Policy & Regulation: Page 13


  • Close up photo of a man in a suit.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    SEC votes to overhaul disclosure rules for material cyber events

    After a fierce debate, the agency voted to require companies to come clean on material breaches and attacks within four business days of determination.

    By July 26, 2023
  • A photo of the White House.
    Image attribution tooltip
    PorqueNoStudios/iStock via Getty Images
    Image attribution tooltip

    To execute the national cyber strategy, it’s going to take the whole US government

    Experts applaud the desired outcomes, but the tasks and responsibilities now assigned to agencies underscore the challenges that lie ahead.

    By July 25, 2023
  • Aerial view with Lower Manhattan skyline at sunset
    Image attribution tooltip
    Ultima_Gaina via Getty Images
    Image attribution tooltip

    New York cyber lead warns of what states face in critical infrastructure defense

    Government agencies and the private sector must work collaboratively to combat increasingly sophisticated threat activity, Colin Ahern said.

    By July 25, 2023
  • U.S. President Joe Biden delivers remarks alongside Vice President Kamala Harris at the Congressional Picnic on the South Lawn of the White House on July 19, 2023 in Washington, DC.
    Image attribution tooltip
    Kevin Dietsch via Getty Images
    Image attribution tooltip

    White House secures safety commitments from 7 AI companies

    OpenAI, Microsoft and Google are among the companies committing to robust testing and investments in cybersecurity safeguards to defend AI models prior to release.

    By Lindsey Wilkinson • July 21, 2023
  • Password input field
    Image attribution tooltip
    Getty via Getty Images
    Image attribution tooltip

    US government plays catchup on phishing-resistant MFA

    Security tools have evolved to include more accessible protocols that meet stringent authentication requirements. The government wants to embrace that.

    By July 20, 2023
  • Microsoft logo on buidling
    Image attribution tooltip
    Drew Angerer / Staff via Getty Images
    Image attribution tooltip

    Microsoft offers free security logs amid backlash from State Department hack

    Federal officials and rivals blasted the company for charging customers for additional security features.

    By July 19, 2023
  • A building is seen from a parking lot with a sign that reads "UKG."
    Image attribution tooltip

    Photo: Obtained by Industry Dive

    Image attribution tooltip

    UKG agrees to pay up to $6M in lawsuit tied to 2021 breach

    The payroll services provider reached an agreement to settle a class action lawsuit tied to a ransomware attack that targeted its Kronos Private Cloud service.

    By July 18, 2023
  • Green lights show behind plugged-in cables.
    Image attribution tooltip
    gorodenkoff/iStock via Getty Images
    Image attribution tooltip

    White House unveils consumer labeling program to strengthen IoT security

    The voluntary program is designed to protect millions of consumers and remote workers amid increased threat activity against smart home and IoT devices.

    By July 18, 2023
  • FCC Chairwoman Jessica Rosenworcel testifies during her nomination hearing in front of the U.S. Senate.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    FCC chair proposes $200M investment to boost K-12 cybersecurity

    The funds would go toward a three-year pilot program aimed at enhancing cybersecurity protections for school and library networks.

    By Anna Merod • July 14, 2023
  • The Capital One logo is displayed on the side of its headquarters in McLean, Va.
    Image attribution tooltip
    Win McNamee via Getty Images
    Image attribution tooltip

    Fed ends Capital One breach-related enforcement action

    The Office of the Comptroller of the Currency 10 months earlier freed the bank from a separate consent order tied to a former AWS employee’s hack that exposed the data of 106 million customers.

    By Dan Ennis • July 13, 2023
  • Kemba Walden, acting national cyber director, rolls out the National Cybersecurity Strategy at a forum by the Center for Strategic and International Studies.
    Image attribution tooltip
    Permission granted by Office of the National Cyber Director
    Image attribution tooltip

    White House shares the 69 initiatives slated to shore up national cybersecurity

    “If the strategy represents the president’s vision for the future, then this implementation plan is the roadmap to get there,” Acting National Cyber Director Kemba Walden said.

    By July 13, 2023
  • A building showing in the sun with a sign out front that says U.S. State Department.
    Image attribution tooltip
    Alex Wong via Getty Images
    Image attribution tooltip

    Microsoft warns China-linked APT actor hacked US agency, other email accounts

    U.S. officials alerted Microsoft about what emerged as a targeted, monthlong hacking campaign.

    By July 12, 2023
  • People walk past a building in New York City
    Image attribution tooltip
    Spencer Platt via Getty Images
    Image attribution tooltip

    IronNet in NYSE compliance crosshairs after failing to file quarterly earnings on time

    Management at the cybersecurity firm has been in talks on a deal to raise additional capital and go private. 

