with authority extending into threat identification and counterintelligence.
Risk dimensions:
• Expansion of state-run surveillance infrastructure
• Ideology-based scrutiny concerns
• Potential inter-state policy replication
• Oversight ambiguity and governance design challenges
• Broader digital monitoring implications
Security professionals understand that surveillance architecture, once normalized, rarely contracts.From a risk modeling perspective:
What controls, auditability mechanisms, and transparency frameworks would be required to prevent mission creep?Engage below.
Follow TechNadu for cybersecurity law, digital rights, and governance analysis.
Repost to elevate the discussion within the security community.#Infosec #CyberPolicy #SurveillanceRisk #Governance #PrivacyEngineering #SecurityArchitecture #DigitalRights #FirstAmendment #NationalSecurity #Compliance #ThreatModeling #PublicSectorSecurity
-
Leadership transition notice.
At CISA, Madhu Gottumukkala steps down as acting director, transitioning to DHS in a strategic implementation role. Nick Andersen assumes interim leadership.Operational considerations for the cybersecurity community:
• Continuity in federal–private sector coordination
• Critical infrastructure threat intelligence sharing
• Budget alignment with statutory mission
• Workforce retention amid reform cycles
Andersen’s background across the Coast Guard, Navy, and DOE suggests operational depth in federal IT and cybersecurity ecosystems.
Leadership recalibration during reform phases can influence everything from vendor engagement to threat response posture.
What strategic adjustments would you like to see from CISA moving forward?Source: https://cyberscoop.com/cisa-leadership-change-madhu-gottumukkala-nick-andersen/
Engage below.
Follow TechNadu for federal cybersecurity and infrastructure intelligence updates.
Repost to expand discussion.#Infosec #CISA #CyberPolicy #DHS #CriticalInfrastructure #ThreatIntel #GovCyber #SecurityStrategy #FederalIT #CyberGovernance #NationalCybersecurity
-
Regulatory update: The Federal Trade Commission issues COPPA enforcement clarification on age verification technologies.
Operators may collect and process personal data strictly for age determination without prior parental consent — if compliance controls include:
• Purpose limitation
• Data minimization + prompt deletion
• Security safeguards
• Third-party contractual assurances
• Transparency notice
• Reasonable accuracy validationFormal COPPA Rule review forthcoming.
For security leaders:
Age verification systems must be architected with privacy-by-design, limited retention, and robust vendor risk management.How are you validating accuracy while minimizing data exposure?
Engage below and follow us for regulatory + cybersecurity intelligence.
#COPPA #PrivacyByDesign #DataGovernance #CyberPolicy #FTC #Compliance #RiskManagement #InfoSec #SecurityArchitecture #OnlineSafety
-
Regulatory Development:
Jurisdiction: Russia
Entity: Google / Alphabet Inc.
Fine: 22M roubles (~$288K)
Source: TASS
Issue: Alleged distribution of VPN services via Google PlaySecurity implications:
• VPN services enable bypass of national filtering
• App store governance under sovereign pressure
• Cross-border compliance exposure
• Increasing enforcement targeting distribution channelsThis signals continued fragmentation of global internet governance models.
Source: https://www.reuters.com/world/russia-fines-google-distributing-vpn-services-tass-reports-2026-02-25/
Follow @technadu for regulatory and cybersecurity intelligence.
Share your operational risk perspective below.#Infosec #Google #Alphabet #VPN #CyberPolicy #AppStoreGovernance #DigitalSovereignty #TechCompliance #InternetRegulation #SecurityStrategy #GlobalTech
-
The UK is moving toward mandatory proactive detection of nonconsensual intimate images.
Under proposals backed by Keir Starmer, platforms must:
• Remove flagged content within 48 hours
• Prevent reuploads using hash matching
• Deploy proactive detection “at source”
• Face fines up to 10% of global revenueRegulator Ofcom is accelerating its decision on requiring technical enforcement mechanisms.
Technical considerations:
- Hash collision and false-positive risks
- Cross-platform hash database coordination
- Encryption vs scanning tradeoffs
- Abuse-report automation workflows
- AI-generated image detection accuracy
Is mandatory proactive scanning the future of online content governance?Source: https://therecord.media/united-kingdom-noncensual-images-fines
Drop your technical analysis below.
Follow @technadu for advanced cybersecurity and policy reporting.
