Tuesday, June 24, 2025
Smart Again
  • Home
  • Trending
  • Politics
  • Law & Defense
  • Community
  • Contact Us
No Result
View All Result
Smart Again
  • Home
  • Trending
  • Politics
  • Law & Defense
  • Community
  • Contact Us
No Result
View All Result
Smart Again
No Result
View All Result
Home Politics

Biden Tightens Cybersecurity Rules, Forcing Trump to Make a Choice

January 16, 2025
in Politics
Reading Time: 6 mins read
0 0
A A
0
Biden Tightens Cybersecurity Rules, Forcing Trump to Make a Choice
Share on FacebookShare on Twitter


President Biden issued an executive order on Thursday requiring software companies selling their product to the federal government to prove they included ironclad security features that can thwart Chinese intelligence agencies, Russian ransomware gangs, North Korean cryptocurrency thieves and Iranian spies.

But it is unclear whether the Trump administration, intent on deregulation even while it vows to take on China in particular, will keep the overhauled cybersecurity rules.

The order, which came with four days left in Mr. Biden’s term, is the last in his administration’s four-year fight to secure American infrastructure and defeat increasingly ingenious surveillance operations.

But after four years of that daily, grinding confrontation — where much of the new cold war with China has played out — the hackers have usually come out ahead. In the past two years, there have been repeated, successful Chinese breaches of the utility grid, the nation’s pipelines, the telecommunications system and, in recent weeks, the Treasury Department. Those attacks have led the incoming Trump administration to complain that America’s defenses remain easily pierced and its deterrent capabilities insufficient.

As Mr. Biden’s list of new regulations and orders lengthens, covering issues like drilling off the East Coast and removing Cuba from the terrorism list, Mr. Trump’s advisers are complaining that the current administration is on a furious campaign to lock them in to its policies and mandates.

Some will be reversed next week, making many of Mr. Biden’s steps nothing more than an exiting political gesture. But the new cybersecurity requirements add a wrinkle to that debate, potentially setting up a conflict between the Trump administration’s vow to deregulate and its pledge to defend against Chinese intrusions into American networks.

The new rules would, for the first time, require companies to prove that software they sell to the federal government meets basic cybersecurity requirements, and to publish the evidence of those steps. They cite China’s “active and persistent cyberthreat to the United States” and waves of attacks from other nations and criminal groups.

Yet despite the 50 pages of requirements in the order, Mr. Biden is essentially abandoning the administration’s approach of coaxing private industry to invest in cybersecurity through voluntary programs and public-private partnerships.

He and his aides have concluded that the only way to get companies to invoke tough cybersecurity measures is to require those measures, and force the firms to make public their exact steps. That way, when there is another embarrassing breach, it will be clear whether the companies had left holes in their defenses.

The new order would expand federal authority over the software supply chain. The White House, often using existing authorities, has already put regulations on pipelines, railways and hospitals.

Anne Neuberger, the deputy national security adviser for cyber and emerging technologies who has led that drive, told reporters on Wednesday that the executive order, in the works for many months, was “designed to put the country on a path to defensible networks across the government and private sector.”

It was borne of bitter experience. Four years ago, when Mr. Biden was still the president-elect, Russia’s spy agencies had penetrated the code written by SolarWinds, a company that sold network management software to the government and Fortune 500 companies. Once SolarWinds updated that software and distributed it to its customers, Russia gained the ability to steal corporate secrets and conduct surveillance in federal agencies such as the Treasury and Commerce Departments.

Mr. Biden denounced the Russians, and his one meeting as president with President Vladimir V. Putin, in Geneva in 2021, was largely about Russian ransomware that was freezing up Colonial Pipeline, which provides gas and oil along the East Coast. After that session, Ms. Neuberger pressed agencies around the government to draft new requirements for companies doing business with them, hoping to use the federal contracting process to force changes in the way firms develop their software.

But the effort did not go far enough. Companies declared that their products met the new conditions, but never needed to prove their assertions. When hackers linked to one of China’s intelligence agencies recently breached the Treasury Department, gaining access to thousands of unclassified documents, they appeared to enter through software provided by the vendor BeyondTrust. Federal officials said the firm had represented itself as having met all cybersecurity requirements, but the new regulations would have forced it to make those steps public.