    By July 6, 2023
  • The White House in Washington, D.C.
    Image attribution tooltip
    TriggerPhoto via Getty Images
    Image attribution tooltip

    White House releases cyber budget priorities for fiscal year 2025

    Federal agencies are advised to demonstrate how their spending aligns with the national cybersecurity strategy.

    By June 29, 2023
  • SolarWinds
    Image attribution tooltip
    Photo illustration by Danielle Ternes/Cybersecurity Dive; photograph by ismagilov via Getty Images
    Image attribution tooltip

    SEC notifies SolarWinds CISO and CFO of possible action in cyber investigation

    Executives were alerted to possible enforcement action related to the Russia-linked supply chain attack.

    By June 26, 2023
  • Close up of Gary Gensler speaking during a senate hearing
    Image attribution tooltip
    Kevin Dietsch/Getty Images via Getty Images
    Image attribution tooltip

    SEC delays final rule on cyber incident disclosure as industry pushes back

    The agency was seeking prompt reporting of material cyber breaches and attacks, but faced a range of concerns from stakeholders.

    By June 16, 2023
  • Kemba Walden, acting national cyber director, speaks with David Levy, VP, government, nonprofit and healthcare at AWS, during a fireside chat at the AWS Summit with David
    Image attribution tooltip
    Permission granted by AWS
    Image attribution tooltip

    Cloud services seen as key tool in shifting balance of cyber risk

    The acting national cyber director says more oversight may be necessary, but a resilient cloud infrastructure is critical to the national cybersecurity strategy.

    By June 12, 2023
  • Amtrak Coast Starlight Train
    Image attribution tooltip
    Laser1987 via Getty Images
    Image attribution tooltip

    Existing security policy for critical infrastructure needs major overhaul, commission says

    The Cyberspace Solarium Commission 2.0 says the federal relationship with the private sector is based on outdated policy.

    By June 7, 2023
  • A woman speaking to a man in a bookstore in front of an audience on risers.
    Image attribution tooltip
    Permission granted by Tusk Venture Partners
    Image attribution tooltip

    FTC chair warns that AI businesses must still operate within existing laws

    The rapidly expanding technology cannot be used for fraud or discrimination and dominant players must allow the market to remain competitive, Lina Khan said Thursday.

    By June 2, 2023
  • close up programmer man hand typing on keyboard laptop for register data system or access password at dark operation room , cyber security concept - stock photo
    Image attribution tooltip
    Chainarong Prasertthai via Getty Images
    Image attribution tooltip

    CISA updates ransomware guide 3 years after its debut

    The #StopRansomware guide, updated in partnership with the FBI, NSA and MS-ISAC, reflects aggressive new techniques used by threat actors, including double extortion.

    By May 24, 2023
  • Coin stacks sitting on blue financial graph background.
    Image attribution tooltip
    MicroStockHub via Getty Images
    Image attribution tooltip

    Critical infrastructure security spending to grow 83% by 2027: ABI Research

    Analysts forecast cybersecurity spending among critical infrastructure organizations to grow from an estimated $129 billion in 2022 to almost $236 billion by 2027.

    By May 19, 2023
  • Cybercriminal experts assemble in conference room.
    Image attribution tooltip
    iStock via Getty Images
    Image attribution tooltip

    Why and how to report a ransomware attack

    The majority of ransomware attacks go unreported, creating a blind spot that hampers response, recovery efforts and the prevention of future attacks.

    By May 18, 2023
  • The U.S. Capitol building.
    Image attribution tooltip
    drnadig via Getty Images
    Image attribution tooltip

    House hearing details cyber resilience efforts for energy, water and healthcare

    Officials from the Department of Health and Human Services, Environmental Protection Agency and the Department of Energy testified how sector agencies are responding to rising threats.

    By May 17, 2023
  • Money moving through cyberspace.
    Image attribution tooltip
    Viorika via Getty Images
    Image attribution tooltip

    Flood of ransom payments continues as officials mull ban

    The revived debate over the viability of a ransom payment ban comes down to the cost ransomware is causing organizations globally.

    By May 11, 2023
  • Woman and a man standing on stage in front of a screen that says Hack the Capitol
    Image attribution tooltip
    Naomi Eide/Cybersecurity Dive
    Image attribution tooltip

    CISA director wary of technology industry repeating its mistakes with AI

    The multibillion-dollar cybersecurity industry is the result of misaligned incentives, where speed-to-market outranked security, Jen Easterly said. 

    By Naomi Eide • May 11, 2023