#Infosec #DetectionEngineering #AIsecurity #HashMatching #ContentModeration #DigitalForensics #CyberPolicy #OnlineSafety #DeepfakeDetection #PrivacyEngineering #ThreatModeling #SecurityArchitecture
-
Texas is taking legal action against TP-Link, alleging firmware vulnerabilities enabled exploitation by China-linked actor Camaro Dragon.
Beyond geopolitics, this case highlights:
• Firmware attack surface risks
• Supply chain governance challenges
• Security disclosure vs. marketing claims
• State-level cyber enforcement expansionIf regulatory scrutiny shifts toward vendor security representations, the industry may face stricter compliance obligations.
Source: https://therecord.media/texas-sues-tp-link-china-allegations
Are hardware vendors prepared for this enforcement era?
Comment with your technical assessment.
Follow Technadu for in-depth threat intelligence reporting.#Infosec #FirmwareSecurity #ThreatActors #SupplyChainRisk #CyberEnforcement #SecurityResearch #RouterSecurity #CyberPolicy #BlueTeam #CyberDefense
-
US funding dispute puts Iranian VPN access at risk. Demand jumped to 25M users - delays could cut secure connectivity.
🔗 https://www.technadu.com/iran-vpn-funding-debate-halts-internet-access-expansion/620251/
-
The U.S. is reframing cyber strategy from pure resilience to coordinated deterrence.
At the Munich Cyber Security Conference, Sean Cairncross outlined a whole-of-government cyber approach integrating law enforcement, offensive capabilities, diplomacy, and industry collaboration.Key focus areas:
• Raising attacker cost calculus
• Enhanced public-private intel sharing
• Addressing nation-state & ransomware ecosystems
• Promoting a “clean” allied tech stackIs deterrence achievable in cyberspace - or structurally limited?
Source: https://therecord.media/us-wants-cyber-partnerships-to-send-message-to-adversaries
Security leaders, weigh in below.
Follow @technadu for strategic cyber intelligence.#InfoSec #CyberStrategy #ThreatIntelligence #CISO #CyberOperations #DigitalSovereignty #Ransomware #CyberPolicy #SecurityLeadership #CyberDeterrence
-
Non-consensual synthetic imagery is scaling faster than platform controls.
Recent reporting details how AI tools were used to fabricate explicit deepfakes of a public content creator - then monetize them via impersonation accounts.
Researchers documented millions of sexualized AI-generated images in a short timeframe, prompting regulatory investigations across jurisdictions.
From a security and governance standpoint:
• Identity verification failures
• Monetization platform abuse
• Content moderation lag
• Cross-platform amplification
• Enforcement complexityThis is not only a policy issue - it’s an abuse-of-technology issue.
How should AI providers implement friction without crippling innovation?
Soure: https://www.404media.co/grok-nudify-ai-images-impersonation-onlyfans/?ref=daily-stories-newsletter
Follow @technadu for threat-informed AI and cybersecurity reporting.
#Infosec #ThreatModeling #AIAbuse #PlatformSecurity #CyberPolicy #DigitalForensics #OnlineHarms #TechNadu
-
Non-consensual synthetic imagery is scaling faster than platform controls.
Recent reporting details how AI tools were used to fabricate explicit deepfakes of a public content creator - then monetize them via impersonation accounts.
Researchers documented millions of sexualized AI-generated images in a short timeframe, prompting regulatory investigations across jurisdictions.
From a security and governance standpoint:
• Identity verification failures
• Monetization platform abuse
• Content moderation lag
• Cross-platform amplification
• Enforcement complexityThis is not only a policy issue - it’s an abuse-of-technology issue.
How should AI providers implement friction without crippling innovation?
Soure: https://www.404media.co/grok-nudify-ai-images-impersonation-onlyfans/?ref=daily-stories-newsletter
Follow @technadu for threat-informed AI and cybersecurity reporting.
#Infosec #ThreatModeling #AIAbuse #PlatformSecurity #CyberPolicy #DigitalForensics #OnlineHarms #TechNadu
-
The UK has opened its first investigation into suspected cyber sanctions breaches, with all known cases linked to financial services firms, according to HM Treasury disclosures.
The move follows expanded OFSI monitoring capabilities, including advanced analytics and cryptocurrency investigation tools, highlighting the operational challenges of tracing cyber-related sanctions violations.
No enforcement outcomes have been announced so far.
💬 From a practitioner’s view, where do cyber sanctions enforcement efforts need to improve?
