Cybersecurity, Voter Eligibility Focus of New Ohio Legislation

Bernard Willis

A plan to more stringently scrutinize voter registration data and citizenship verification during Ohio’s elections sits before the Ohio House of Representatives.

The proposed legislation, which has yet to be assigned to a committee, also focuses on security of individual voting machines and would require the state’s board of voting system examiners to contain a person with cybersecurity expertise and credentials.

Read the full story

Feds Crack Down on Pernicious Chinese Hacking Group that Targeted U.S. Gov’t, Dissidents

Hacker mugshots

The U.S. on Monday announced actions aimed at exposing a sweeping Chinese hacking campaign that has targeted U.S. government institutions, critical infrastructure, media and political dissidents for more than a decade.

Wuhan Xiaoruizhi Science and Technology Company, Limited (Wuhan XRZ), served as a front company for China’s Ministry of State Security (MSS), which deals with overseas policing and espionage, allowing Chinese hackers to hide a multitude of malicious cyber operations, the Treasury Department said after sanctioning the organization on Monday in a statement alongside other U.S. agencies and the United Kingdom. In an indictment unsealed separately, the Department of Justice accused Chinese nationals Zhao Guangzong, Ni Gaobin and five others for their role “in furtherance of [China’s] economic espionage and foreign intelligence objectives” over the past 14 years.

Read the full story

State Representative Applauds New Executive Order Banning TikTok on Arizona Agency Devices

Arizona State Representative Matt Gress (R-Phoenix) released a statement Thursday praising the newest Executive Order from Gov. Katie Hobbs (D) banning the social media app TikTok on state agency devices. Gress has a bill moving through the Legislature to achieve a similar result.

“I applaud the Governor for taking action to address the security and data collection threats posed by TikTok and similar apps. The Legislature still needs to act, and the Governor should sign HB 2416, a comprehensive plan to keep the state’s critical information secure and strengthen public safety. It would expand on the Governor’s order, codifying it permanently into state law, and apply to all government entities, employees, and contractors,” Gress said.

Read the full story

Air Force Selects 179th Airlift Wing in Mansfield, Ohio for Air National Guard’s First Cybersecurity Wing

Governor Mike DeWine (R-OH) this weekend welcomed an announcement by Air Force Maj. Gen. John C. Harris Jr. that the Air Force is formally designating the 179th Airlift Wing in Mansfield as the first wing of its cybersecurity mission.

The Air Force and the National Guard Bureau made the designation after analyzing the possibility for the past year. In August 2021, the Air Force publicized its assessment that the north-central Ohio wing was the frontrunner to become the initial cyberspace-mission site. The new mission will be oriented toward protecting aircraft and weaponry software systems from attacks and other risks. It will bring in 175 new high-technology staff positions which DeWine touted as an important step in making the Buckeye State a more high-profile venue for the science, mathematical, engineering and cybertechnology fields. 

Read the full story

Commentary: Onshoring Semiconductor Capacity Is Crucial to National Security

semiconductor

When you think about national security, you probably don’t immediately think about semiconductors. These tiny chips are the “brains” enabling all the computational capabilities and data storage that we take for granted today. Chips power virtually every sector of the economy – including data centers, automotive, healthcare, banking, and agriculture. As a consequence of their widespread use, semiconductors have grown to become a $555 billion global industry, and are the world’s fourth most traded product. Semiconductor manufacturing and advanced packaging have been cited frequently as one of the main critical supply chain priorities for the nation.

A steady source of uninterrupted, trusted chips is necessary for the security of the nation – supporting the readiness of the U.S. military and protecting critical infrastructure like the electric grid. The problem is that most chips are fabricated outside of the U.S., in the vulnerable region of Southeast Asia – hence the security issues. Around three quarters of global chip production capacity comes from Southeast Asia.

Read the full story

FBI Now Warns of Missing Persons Scams on Social Media

There is a new type of cyber-enabled fraud that the Federal Bureau of Investigation is warning the public about – missing persons scams using social media. Scammers use information posted about missing persons on social media websites to target and exploit the victim’s family and friends network.

It is common for scammers to only request small amounts of money as missing persons scams tend to be a quick cash-grab. In addition to small requests, scammers tend to express some level of urgency in the payment by claiming the victim is either injured or sick.

Read the full story

Chinese-Backed Hackers Are Exploiting One of the ‘Most Pervasive’ Cybersecurity Flaws

Hackers backed by China are using a recently-discovered vulnerability in a common software tool to gain access to data and systems belonging to internet infrastructure companies.

