ALL NEWS

US cyber officials issue sweeping directive requiring federal agencies to update systems vulnerable to hacking

Nov 3, 2021, 12:22 PM | Updated: 12:24 pm

US officials issued a sweeping directive on November 3 requiring federal civilian agencies to promp...

US officials issued a sweeping directive on November 3 requiring federal civilian agencies to promptly update hardware and software that is vulnerable to hacking following multiple breaches of government networks in recent years. Mandatory Credit: Shutterstock via CNN

    (CNN) — US officials issued a sweeping directive on Wednesday requiring federal civilian agencies to promptly update hardware and software that is vulnerable to hacking following multiple breaches of government networks in recent years.

The directive gives agencies just two weeks to remediate newly discovered software vulnerabilities, and requires agencies to have a process in place for mitigating the impact of those security issues. The directive does not apply to the Pentagon, which is in charge of its own networks.

The new policy comes after multiple warnings from US cybersecurity officials and outside experts that federal defenses have not kept pace with attempts by cybercriminals and state-sponsored hackers to access sensitive federal information. Alleged Russian hackers were able to go undetected for months last year in the unclassified networks of agencies such as the Justice Department before a private firm discovered the intrusions.

The directive sends a “clear message to all organizations across the country” to address vulnerabilities that hackers are actively exploiting to access networks, said the US Cybersecurity and Infrastructure Security Agency (CISA), which issued the directive.

The new CISA directive is an attempt to break the US government from a cycle of having to clean up from one big hack after another and instead keep key systems that hackers are trying to breach updated. Left unaddressed, software bugs can linger in systems for years and offer a path for spies and criminal groups to siphon off data.

The Wall Street Journal was first to report on the new CISA directive.

While timely updates of software vulnerabilities alone are not enough to blunt the impact of advanced hacking operations, the Biden administration is hoping a multi-pronged approach will. CISA, which is part of the Department of Homeland Security, is investing millions of dollars in better security technologies and methods to more quickly detect hacks, officials say.

“Every day, our adversaries are using known vulnerabilities to target federal agencies,” CISA Director Jen Easterly said in a statement on Wednesday. “As the operational lead for federal cybersecurity, we are using our directive authority to drive cybersecurity efforts toward mitigation of those specific vulnerabilities that we know to be actively used by malicious cyber actors.”

The White House has made cybersecurity a top national and economic security issue, particularly after the May ransomware attack on computers at Colonial Pipeline, the main artery for delivering fuel to the East Coast. Colonial Pipeline was forced to shut down for days, causing long lines at gas stations in multiple states.

President Joe Biden in June called on Russian President Vladimir Putin to rein in the criminal hackers operating from Russian soil that experts believe are responsible for the damaging ransomware incidents at Colonial Pipeline and elsewhere.

Some Russian-speaking criminal groups have gone quiet since the Biden-Putin meeting, while others have continued to hold US companies for ransom.

The White House has also sought to rally allies to crack down on the sources of funding for ransomware gangs. The National Security Council last month hosted an initial 30-country meeting where governments said they would do more to strengthen network defenses against the threat. A follow-up meeting with 35 countries was held Tuesday and covered efforts to “accelerate cooperation to counter ransomware,” according to a White House statement.

The-CNN-Wire
™ & © 2021 Cable News Network, Inc., a WarnerMedia Company. All rights reserved.

We want to hear from you.

Have a story idea or tip? Send it to the KSL NewsRadio team here.

All News

President Joe Biden speaks in south carolina, biden spoke today about recent college campus protest...

Mariah Maynes

President Biden addresses recent college campus protests

President Biden delivered a speech addressing recent college campus protests on Thursday morning, saying that violence is illegal.

30 minutes ago

Ashnaelle Bijoux poses on campus, Saturday, April 27, 2024, at Norwich Free Academy in Norwich, Con...

COLLIN BINKLEY AP Education Writer

Experts fear ‘catastrophic’ college declines due to botched FAFSA rollout

The bungled rollout of a new federal student aid form has left millions of students in limbo and some wondering if their college dreams will survive.

2 hours ago

The implant for this type of ACL procedure is made from bovine collagen and is mixed with the patie...

Emma Benson, KSLTV.com

Doctors say new ‘BEAR’ procedure could be future of ACL reconstruction

Doctors are optimistic that a new procedure could be the future of ACL reconstruction.  

3 hours ago

Older Americans being scammed...

ALANNA DURKIN RICHER Associated Press

Scammers stole more than $3.4 billion from older Americans last year, an FBI report says

Losses from scams reported by older Americans last year were up 11% over the year before, according to the FBI's report.

4 hours ago

UCLA pro-Palestine demonstrators...

KRYSTA FAURIA, ETHAN SWOPE, JAKE OFFENHARTZ and JOSEPH B. FREDERICK Associated Press

Police move in and begin dismantling pro-Palestinian demonstrators’ encampment at UCLA

Police entered UCLA campus to disperse pro-Palestine demonstrators and they began to pull down canopies and tents on Thursday.

4 hours ago

"Purple Rain" House - AirBnb Icons...

Lisa Respers France, CNN

Airbnb’s Icons allow you to drift off in the ‘Up’ house or rest in Prince’s ‘Purple Rain’ mansion

If you have ever wanted to dream in the balloon-lifted “Up” house, party with Kevin Hart or jam with Doja Cat, Airbnb has just the thing.

4 hours ago

Sponsored Articles

a doctor putting her hand on the chest of her patient...

Intermountain Health

Intermountain nurse-midwives launch new gynecology access clinic

An access clinic launched by Intermountain nurse-midwives provides women with comprehensive gynecology care.

Young couple hugging while a realtor in a suit hands them keys in a new home...

Utah Association of Realtors

Buying a home this spring? Avoid these 5 costly pitfalls

By avoiding these pitfalls when buying a home this spring, you can ensure your investment will be long-lasting and secure.

a person dressed up as a nordic viking in a dragon boat resembling the bear lake monster...

Bear Lake Convention and Visitors Bureau

The Legend of the Bear Lake Monster

The Bear Lake monster has captivated people in the region for centuries, with tales that range from the believable to the bizarre.

...

Live Nation Concerts

All the artists coming to Utah First Credit Union Amphitheatre (formerly USANA Amp) this summer

Summer concerts are more than just entertainment; they’re a celebration of life, love, and connection.

Mother and cute toddler child in a little fancy wooden cottage, reading a book, drinking tea and en...

Visit Bear Lake

How to find the best winter lodging in Bear Lake, Utah

Winter lodging in Bear Lake can be more limited than in the summer, but with some careful planning you can easily book your next winter trip.

Happy family in winter clothing at the ski resort, winter time, watching at mountains in front of t...

Visit Bear Lake

Ski more for less: Affordable ski resorts near Bear Lake, Utah

Plan your perfect ski getaway in Bear Lake this winter, with pristine slopes, affordable tickets, and breathtaking scenery.

US cyber officials issue sweeping directive requiring federal agencies to update systems vulnerable to hacking