ColorTokens-nerc cip

Before the Lights Go Out

How the ColorTokens Xshield platform and its integrated ecosystem stand between North America’s power grid and digital adversaries. Note: AI generated image, please ignore errors. Let us not pretend that the threat ...
CISA on Life Support

CISA on Life Support

The latest shutdown may be temporary, but the damage at CISA is not. Staffing cuts, stalled leadership and political crossfire have hollowed out what was once a bright spot in federal cybersecurity ...
Security Boulevard
The Ghost in the Machine

The Ghost in the Machine

A recent report described the discovery of a cellular device embedded in a solar power inverter, which was not documented or known to be present until the device was dismantled and physically ...
actors, critical, infrastructure, threats, cybersecurity energy infrastructure CISA NSA

US and Other Countries Outline Principles for Securing OT

US security agencies and international counterparts list six principles critical infrastructure organizations should hold onto to ensure their OT environments are protected against the rising tide of cyberthreats coming their way ...
Security Boulevard
personal, information, geofence, Google, data, data privacy, data revenue, abstract, telemetry, data, security, classification, risk, TikTok, Clover, dope.security, sensitive data, Chorology, ACE, Baffle, data, Capitol Hill staffers data leak

CISA Warns Phobos Ransomware Groups Attacking Critical Infrastructure

Phobos, a complex ransomware-as-a-service (RaaS) operation that has been around for five years and is includes multiple variants, continues to target a range of critical infrastructure in the United States, including education, ...
Security Boulevard
SEC government legacy remote work cities mayors collaboration remote workforce security

5 Reasons the Public Sector Must Move Away From Legacy IT

Legacy IT software is costing the taxpayer, it’s damaging the security of public services infrastructure and it’s bad for the environment—something governments drastically need to address in the next 10 years if ...
Security Boulevard
actors, critical, infrastructure, threats, cybersecurity energy infrastructure CISA NSA

The Challenge of Regulatory Compliance for Critical Infrastructure

Healthcare has HIPAA. Credit cards and electronic payments have PCI DSS. Consumers have GDPR and CCPA. There is an alphabet soup of regulatory compliance requirements that many industries must follow to offer ...
Security Boulevard
Microsoft Colonial Pipeline, lessons, vulnerabilities pipedream supply chains CI/CD pipeline dev environment Linux

Of Pipelines And Cybersecurity

One of the scariest phrases I have ever encountered is “gasoline pipeline” –thousands of miles of three foot diameter pipes buried in the ground for decades carrying billions of gallons of one ...
Security Boulevard
Throwback Thursday: Whatever happened to Stuxnet?

Throwback Thursday: Whatever happened to Stuxnet?

Whatever happened to Stuxnet? Since it destroyed hundreds of centrifuges at a nuclear enrichment facility in Iran in 2010, the worm’s been quiet—but not idle. Compared to many of its malware colleagues, ...
President’s ‘cybersecurity moonshot’: Transformational or pie in the sky?

President’s ‘cybersecurity moonshot’: Transformational or pie in the sky?

Making the internet safe and secure in 10 years isn’t going to be easy, if it’s even possible. And that’s why NSTAC’s new proposal is a cyber security moonshot. Stop me if ...