The vulnerability, known as Log4Shell, was discovered by Chinese cybersecurity researchers from Alibaba last week and is found in an open-source software tool called Log4J used by enterprise software companies and cloud infrastructure providers. If exploited, the flaw allows hackers to gain access to a company’s data and internal networks.

Read the full story

Reps. Spanberger and McEachin Tout Virginia Benefits in the $1.2 Trillion Infrastructure Bill

RICHMOND, Virginia – Congressmen Abigail Spanberger (D-VA-07) and Donald McEachin (D-VA-04) touted the recently-passed $1.2 trillion Infrastructure Investment and Jobs Act, highlighting funds for Virginia’s infrastructure and the benefits the measure will bring to Virginia workers.

“Getting this legislation to President Biden’s desk and signed into law was one of my top priorities this year in Congress, because I know it’s a win for Virginia,” Spanberger said. “With the stroke of a pen we are finally addressing the needs of our roads, our bridges across the Commonwealth, the need for the expansion of broadband connectivity. We’re building out our electric vehicle network and boosting our efforts to build our resiliency against climate change. We’re making smart and long overdue investments in our electrical grid, our water infrastructure, our ports, and our rail systems. These investments will mean faster commute times, lower energy bills, safer drinking water, and faster trips throughout Virginia.”

Read the full story

Maricopa County Audit Results Reveal Someone Was Caught on Video Illegally Deleting Hundreds of Thousands of Election Files the Day Before the Audit Started

Arizona Senate Republicans issued the results of the independent ballot audit they conducted of the 2020 presidential and U.S. Senate election in Maricopa County on September 24 during a presentation, revealing findings that numerous election laws were broken and security measures breached. 

The most startling finding came from Ben Cotton, the founder of CyFIR. He said hundreds of thousands of election files — which the Maricopa County Supervisors refused to allow the auditors to examine — were deleted the day before the audit began, a violation of federal law which requires federal election records to be retained for 22 months. Although the name of the account that deleted them was not tied to a specific election worker, Cotton said there is video of the person who accessed those servers at that time. 

Read the full story

Few Americans Trust the Government to Keep Their Data Secure: Poll

Only a small minority of Americans say they trust the government to keep their online personal information safe, according to a new poll.

Just 23% of Americans say they are very or somewhat satisfied with the federal government’s efforts to keep their online data secure, according to the results of a poll released Thursday by the Associated Press-NORC Center for Public Affairs Research and MeriTalk. Almost 4 in 10 Americans say they are dissatisfied with the government’s efforts.

Read the full story

Chinese-Owned TikTok Overtakes YouTube in US

After former President Donald J. Trump attempted to ban TikTok, a popular video streaming social network, the Chinese-owned company has overtaken Google-owned YouTube in popularity in the United States.

“App users in the UK and US are spending more time on TikTok than on YouTube, a new report suggests,” BBC reported. “Data from app monitoring firm App Annie indicates that average time per user spent on the apps is higher for TikTok, indicating high levels of engagement.”

Read the full story

Hackers Steal over $600 Million in One of the Biggest Crypto-Heists Ever

Hackers stole over $600 million in digital assets Tuesday from users of cryptocurrency platform Poly Network in one of the largest digital token heists ever.

Poly Network, a decentralized finance (DeFi) platform that allows users to trade digital currencies with one another, announced the hack Tuesday. Cybersecurity firm SlowMist, which investigated the hack, said the total value of assets stolen was $610 million.

Read the full story

The Colonial Pipeline Attack Could Lead to Real Change in Cybersecurity Policy

Hackers infiltrated the Colonial Pipeline’s systems, held its data hostage for a $5 million ransom, and in the process, triggered local gas shortages across the eastern U.S. In response, politicians began talking about needed reform to protect critical infrastructure. Cybersecurity experts say talk is common around such initiatives, but because of the recent attack’s impact on the everyday lives of Americans, legislators may finally be ready to make real changes.