“We told companies producing software to just tell us that they were using it,” Ms. Neuberger said of older federal rules. “I think we’ve seen, over the last four years, we actually need proof.”

BeyondTrust has said little about the episode, except for brief statements that it “took measures to address a security incident in early December 2024” and “notified the limited number of customers.” It has declined to discuss how the breach happened.

Nor have the nation’s largest telecommunications firms said much about how China’s intelligence agencies found new, almost undetectable seams in their networks. The discovery allowed access to some of the government’s most secret systems for tapping phones with court orders as well as the unencrypted conversations of President-elect Donald J. Trump and Vice President-elect JD Vance. (It is unclear if the agencies exploited that access.)

“In the wake of headline-making cyberattacks over the past four years, like China’s compromise of Microsoft’s cloud, Russia’s disabling of a commercial satellite company and ransomware attackers forcing hospitals to postpone surgeries,” Ms. Neuberger said, “we’ve spent seven months carefully reviewing each hacking incident to determine exactly how the attackers got through the gates.”

The new rules most likely would not have made a difference in the surveillance operation against the telecommunications companies, called “Salt Typhoon.” They might have helped secure the electric grid and water pipelines against a different kind of hack linked to China, which was aimed at disabling those systems in the United States to deter help to Taiwan in case of military action over the island.

Under the latest guidelines, any company that is paid from the more than $100 billion that the federal government spends each year on software would be subject to the requirements. Violators could be referred to the Justice Department for civil prosecution.

The new rules would also put requirements on space systems, after Russia disabled a European satellite communications system by attacking its modems on the ground.

But carrying out the new order will be left to the Trump administration, which would have to enforce the deadlines, starting in about 120 days. A crucial moment will come then, if companies decide to test whether Mr. Trump will uphold the deadlines.

Ms. Neuberger noted that the Biden administration adopted many rules and orders left over from the previous Trump administration. She said she expected the returning administration “to do the same.” But that is hardly guaranteed.

And while Ms. Neuberger noted recently that building resilience into American networks has been a bipartisan effort, the incoming national security adviser, Representative Michael Waltz, has talked much more about responding to China with offensive cyberoperations.

So has John Ratcliffe, Mr. Trump’s pick for C.I.A. director. Mr. Ratcliffe said at his confirmation hearing on Wednesday that the United States was witnessing an “invasion through our digital borders from half a world away, in a few seconds and a few keystrokes.” He argued that America’s ability to deter such attacks had faltered.

“The deterrent effect has to be that there are consequences to our adversaries when they do that,” he said.



Source link

Tags: AnneBidenchoiceCyberattacks and HackersCybersecurityCyberwarfare and DefenseDonald JForcingJoseph R JrNeubergerRegulation and Deregulation of IndustryrulesTightensTrumpUnited States International RelationsUnited States Politics and Government
Previous Post

How much credit does Trump really deserve for the Gaza ceasefire?

Next Post

L.A. Officials Warn of Compromised Drinking Water in Fire-Ravaged Areas

Related Posts

Rachel Maddow Shows How Trump Is Failing To Keep America Safe
Politics

Rachel Maddow Shows How Trump Is Failing To Keep America Safe

June 24, 2025
Trump Blows A Gasket After Media Reports He May Have Failed To Destroy Iran’s Nuclear Program
Politics

Trump Blows A Gasket After Media Reports He May Have Failed To Destroy Iran’s Nuclear Program

June 23, 2025
The costs of restricting abortion? More than 0 billion per year.
Politics

The costs of restricting abortion? More than $130 billion per year.

