Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    [mc4wp_form id=3515]
    What's Hot

    Name That Toon: Last Line of Defense

    April 16, 2024

    OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

    April 16, 2024

    Middle East Cyber Ops Intensify, With Israel the Main Target

    April 16, 2024
    Facebook Twitter Instagram
    • Privacy Policy
    • Contact Us
    Facebook Twitter Instagram Pinterest Vimeo
    AI Home SecurityAI Home Security
    • Home
    • Home Security
    • Cyber Security
    • Biometric Technology
    Contact
    AI Home SecurityAI Home Security
    Home»Cyber Security»Government Shutdown Poised to Stress Nation’s Cybersecurity Supply Chain
    Cyber Security

    Government Shutdown Poised to Stress Nation’s Cybersecurity Supply Chain

    justmattgBy justmattgSeptember 29, 2023No Comments4 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    [ad_1]

    The looming US federal government shutdown will put the nation’s cybersecurity apparatus under intense strain, increasing the likelihood of cyberattacks across the country’s entire software supply chain if Congress does not pass a budget by the Oct. 1 deadline, experts warn.

    The US Department of Homeland Security (DHS) updated its plan to respond to the “lapse in appropriations” that will be triggered in less than three days unless Congress reaches a compromise to fund the federal government. The government shutdown plan includes the indefinite furlough of more than 80% of the Cybersecurity and Infrastructure Security Agency (CISA) workforce.

    Shutdown Would Put Enterprise, Infrastructure at Risk

    The mass furloughs that would result from a government shutdown would degrade the cybersecurity of the entirety of the nation’s software supply chain, including critical infrastructure, transportation, healthcare, and energy, according to a statement from Justin Williams, managing partner at Optiv.

    Threat actor campaigns could run amok without CISA’s ability to rapidly share indicators of compromise; supply chain cyberattacks could go unnoticed and spread unchecked beyond government systems; and even simple regulatory and certification functions would grind to a halt in the wake of a shutdown.

    “CISA provides critical linkages by and between our commercial organization and government,” Williams said. “This linkage includes support for organizations who are under duress or otherwise dealing with a cyber event or incident, putting commercial organizations and industry sectors at risk when indicators of compromise (IOC) are not shared among the proper groups to slow or stop the movement of adversaries.”

    Skeleton crews left inside government cybersecurity posts working across the government and beyond CISA are working under intense conditions, according to Roselle Safran, founder and CEO of KeyCaliber. She was the head of cybersecurity efforts of the Executive Office of the President during the 2013 government shutdown, which lasted over two weeks.

    “When I was at EOP, I had to work the night shift part of the week because the analysts on my team were furloughed,” Safran says. “It brings lots of stress to those who are working because they are acutely short-staffed and covering the work of multiple people. And it brings lots of stress to those who aren’t working because they don’t know whether or not they will receive pay for the time period.”

    Reminiscing on her experience, Safran adds, “And my daughter is a shutdown baby.”

    Government Shutdown Concerning for Cybersecurity

    The prospect of a government shutdown should be cause for “concern” among enterprise security teams, according to Jeffrey Wells, a former cyber czar for Maryland and current partner at Sigma7.

    Beyond incident response support, a government shutdown will likely draw the attention of threat actors.

    “The shutdown can create an environment that’s perfect for exploitation by hackers,” Wells says. “With government resources and response capabilities potentially limited, threat actors may seize the opportunity to target organizations.”

    In preparation, enterprise security teams should be vigilant about monitoring and threat detection measures, he adds.

    Government contractors will be affected by furloughs as well, adding even more potential risk into the software supply chain, Wells says.

    “To address this, cybersecurity teams should establish alternative channels for reporting incidents and seeking assistance,” Wells adds.

    A MITRE spokesperson says the longer the shutdown drags on, the more risk to the nation’s cybersecurity posture, as the contingency operations inevitably become strained.

    To help, MITRE recommends any contractors working under federal contracts continue working, to the extent that it’s reasonable, until they receive a “stop work order.”

    State and local governments may also step in to provide reinforcements to the feds, the spokesperson notes.

    In the meantime, MITRE says it will continue to offer its tools throughout the shutdown.

    “MITRE’s open frameworks and knowledge bases such as MITRE ATT&CK, Caldera, D3FEND, Engage, ATLAS, Security Automation, System of Trust, CVE, and CWE, to name a few, will remain active and available for cyber defenders to level up their threat-informed defense and stay on top of possible adversary threats and cyber vulnerabilities,” the spokesperson says.

    [ad_2]

    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleGitHub Repositories Hit by Password-Stealing Commits Disguised as Dependabot Contributions
    Next Article ICAO TRIP Symposium underscores the vital role of technology and innovation in advancing traveler mobility
    justmattg
    • Website

    Related Posts

    Cyber Security

    Name That Toon: Last Line of Defense

    April 16, 2024
    Cyber Security

    OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

    April 16, 2024
    Cyber Security

    Middle East Cyber Ops Intensify, With Israel the Main Target

    April 16, 2024
    Add A Comment

    Leave A Reply Cancel Reply

    Demo
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Don't Miss
    Cyber Security

    Name That Toon: Last Line of Defense

    justmattgApril 16, 2024

    [ad_1] The enemies are always getting closer, using the same advanced technologies as security pros…

    OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

    April 16, 2024

    Middle East Cyber Ops Intensify, With Israel the Main Target

    April 16, 2024

    Muddled Libra Shifts Focus to SaaS and Cloud for Extortion and Data Theft Attacks

    April 16, 2024

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    [mc4wp_form id=3515]
    Demo
    Top Posts

    Name That Toon: Last Line of Defense

    April 16, 2024

    OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

    April 16, 2024

    Middle East Cyber Ops Intensify, With Israel the Main Target

    April 16, 2024
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Latest Reviews
    Cyber Security

    Name That Toon: Last Line of Defense

    justmattgApril 16, 2024

    [ad_1] The enemies are always getting closer, using the same advanced technologies as security pros…

    Cyber Security

    OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

    justmattgApril 16, 2024

    [ad_1] Apr 16, 2024NewsroomSupply Chain / Software Security Security researchers have uncovered a “credible” takeover…

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    [mc4wp_form id=3515]
    Demo
    MOST POPULAR

    Name That Toon: Last Line of Defense

    April 16, 2024

    California mountain lion P-22 left mark on wildlife conservation

    January 1, 2023

    Congress Again Writes To Home Minister Amit Shah Over Rahul Gandhi’s Security

    January 1, 2023
    OUR PICKS

    Name That Toon: Last Line of Defense

    April 16, 2024

    OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

    April 16, 2024

    Middle East Cyber Ops Intensify, With Israel the Main Target

    April 16, 2024

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    [mc4wp_form id=3515]
    Facebook Twitter Instagram Pinterest
    • Privacy Policy
    • Contact Us
    AI Home Security © 2025 All rights reserved | Designed By ESmartsSolution

    Type above and press Enter to search. Press Esc to cancel.

    ↑