Read the full story

Rep. Green Points Out Chinese Cybersecurity Threat During Forum at Brussels

  U.S. Rep. Dr. Mark Green (R-TN-07) participated in international forums and panel discussions on cybersecurity and transatlantic alliances last weekend. He attended the Brussels Forum organized by the German Marshall Fund, a nonpartisan public policy think tank dedicated to promoting cooperation between North America and Europe. The Brussels Forum is an annual high-level meeting of U.S., European, and global political, corporate, and intellectual leaders. Green met with leaders of NATO, Taiwan, and several European nations. Green tweeted, “I was able to join a great discussion in Brussels hosted by the @gmfus last weekend on election security. Watch a portion of our conversation below.” I was able to join a great discussion in Brussels hosted by the @gmfus last weekend on election security. Watch a portion of our conversation below. pic.twitter.com/jbK2cOhLaX — Rep. Mark Green (@RepMarkGreen) July 2, 2019 In his opening remarks at the panel, Green said, “You probably have all heard of the DIME model or paradigm of warfare. And you’ve also probably heard of the domains of war. We think of an attack, we think of a strike against a building, and you see people and you see the wounded. But with a cyberattack, you don’t see that. It’s…

Read the full story

Huawei Founder Says Revenue Will Be Billions Below Forecast

  Huawei’s founder said Monday that the Chinese telecom giant’s revenue will be $30 billion less than forecast over the next two years, as he compared the company to a “badly damaged plane” in the face of U.S. government actions against it. “We never thought that the U.S.’s determination to attack Huawei would be so strong, so firm,” Ren Zhengfei (pictured above), who is also the CEO, said during a panel discussion at company headquarters in Shenzhen. Ren said Huawei will reduce capacity and expects revenues of about $100 billion annually for the next two years, compared to $105 billion in 2018. In February, he said the company was targeting $125 billion in 2019. Huawei’s overseas cellphone sales will drop by 40%, Ren said, confirming a Bloomberg report published Sunday. But the Chinese market is growing rapidly, and Huawei will not allow restrictive measures to curb its research and development, he added. Huawei is embroiled in an ongoing trade dispute between China and the U.S., which has accused Chinese companies such as Huawei of committing forced technology transfers and stealing trade secrets. Last month, the U.S. placed Huawei on its “Entity List,” which effectively bars American companies from selling components…

Read the full story

Quantum Computing and Its Threat to Cybersecurity

by Dorothy Denning   Cybersecurity researchers and analysts are rightly worried that a new type of computer, based on quantum physics rather than more standard electronics, could break most modern cryptography. The effect would be to render communications as insecure as if they weren’t encoded at all. Fortunately, the threat so far is hypothetical. The quantum computers that exist today are not capable of breaking any commonly used encryption methods. Significant technical advances are required before they will be able to break the strong codes in widespread use around the internet, according to a new report from the National Academy of Sciences. Still, there is cause for concern. The cryptography underpinning modern internet communications and e-commerce could someday succumb to a quantum attack. To understand the risk and what can be done about it, it’s important to look more closely at digital cryptography and how it’s used – and broken. Cryptography basics Y At its most basic, encryption is the act of taking an original piece of information – a message, for instance – and following a series of steps to transform it into something that looks like gibberish. Today’s digital ciphers use complex mathematical formulas to transform clear data…

Read the full story

More Cybersecurity Reportedly Needed in Tennessee Schools

The superintendent of the Bristol, Tenn. City School System reportedly wants school leaders across Tennessee and around the nation to have a comprehensive cybersecurity plan — immediately. Whether phishing attempts or outright hacks, cyberattacks on schools are reportedly increasing in grades K-12, according to a new article in EdScoop.com. The article discussed how Lilly joined two other superintendents to discuss school cybersecurity during a recent national webinar. The three superintendents, the website went on to say, offered five reasons to make cybersecurity a priority. The first reason must do with liability, according to EdScoop.com “Districts and school leaders can be held liable for network breaches. Individual superintendents and principals can even be sued. School management needs to take reasonable steps to ensure protection beyond data sharing policies,” the website reported. “Lilly explained that his schools, for instance, have frequent administrative access audits to ensure they can’t see information they shouldn’t, like Social Security numbers.” The other two superintendents on the webinar were Steve Bradshaw, who is a school superintendent in Montana, and Juan Cabrera, a school superintendent in El Paso, according to the website. “Bradshaw recommended all districts hold cybersecurity insurance so that the school can take care of problems…

Read the full story

Hackers Are Attacking the Electric Grid

Last September, news broke that hackers had laid siege to the U.S. power grid, probing deep into dozens of energy firms, looking for weaknesses to exploit. The Department of Homeland Security issued a threat warning about an ongoing stream of malware attacks that could one day lead to a Black Sky event, crippling cellphones, erasing bank accounts, devastating hospitals, and disrupting every sector of the economy. Girding our grid (some of which dates back to 1917) could cost $500 billion—too pricey for the more than 3,200 private companies that own its hardware.

Read the full story