Inside Cybersecurity

November 6, 2025

Intelligence contractors face new network-breach reporting requirements

The White House's intelligence director must establish new procedures that would require intelligence contractors with security clearances to rapidly report network and information system penetrations and provide government investigators access to such systems, according to the fiscal year 2014 Intelligence Authorization Act signed into law on Monday.

The Pentagon has been working on similar regulations for cleared defense contractors since January 2013 when Congress directed the department to develop such procedures in the fiscal year 2013 Defense Authorization Act. But...

U.S. Chamber cybersecurity education booklet

The U.S. Chamber of Commerce is distributing a new booklet outlining the federal cybersecurity framework established by the National Institute of Standards and Technology and challenges ahead as businesses tackle cybersecurity.

2271

Senate cyber info-sharing bill heads to markup on Tuesday

The Senate Intelligence Committee on Tuesday will go behind closed doors to mark up a cybersecurity information-sharing bill that has raised concerns among business leaders and privacy advocates alike.

The markup, scheduled for 2:30 p.m. on Tuesday, marks a significant milestone for cybersecurity legislation in the 113th Congress. The markup was originally scheduled for just before the July Fourth recess but was postponed as many senators began heading home.

Some observers were surprised the markup was rescheduled so quickly after...

Senate cyber info-sharing bill heads to markup on Tuesday

The Senate Intelligence Committee on Tuesday will go behind closed doors to mark up a cybersecurity information-sharing bill that has raised concerns among business leaders and privacy advocates alike.

The markup, scheduled for 2:30 p.m. on Tuesday, marks a significant milestone for cybersecurity legislation in the 113th Congress. The markup was originally scheduled for just before the July Fourth recess but was postponed as many senators began heading home.

Some observers were surprised the markup was rescheduled so quickly after...

Consumers League report on data breach, consumer confidence

This report, released in June 2014, by the National Consumers League and Javelin Strategy and Research shows there is a “severe” impact on consumers and consumer confidence as a result of data breaches.

2273

Backstage talks could revive cyber framework pilot test concept

An idea drowned out amid a full-throttled promotion campaign -- a pilot or beta test of the framework of cybersecurity standards -- has been revived as government and industry officials quietly discuss ways to measure framework usage.

Inside Cybersecurity, in an exclusive last week, reported on a nascent industry-government dialogue on surveying companies to determine how extensively the framework is being used by critical infrastructure organizations and how it is being used.

Government and industry officials sat down on...

Review aimed at framework for cyber stability plows familiar ground

A yearlong State Department study effort to craft a "framework for international cyber stability" has produced a draft report endorsing ongoing work on international norms of behavior for cyberspace and urging industry involvement, though the document fails to break much new ground.

Inside Cybersecurity obtained a 40-page draft report, dated July 2, which was commissioned last summer by Under Secretary of State for Arms Control and International Security Rose Gottemoeller. The department's International Security Advisory Board, chaired by former...

Review aimed at framework for cyber stability plows familiar ground

A yearlong State Department study effort to craft a "framework for international cyber stability" has produced a draft report endorsing ongoing work on international norms of behavior for cyberspace and urging industry involvement, though the document fails to break much new ground.

Inside Cybersecurity obtained a 40-page draft report, dated July 2, which was commissioned last summer by Under Secretary of State for Arms Control and International Security Rose Gottemoeller. The department's International Security Advisory Board, chaired by former...

The week ahead: U.S., China to chat on cyber

Cybersecurity is likely to come up during a meeting between American and Chinese delegates at the U.S.-China Strategic and Economic Dialogue in Beijing on Wednesday and Thursday

Secretary of State John Kerry and Treasury Department Secretary Jacob Lew will meet with Chinese State Councilor Yang Jiechi and Vice Premier Wang Yang, along with other U.S. and Chinese delegation, at the event.

As tensions escalate between the U.S. and China over cyber espionage, a recent indictment of Chinese hackers...

White House cyber lead Michael Daniel's remarks at Gartner conference

In prepared remarks for a speech at a Gartner Security and Risk Management Conference on June 23, White House Cybersecurity Coordinator Michael Daniel discusses the progress made to date on cybersecurity efforts.

2272

DOD delays draft regulations for network-penetration reporting

The Defense Department has further delayed the development of highly anticipated regulations that would require defense companies with security clearances to rapidly report network and information system penetrations, according to Pentagon officials.

The new regulations, required by Congress, are expected to direct contractors reporting a breach to describe the techniques or methods used in the attack; to provide a sample of the isolated malicious software, if possible; and to include a summary of how DOD data in contractor systems might...

