Sunday, June 1, 2025
Smart Again
  • Home
  • Trending
  • Politics
  • Law & Defense
  • Community
  • Contact Us
No Result
View All Result
Smart Again
  • Home
  • Trending
  • Politics
  • Law & Defense
  • Community
  • Contact Us
No Result
View All Result
Smart Again
No Result
View All Result
Home Politics

Biden Tightens Cybersecurity Rules, Forcing Trump to Make a Choice

January 16, 2025
in Politics
Reading Time: 6 mins read
0 0
A A
0
Biden Tightens Cybersecurity Rules, Forcing Trump to Make a Choice
Share on FacebookShare on Twitter


President Biden issued an executive order on Thursday requiring software companies selling their product to the federal government to prove they included ironclad security features that can thwart Chinese intelligence agencies, Russian ransomware gangs, North Korean cryptocurrency thieves and Iranian spies.

But it is unclear whether the Trump administration, intent on deregulation even while it vows to take on China in particular, will keep the overhauled cybersecurity rules.

The order, which came with four days left in Mr. Biden’s term, is the last in his administration’s four-year fight to secure American infrastructure and defeat increasingly ingenious surveillance operations.

But after four years of that daily, grinding confrontation — where much of the new cold war with China has played out — the hackers have usually come out ahead. In the past two years, there have been repeated, successful Chinese breaches of the utility grid, the nation’s pipelines, the telecommunications system and, in recent weeks, the Treasury Department. Those attacks have led the incoming Trump administration to complain that America’s defenses remain easily pierced and its deterrent capabilities insufficient.

As Mr. Biden’s list of new regulations and orders lengthens, covering issues like drilling off the East Coast and removing Cuba from the terrorism list, Mr. Trump’s advisers are complaining that the current administration is on a furious campaign to lock them in to its policies and mandates.

Some will be reversed next week, making many of Mr. Biden’s steps nothing more than an exiting political gesture. But the new cybersecurity requirements add a wrinkle to that debate, potentially setting up a conflict between the Trump administration’s vow to deregulate and its pledge to defend against Chinese intrusions into American networks.

The new rules would, for the first time, require companies to prove that software they sell to the federal government meets basic cybersecurity requirements, and to publish the evidence of those steps. They cite China’s “active and persistent cyberthreat to the United States” and waves of attacks from other nations and criminal groups.

Yet despite the 50 pages of requirements in the order, Mr. Biden is essentially abandoning the administration’s approach of coaxing private industry to invest in cybersecurity through voluntary programs and public-private partnerships.

He and his aides have concluded that the only way to get companies to invoke tough cybersecurity measures is to require those measures, and force the firms to make public their exact steps. That way, when there is another embarrassing breach, it will be clear whether the companies had left holes in their defenses.

The new order would expand federal authority over the software supply chain. The White House, often using existing authorities, has already put regulations on pipelines, railways and hospitals.

Anne Neuberger, the deputy national security adviser for cyber and emerging technologies who has led that drive, told reporters on Wednesday that the executive order, in the works for many months, was “designed to put the country on a path to defensible networks across the government and private sector.”

It was borne of bitter experience. Four years ago, when Mr. Biden was still the president-elect, Russia’s spy agencies had penetrated the code written by SolarWinds, a company that sold network management software to the government and Fortune 500 companies. Once SolarWinds updated that software and distributed it to its customers, Russia gained the ability to steal corporate secrets and conduct surveillance in federal agencies such as the Treasury and Commerce Departments.

Mr. Biden denounced the Russians, and his one meeting as president with President Vladimir V. Putin, in Geneva in 2021, was largely about Russian ransomware that was freezing up Colonial Pipeline, which provides gas and oil along the East Coast. After that session, Ms. Neuberger pressed agencies around the government to draft new requirements for companies doing business with them, hoping to use the federal contracting process to force changes in the way firms develop their software.

But the effort did not go far enough. Companies declared that their products met the new conditions, but never needed to prove their assertions. When hackers linked to one of China’s intelligence agencies recently breached the Treasury Department, gaining access to thousands of unclassified documents, they appeared to enter through software provided by the vendor BeyondTrust. Federal officials said the firm had represented itself as having met all cybersecurity requirements, but the new regulations would have forced it to make those steps public.

