Cybersecurity, Privacy, & AI

Trending Now
Cyber Leaders Wary of Giving Agentic AI Too Much Authority • TikTok Can Be on Government Phones. Managing It Comes Next. • NIST Wants to Overhaul Its Vulnerability Database for the AI Age • OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns • Cyber-attacks Against State Water Supplies Continue—12 to Date

CIA Report Prompts Call for DHS Cyber Authority Over Intelligence Agencies

deepadesigns | Shutterstock

In a letter to Director of National Intelligence John Ratcliffe, Senator Ron Wyden (D-OR) says Congress made a mistaken when it exempted the intelligence community from cybersecurity directives from the Department of Homeland Security. Wyden said they had done so with the expectation that intelligence agencies “would of course go above and beyond steps taken by the rest of the government to secure their systems.”

However, a report indicates that intelligence agencies have not implemented multifactor authentication for domain name system infrastructure, and that DMARC – an anti-phishing technology mandated by DHS in 2017 – is not being used at the CIA, the National Reconnaissance Office, or the Office of the Director of National Intelligence itself.

Wyden asked John Ratcliffe to explain what steps he is taking to improve the cybersecurity of some of the nation’s most most sensitive secrets. The report documented systemic failures that led to the largest data loss in CIA history after a CIA employee stole at least 180 gigabytes of information, which he provided to WikiLeaks.

More at Security Magazine

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.