U.S. Chamber brings cyber framework tour to Texas, promotes voluntary efforts

The U.S. Chamber of Commerce next week is hosting a one-day cybersecurity event in Austin, TX, designed to raise awareness of cybersecurity issues in general and the framework of cybersecurity standards in particular.

The Chamber is also distributing a new "booklet" at the July 10 Austin event, "2014 Cybersecurity Education and Framework Awareness Campaign: Improving Today. Protecting Tomorrow."

The document contains information on upcoming and past events, the Chamber's June letter to White House cybersecurity coordinator Michael Daniel,...

U.S. Chamber brings cyber framework tour to Texas, promotes voluntary efforts

The U.S. Chamber of Commerce next week is hosting a one-day cybersecurity event in Austin, TX, designed to raise awareness of cybersecurity issues in general and the framework of cybersecurity standards in particular.

The Chamber is also distributing a new "booklet" at the July 10 Austin event, "2014 Cybersecurity Education and Framework Awareness Campaign: Improving Today. Protecting Tomorrow."

The document contains information on upcoming and past events, the Chamber's June letter to White House cybersecurity coordinator Michael Daniel,...

Tech official: Focus on real-time monitoring as FISMA reform advances

With the Senate poised to consider reforms to a 2002 act establishing federal agency cybersecurity requirements, a McAfee executive said the government urgently needs to shift its cybersecurity efforts toward real-time strategies.

McAfee's Scott Montgomery, the company's chief technology officer and vice president for public sector solutions, said FISMA lags behind what is happening in practice and should be updated.

“The technical elements of organizations are doing the right thing, and that's what the legislation should be,” Montgomery said...

Symantec: U.S. utilities top list of cyber targets

A new cyber threat assessment from Symantec Corp. finds that electric utilities in the United States top the target list of an international cyber-espionage group dubbed Dragonfly.

“Among the targets of Dragonfly were energy grid operators, major electricity generation firms, petroleum pipeline operators, and energy industry industrial equipment providers,” Symantec said on Monday in a blog post announcing the findings.

“The majority of the victims were located in the United States, Spain, France, Italy, Germany, Turkey, and Poland,” according...

NIST cyber-physical systems working group presentation

This presentation given during the National Institute of Standards and Technology's kickoff webinar of the cyber-physical systems working group explains the mission, goals and timeline of the new working group's activities.

2270

Lew: U.S. will broach cybersecurity issues at upcoming Beijing meeting

The United States will raise thorny cybersecurity issues with Chinese officials at the Strategic and Economic Dialogue in Beijing next week, Treasury Secretary Jacob Lew said, and the Obama administration remains hopeful that China will seize the opportunity to re-engage on cyber policy.

China halted direct talks with the United States on cybersecurity issues after the U.S. in May issued indictments against five Chinese military officers on cyber espionage charges. U.S. officials in recent weeks have cited the upcoming...

Lew: U.S. will broach cybersecurity issues at upcoming Beijing meeting

The United States will raise thorny cybersecurity issues with Chinese officials at the Strategic and Economic Dialogue in Beijing next week, Treasury Secretary Jacob Lew said, and the Obama administration remains hopeful that China will seize the opportunity to re-engage on cyber policy.

China halted direct talks with the United States on cybersecurity issues after the U.S. in May issued indictments against five Chinese military officers on cyber espionage charges. U.S. officials in recent weeks have cited the upcoming...

Data-breach legislation still on hold as new report shows costs

Despite fresh indications of the high costs of consumer data breaches, legislation addressing the issue is a long shot to see action when Congress returns for a four-week stretch before its the August recess.

A House Energy and Commerce Committee source said discussions continue on data-breach legislation but suggested nothing is imminent. That contrasts with some recently published reports that Rep. Lee Terry (R-NE), who chairs an Energy and Commerce subcommittee, was set to introduce a bill.

“A bill has...

Aerospace industry officials cite multifaceted cybersecurity efforts

The civilian and defense aerospace industry is tackling cybersecurity through an array of industry-led initiatives and is pushing broadly for progress on critical supply-chain issues, according to industry officials.

“We have a long way to go” in securing the international supply chain, according to Ali Bahrami, vice president of civil aviation at the Aerospace Industries Association. “As bad guys get smarter, you have to be capable of actually reacting and putting measures in place to deal with it.”

Bahrami noted...

Log in to access this content.


Not a subscriber? Sign up for 30 days free access to exclusive news and analysis on cybersecurity regulations and more.