June 23, 2025
Why Trump officials keep promising inevitably disappointing disclosures 
Politics

Why Trump officials keep promising inevitably disappointing disclosures 

June 23, 2025
Mahmoud Khalil, finally free, speaks out
Politics

Mahmoud Khalil, finally free, speaks out

June 23, 2025
Senate Democrats Kill Provision Allowing Trump To Ignore Courts In Big Beautiful Bill
Politics

Senate Democrats Kill Provision Allowing Trump To Ignore Courts In Big Beautiful Bill

June 22, 2025
Next Post
L.A. Officials Warn of Compromised Drinking Water in Fire-Ravaged Areas

L.A. Officials Warn of Compromised Drinking Water in Fire-Ravaged Areas

Mango’s ‘External Revenue Service’ Equals Tax Cuts For Billionaires

Mango's 'External Revenue Service' Equals Tax Cuts For Billionaires

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • Trending
  • Comments
  • Latest
A new book suggests a path forward for Democrats. The left hates it.

A new book suggests a path forward for Democrats. The left hates it.

March 20, 2025
The Worst, Most Important, Book I Read This Year

The Worst, Most Important, Book I Read This Year

December 21, 2024
“Ribbons of Rust” revisits The Beatles’ roots and the sounds that shaped them

“Ribbons of Rust” revisits The Beatles’ roots and the sounds that shaped them

February 13, 2025
Is the viral “let them” theory really that simple?

Is the viral “let them” theory really that simple?

March 10, 2025
Zero-sum politics is destroying America. We can build a way out.

Zero-sum politics is destroying America. We can build a way out.

March 22, 2025
“The Ugly Stepsister” rewrites “Cinderella” as a grotesque and darkly funny feminist fable

“The Ugly Stepsister” rewrites “Cinderella” as a grotesque and darkly funny feminist fable

April 18, 2025
“They stole an election”: Former Florida senator found guilty in “ghost candidates” scandal

“They stole an election”: Former Florida senator found guilty in “ghost candidates” scandal

0
The Hawaii senator who faced down racism and ableism—and killed Nazis

The Hawaii senator who faced down racism and ableism—and killed Nazis

0
The murder rate fell at the fastest-ever pace last year—and it’s still falling

The murder rate fell at the fastest-ever pace last year—and it’s still falling

0
Trump used the site of the first assassination attempt to spew falsehoods

Trump used the site of the first assassination attempt to spew falsehoods

0
MAGA church plans to raffle a Trump AR-15 at Second Amendment rally

MAGA church plans to raffle a Trump AR-15 at Second Amendment rally

0
Tens of thousands are dying on the disability wait list

Tens of thousands are dying on the disability wait list

0
Rachel Maddow Shows How Trump Is Failing To Keep America Safe

Rachel Maddow Shows How Trump Is Failing To Keep America Safe

June 24, 2025
Schiff Rips Trump’s Unconstitutional Attack On Iran

Schiff Rips Trump’s Unconstitutional Attack On Iran

June 24, 2025
“The 12 Day War”: Trump says Israel, Iran have reached tentative ceasefire agreement

“The 12 Day War”: Trump says Israel, Iran have reached tentative ceasefire agreement

June 23, 2025
“Grab your rhinestones!”: Dolly Parton announces six-show Las Vegas run

“Grab your rhinestones!”: Dolly Parton announces six-show Las Vegas run

June 23, 2025
The Supreme Court just stripped thousands of immigrants of their right to due process

The Supreme Court just stripped thousands of immigrants of their right to due process

June 23, 2025
3 ways Americans could pay for Trump’s war with Iran

3 ways Americans could pay for Trump’s war with Iran

June 23, 2025
Smart Again

Stay informed with Smart Again, the go-to news source for liberal perspectives and in-depth analysis on politics, social justice, and more. Join us in making news smart again.

CATEGORIES

  • Community
  • Law & Defense
  • Politics
  • Trending
  • Uncategorized
No Result
View All Result

LATEST UPDATES

  • Rachel Maddow Shows How Trump Is Failing To Keep America Safe
  • Schiff Rips Trump’s Unconstitutional Attack On Iran
  • “The 12 Day War”: Trump says Israel, Iran have reached tentative ceasefire agreement
  • About Us
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact Us

Copyright © 2024 Smart Again.
Smart Again is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Trending
  • Politics
  • Law & Defense
  • Community
  • Contact Us

Copyright © 2024 Smart Again.
Smart Again is not responsible for the content of external sites.

Go to mobile version