“We told companies producing software to just tell us that they were using it,” Ms. Neuberger said of older federal rules. “I think we’ve seen, over the last four years, we actually need proof.”

BeyondTrust has said little about the episode, except for brief statements that it “took measures to address a security incident in early December 2024” and “notified the limited number of customers.” It has declined to discuss how the breach happened.

Nor have the nation’s largest telecommunications firms said much about how China’s intelligence agencies found new, almost undetectable seams in their networks. The discovery allowed access to some of the government’s most secret systems for tapping phones with court orders as well as the unencrypted conversations of President-elect Donald J. Trump and Vice President-elect JD Vance. (It is unclear if the agencies exploited that access.)

“In the wake of headline-making cyberattacks over the past four years, like China’s compromise of Microsoft’s cloud, Russia’s disabling of a commercial satellite company and ransomware attackers forcing hospitals to postpone surgeries,” Ms. Neuberger said, “we’ve spent seven months carefully reviewing each hacking incident to determine exactly how the attackers got through the gates.”

The new rules most likely would not have made a difference in the surveillance operation against the telecommunications companies, called “Salt Typhoon.” They might have helped secure the electric grid and water pipelines against a different kind of hack linked to China, which was aimed at disabling those systems in the United States to deter help to Taiwan in case of military action over the island.

Under the latest guidelines, any company that is paid from the more than $100 billion that the federal government spends each year on software would be subject to the requirements. Violators could be referred to the Justice Department for civil prosecution.

The new rules would also put requirements on space systems, after Russia disabled a European satellite communications system by attacking its modems on the ground.

But carrying out the new order will be left to the Trump administration, which would have to enforce the deadlines, starting in about 120 days. A crucial moment will come then, if companies decide to test whether Mr. Trump will uphold the deadlines.

Ms. Neuberger noted that the Biden administration adopted many rules and orders left over from the previous Trump administration. She said she expected the returning administration “to do the same.” But that is hardly guaranteed.

And while Ms. Neuberger noted recently that building resilience into American networks has been a bipartisan effort, the incoming national security adviser, Representative Michael Waltz, has talked much more about responding to China with offensive cyberoperations.

So has John Ratcliffe, Mr. Trump’s pick for C.I.A. director. Mr. Ratcliffe said at his confirmation hearing on Wednesday that the United States was witnessing an “invasion through our digital borders from half a world away, in a few seconds and a few keystrokes.” He argued that America’s ability to deter such attacks had faltered.

“The deterrent effect has to be that there are consequences to our adversaries when they do that,” he said.



Source link

Tags: AnneBidenchoiceCyberattacks and HackersCybersecurityCyberwarfare and DefenseDonald JForcingJoseph R JrNeubergerRegulation and Deregulation of IndustryrulesTightensTrumpUnited States International RelationsUnited States Politics and Government
Previous Post

How much credit does Trump really deserve for the Gaza ceasefire?

Next Post

L.A. Officials Warn of Compromised Drinking Water in Fire-Ravaged Areas

Related Posts

This week’s Reveal podcast: The EEOC’s identity crisis
Politics

This week’s Reveal podcast: The EEOC’s identity crisis

May 31, 2025
The FDA just approved a new Covid vaccine
Politics

The FDA just approved a new Covid vaccine

May 31, 2025
Jamie Raskin Launches Investigation Into Trump’s “Corrupt Pardon Spree”
Politics

Jamie Raskin Launches Investigation Into Trump’s “Corrupt Pardon Spree”

May 31, 2025
PBS Sues The Pants Off Of Donald Trump
Politics

PBS Sues The Pants Off Of Donald Trump

May 31, 2025
For trans people on Medicaid, Trump’s “Big, Beautiful Bill” is anything but
Politics

For trans people on Medicaid, Trump’s “Big, Beautiful Bill” is anything but

May 31, 2025
Trump Comes To Western Pennsylvania To Tell Steelworkers That He Is Killing Their Jobs By Doubling Tariffs
Politics

