UK Military Data Breach a Reminder of Third-Party Risk in Defense Sector

May 8, 2024 at 07:17PM The breach of data on over 225,000 UK military personnel from a payroll contractor highlights the security risks posed by external contractors to defense entities. This incident, the second in a year, underscores the vulnerable underbelly of defense supply chains. Calls for mandatory minimum cybersecurity standards for defense and critical … Read more

$10 Million Bounty on Iranian Hackers for Cyber Attacks on US Gov, Defense Contractors

April 23, 2024 at 04:00PM Four Iranian nationals were indicted in Manhattan federal court for conducting a cyber-espionage campaign targeting U.S. government departments, defense contractors, and private firms, using sophisticated hacking techniques to access and compromise critical systems. The group, still at large, is accused of targeting over a dozen private US companies, primarily cleared … Read more

Pentagon Wants Feedback on Revised Cybersecurity Maturity Model Certification Program

December 29, 2023 at 07:54AM The US Department of Defense has proposed a rule for the Cybersecurity Maturity Model Certification (CMMC) program, seeking public feedback. The program aims to ensure defense contractors and subcontractors implement security measures to protect federal contract information and controlled unclassified information. The revision allows for self-assessment, emphasizes cooperation with industry, … Read more