Source: https://therecord.media/uk-investing-first-suspected-breach-cyber-sanctions
Follow @technadu for neutral, practitioner-focused cyber reporting.
#InfoSec #CyberSanctions #FinancialCrime #ThreatIntel #CryptoInvestigations #CyberPolicy #UKSecurity
-
Civil society groups accuse NSO Group of using the Pall Mall Process to legitimize spyware practices.
Pegasus-linked abuses reportedly continue.
https://www.technadu.com/spyware-vendors-pall-mall-claims-trigger-civil-society-backlash/619504/
-
OMB has issued new guidance adopting a risk-based approach to federal software and hardware security, rescinding prior mandates under M-22-18 and M-23-16.
Agencies must retain complete inventories but may now choose whether to require secure development attestations and SBOMs. The scope also expands to explicitly include hardware supply chain risk.
How does this affect assurance and third-party risk management?
Follow TechNadu for factual policy reporting.
#InfoSec #CyberPolicy #SupplyChainRisk #SBOM #HardwareSecurity #TechNadu
-
California’s privacy authority has restricted a data broker from selling Californians’ personal and health data due to registration and compliance failures.
The case underscores:
• Sensitivity of health-related datasets
• Importance of broker registration frameworks
• Enforcement trends under consumer privacy lawsWhat impact do you see this having on data brokerage practices?
Follow TechNadu for objective analysis across privacy, regulation, and InfoSec.
#DataProtection #HealthPrivacy #PrivacyCompliance #CyberPolicy #InfoSec #RegulatoryEnforcement
-
Australia now mandates age verification for logged-in search engine users.
Ends anonymous logged-in searches and expands identity checks - with fines up to ~$50M for non-compliance by 2026.
🔗 https://www.technadu.com/australia-enforces-age-verification-for-search-engine-users/617352/
Thoughts from a privacy perspective?
-
China has issued draft regulatory measures for public comment addressing AI systems designed for human-like and emotional interaction.
The proposal emphasizes lifecycle responsibility, algorithm governance, data security, personal information protection, and mitigation of psychological risks.
From an information security perspective, this reflects growing attention to how AI design, data handling, and user interaction intersect with digital safety.
What implications could this have for global AI governance standards?
Engage in the discussion and follow @technadu for factual InfoSec and AI policy updates.
#InfoSec #AIGovernance #DataProtection #ResponsibleAI #CyberPolicy #TechNadu
-
Acting CISA Director reportedly took a polygraph tied to an intelligence access request, prompting a DHS internal review.
At least 6 career staff placed on paid leave amid the investigation.Thoughts on the implications for agency leadership?
-
Denmark explores VPN limits to address illegal streaming.
https://www.technadu.com/denmark-proposes-vpn-limits-to-tackle-illegal-streaming/615849/• Proposal targets piracy-related access
• Government denies full VPN ban
• Tech-neutral language raises enforcement questions
• Privacy advocates warn of censorship risks -
Two major U.S. cyber laws — the CISA Act and State & Local Cybersecurity Grant Program — are temporarily back through Jan 30 following the shutdown’s end.
-
Want to shape cybersecurity policy? 🛡️ This interactive workshop deepens your understanding of foundational concepts, hard problems, and practical solutions by having you step into the shoes of industry, government, and academia stakeholders to debate and craft policy recommendations. #CyberPolicy #GovTech
Workshop: https://bsidesnova-2025.sessionize.com/session/999817
-
🚨 Speaker Spotlight: Deputy Minister Herming Chiueh
We’re honored to welcome Herming Chiueh of Taiwan’s MODA back to @defcon 33 and the Maritime Hacking Village!
Join us for his panel: “Fighting the Digital Blockade: A View from Taiwan” — exploring cyber resilience, secure comms & infrastructure defense.
#DEFCON #DC33 #MaritimeHackingVillage #CyberPolicy #NationalSecurity #DEFCONSpeakers #Taiwan #CyberDefense
-
🚨 Speaker Spotlight: Michael Sulmeyer, former Asst. Secretary of Defense for Cyber Policy, joins the Maritime Hacking Village at @defcon 33!
With top cyber roles at DoD, Cyber Command & NSC, Michael offers deep expertise on cyber conflict, military readiness & infrastructure resilience.
⚓ Catch him live on the "Threat Dynamics on the Seas" policy panel.
