FBI wants more help from hacked companies

The FBI’s cybersecurity investigations would be more successful if cybercrime victims were more forthcoming, Director Chris Wray told Senate appropriators on Wednesday. “If we don’t solve the riddle of how to get the private sector promptly and transparently working with…

States rely on National Guard cyber units

Governors in 27 have states called on the National Guard to help state and local agencies with cyber incident response and remediation, cyber defense analysis, election security planning, threat assessment and interagency planning, according to a blog by think tank…

MITRE expands ATT&CK-related capabilities

MITRE announced two new tools – D3FEND and ATT&CK Workbench — to help cybersecurity professionals defend their networks. The D3FEND framework, funded by the National Security Agency and still in the experimental research phase, helps cybersecurity professionals tailor defenses for…

NIST, FedRAMP push OSCAL for automated cloud review

The National Institute of Standards and Technology released Version 1.0.0 of the Open Security Controls Assessment Language (OSCAL), a machine-readable language. The agency has been working with the Federal Risk and Authorization Management Program (FedRAMP) to standardize authorization packages and…