Trump Comes To Western Pennsylvania To Tell Steelworkers That He Is Killing Their Jobs By Doubling Tariffs

May 30, 2025
Next Post
L.A. Officials Warn of Compromised Drinking Water in Fire-Ravaged Areas

L.A. Officials Warn of Compromised Drinking Water in Fire-Ravaged Areas

Mango’s ‘External Revenue Service’ Equals Tax Cuts For Billionaires

Mango's 'External Revenue Service' Equals Tax Cuts For Billionaires

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • Trending
  • Comments
  • Latest
“A huge net positive”: Controversial “Squid Game” character challenges Western representation ideals

“A huge net positive”: Controversial “Squid Game” character challenges Western representation ideals

December 31, 2024
Will the next pope be liberal or conservative? Neither.

Will the next pope be liberal or conservative? Neither.

April 21, 2025
Why the Karen Read retrial might end differently this time

Why the Karen Read retrial might end differently this time

May 3, 2025
What Megyn Kelly gets right — and wrong — about Conclave 

What Megyn Kelly gets right — and wrong — about Conclave 

January 12, 2025
The roots of Donald Trump’s fixation with South Africa

The roots of Donald Trump’s fixation with South Africa

February 15, 2025
Amid chaos, new report reveals 40 percent of DOGE cuts won’t save any money

Amid chaos, new report reveals 40 percent of DOGE cuts won’t save any money

February 25, 2025
“They stole an election”: Former Florida senator found guilty in “ghost candidates” scandal

“They stole an election”: Former Florida senator found guilty in “ghost candidates” scandal

0
The Hawaii senator who faced down racism and ableism—and killed Nazis

The Hawaii senator who faced down racism and ableism—and killed Nazis

0
The murder rate fell at the fastest-ever pace last year—and it’s still falling

The murder rate fell at the fastest-ever pace last year—and it’s still falling

0
Trump used the site of the first assassination attempt to spew falsehoods

Trump used the site of the first assassination attempt to spew falsehoods

0
MAGA church plans to raffle a Trump AR-15 at Second Amendment rally

MAGA church plans to raffle a Trump AR-15 at Second Amendment rally

0
Tens of thousands are dying on the disability wait list

Tens of thousands are dying on the disability wait list

0
Ron Johnson: It’s Cool To Watch Buildings Collapse On 9-11

Ron Johnson: It’s Cool To Watch Buildings Collapse On 9-11

June 1, 2025
This week’s Reveal podcast: The EEOC’s identity crisis

This week’s Reveal podcast: The EEOC’s identity crisis

May 31, 2025
The FDA just approved a new Covid vaccine

The FDA just approved a new Covid vaccine

May 31, 2025
Jamie Raskin Launches Investigation Into Trump’s “Corrupt Pardon Spree”

Jamie Raskin Launches Investigation Into Trump’s “Corrupt Pardon Spree”

May 31, 2025
PBS challenges executive overreach

PBS challenges executive overreach

May 31, 2025
It’s Not The Migrants We Should Fear, Rather It’s The Scoundrels, Perverts, Scammers And Domestic Terrorists That Trump Is Pardoning.

It’s Not The Migrants We Should Fear, Rather It’s The Scoundrels, Perverts, Scammers And Domestic Terrorists That Trump Is Pardoning.

May 31, 2025
Smart Again

Stay informed with Smart Again, the go-to news source for liberal perspectives and in-depth analysis on politics, social justice, and more. Join us in making news smart again.

CATEGORIES

  • Community
  • Law & Defense
  • Politics
  • Trending
  • Uncategorized
No Result
View All Result

LATEST UPDATES

  • Ron Johnson: It’s Cool To Watch Buildings Collapse On 9-11
  • This week’s Reveal podcast: The EEOC’s identity crisis
  • The FDA just approved a new Covid vaccine
  • About Us
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact Us

Copyright © 2024 Smart Again.
Smart Again is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Trending
  • Politics
  • Law & Defense
  • Community
  • Contact Us

Copyright © 2024 Smart Again.
Smart Again is not responsible for the content of external sites.

Go to mobile version