#DEFCON #DC33 #MaritimeHackingVillage #CyberDefense #CyberPolicy #MaritimeSecurity #DEFCONTalks
-
Trump Signs Executive Order that Ends Punitive Measures Against Domestic Hackers
#Cybersecurity #USPolitics #Trump #CISA #NationalSecurity #DOGE #ExecutiveOrder #InfoSec #WhiteHouse #CyberPolicy #GovTech
-
📢 A coalition of 52 industry organizations is urging Congress to reauthorize CISA before it’s too late 🛡️📅
📝 The joint letter includes voices from critical sectors — energy, telecom, finance, healthcare, transportation, retail, and tech
📉 Without immediate reauthorization, programs supporting vulnerability coordination, incident response, and threat sharing will stall out.
⚠️ The current authorization expires September 30 😱
🏛️ The call: long-term, stable support for the U.S. government’s lead civilian cyber agencyWhen 52 business and infrastructure groups align on cyber policy, that’s not noise — it’s a warning flare.
#CyberSecurity #CISA #ThreatIntel #CyberPolicy #PublicPrivatePartnership #security #privacy #cloud #infosec
https://www.ciodive.com/news/cisa-reauthorization-congress-industry-letter/748356/ -
Two Top CISA Officials Resign Amid Agency Turmoil Caused by US Government
#Cybersecurity #CISA #SecureByDesign #GovTech #NationalSecurity #DOGE #USGov #CyberPolicy #FederalGovernment #InfoSec #TrumpAdmin
-
With Chinese diplomats reportedly admitting to targeting US Critical Infrastructure as a "warning to the U.S. about Taiwan" and some in the industry war-gaming the possibility of Cyber Effects being used to sway the Trade dispute between the US and China, now seemed a good time to do a reality check on how - if at all - China would do so.
The bottom line - expect a surge in cyber espionage and signaling campaigns targeting US telcos and leadership to provide the CCP a competitive advantage in negotiations and their backdoor dealings.🕵️
Cyber Security doesn't operate in a vacuum - here's a good example of where geopolitics starts to seep in at the edges: https://opalsec.io/is-cyber-a-legitimate-weapon-in-a-tariff-war/
#CyberSecurity #InfoSec #ThreatIntel #China #USChinaTradeWar #Geopolitics #CyberWarfare #CriticalInfrastructure #VoltTyphoon #SaltTyphoon #NationalSecurity #CyberThreats #RiskManagement #GeopoliticalRisk #CyberPolicy #CISA
-
Back in 2018 I got to interview the inagural Cybersecurity Ambassador for Australia and this year, in Melbourne, we got to meet and interview Brendan Dowling, Australia’s Ambassador for Cyber Affairs and Critical Technology.
You do not want to miss this conversation, trust me 😬
🎙️✨Australia's Global Opportunity and Responsibility: Shaping a More Secure Region and a Safer Digital World
On Location Coverage with Sean Martin and Marco Ciappelli on ITSPmagazine Podcasts
An Australian Cyber Conference 2024 in Melbourne Conversation with Ambassador Brendan Dowling
Australian Information Security Association (AISA)
At the Australian Cyber Conference Melbourne 2024, On Location with Sean Martin and Marco Ciappelli welcomed Brendan Dowling, Australia’s Ambassador for Cyber Affairs and Critical Technology. In this thought-provoking conversation, Dowling shared his insights on the evolving role of cyber diplomacy, the ethical implications of #AI, and the importance of international collaboration in securing the digital world.
📺 Watch the episode video on YouTube & subscribe to ITSPmagazine Channel here 👇
📻 If you prefer to listen to the audio podcast, enjoy it here 👉 https://on-location-with-sean-martin-and-marco-ciappelli.simplecast.com/episodes/australias-global-opportunity-and-responsibility-shaping-a-more-secure-region-and-a-safer-digital-world-an-australian-cyber-conference-2024-in-melbourne-conversation-with-ambassador-brendan-dowling-on-location-coverage
🖥️ More about our Australian Cyber Conference 2024 Coverage👇
🌟Sponsor of ITSPmagazine's Australian Cyber Conference 2024 Coverage at the time of publishing: ThreatLocker 👉 https://itspm.ag/threatlocker-r974
#AustralianCyberConference2024
#CyeberCon2024
#CyberSecurity
#infosecurity
#infosec #cyberpolicy
#technology #politicalscience #internatinalrelationship #cyber #cyberdiplomacy