Archive for the ‘Cybersecurity’ Category

SolarWinds Breach: Did We Learn Our Lesson Yet?

Monday, December 28th, 2020

With time going by and no real response from the White House regarding the SolarWinds breach, it can be pretty easy to forget about it and move on to the next media cycle.  Because that’s what we tend to do here in the US. However, doing that is just NOT a good idea in this […]

New Cyber Superhero? Microsoft Flexes its Cyber Muscles

Friday, December 18th, 2020

It’s true that the current administration does not appear to be reacting to the massive CozyBear cyber breach it fell victim to this year, but fortunately, it appears that somebody is doing something. Who is that somebody? This little company you may have heard of before; it’s called “Microsoft.”  And if there was ever a […]

US Government’s Cyber Security is a National Embarrassment

Friday, December 18th, 2020

We have been reporting for quite a while now that the cyber security within the US government, in general, is just NOT up to par.  The recent breach we have discussed over the last week or so really highlighted that fact.  It was well-known even before this Russian cyberattack but not much has really been […]

DoD Gets Ready for First CMMC Audits

Thursday, December 17th, 2020

The DoD will begin including CMMC cyber security requirements in select solicitations beginning in 2021. Are you ready? It’s really not surprising that the DoD is concerned, especially if you have been following along with our last few blog posts about the massive breach that has compromised major US Governmental departments. As you probably know, […]

The Hack that Keeps on Hacking

Tuesday, December 15th, 2020

Every day, the information we learn about the FireEye hack just keeps getting increasingly worse. Last week we wrote about the hack occurring; yesterday we reported that not only was FireEye impacted, but the US government was, as well… Along with businesses and other governments across the globe; and today, we are starting to understand […]

Russian Attack on Cyber Security Firm Impacts US Government

Monday, December 14th, 2020

We wrote last week about the irony of FireEye being successfully infiltrated by hackers, and we cut them some slack because we realized that the attack was highly sophisticated…  FireEye is a $3.5 billion Cyber Security firm that has some big and important clients, like the US government, and though Russia is saying that the […]

GoDaddy Employees Tricked ONCE AGAIN

Tuesday, November 24th, 2020

GoDaddy employees were the target of a sophisticated (and successful) cyber attack… Again. GoDaddy is THE biggest domain registry across the globe.  In this scam, hackers were able to lure GoDaddy employees into transferring control and/or ownership of specific domains over to them, closely mimicking a ploy conducted in March, in which bad actors used […]

Hackers Leave Top Law Partner Functionally Homeless

Friday, November 20th, 2020

I’m not sure who exactly needs to hear this?  But for those in the back: Hackers.  Have.  No.  Shame. They not only give zero flips that there’s a deadly pandemic raging here in the US, but they are using the vulnerabilities created by virtual class- and boardrooms to their advantage… To extreme degrees. Just ask […]

Chris Krebs, Respected Director of CISO, Fired via Tweet

Wednesday, November 18th, 2020

In “news-that-comes-as-a-surprise-to-absolutely-nobody-paying-attention-but-is-still-noteworthy, Chris Krebs (who has been telling anyone that would listen for over a week now that he knows it’s only a matter of time before he is let go), respected Head of the Cybersecurity and Infrastructure Security Agency (CISA), was fired last night around 7 p.m. via a tweet… exactly two weeks to […]

Must I Comply with the New DFARS Interim Rule?

Wednesday, November 11th, 2020

Based on some confusing and potentially conflicting information we have found, we thought it was extremely important to clarify all expectations that the DoD has of its primes, subs and vendors. From listening to podcasts, watching and attending webinars, and reading any and every publication and white paper we can get our hands on, one […]

Cybersecurity Firm Hacked

Monday, November 9th, 2020

Well, isn’t that ironic? It’s not a good look… You peddle in protecting businesses from cyber attacks, only to fall victim to a successful cyber crime, yourself. But to be completely fair, this was a highly sophisticated and systematic attack (payback, perhaps?  That’s pure speculation, by the way!) by what appears to be a concentrated […]

NIST Dishonesty: What Happens When Contractors Aren’t Truthful

Monday, November 9th, 2020

Penalties: Case Studies (An Excerpt from Craig’s newest book: “Ultimate Guide to CMMC: How to Access Millions in Government Contracts”) As we have established, it is clear that the “self-reporting” and “honor system” for government contractors who are required to abide by NIST 800-171 to gain government contracts is NOT working. But just because everyone […]