<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="https://one.sightlinemg.com/c4isrnet/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>C4ISRNet - Media for the Intelligence-Age Military | C4ISRNET</title>
	<atom:link href="https://one.sightlinemg.com/c4isrnet/author/aaron-boyd/feed/" rel="self" type="application/rss+xml" />
	<link>https://one.sightlinemg.com/c4isrnet</link>
	<description>Media for the Intelligence-Age Military &#124; C4ISRNET</description>
	<lastBuildDate>Sat, 08 Aug 2026 18:27:59 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.4</generator>

<image>
	<url>https://one.sightlinemg.com/wp-content/uploads/2026/06/favicon-c4i.png?w=32</url>
	<title>C4ISRNet - Media for the Intelligence-Age Military | C4ISRNET</title>
	<link>https://one.sightlinemg.com/c4isrnet</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255331819</site><atom:link rel="next" type="application/rss+xml" href="https://one.sightlinemg.com/c4isrnet/feed/?paged=2" />
	<item>
		<title>&#8216;Tis the season for CyberCon</title>
		<link>https://one.sightlinemg.com/c4isrnet/thought-leadership/2017/11/20/tis-the-season-for-cybercon/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/thought-leadership/2017/11/20/tis-the-season-for-cybercon/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Mon, 20 Nov 2017 20:25:52 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Opinion]]></category>
		<category><![CDATA[Thought Leadership]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/11/20/tis-the-season-for-cybercon/</guid>

					<description><![CDATA[It’s that time of year again. A time when people come together to catch up on the last 12 months and reconnect with friends and colleagues.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/thought-leadership/2017/11/20/tis-the-season-for-cybercon/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17227</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/C4-11-16-2016-CYBERCON-DW-1534.JPG.jpg" width="2000" height="1333" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">It’s that time of year again. A time when people come together to catch up on the last 12 months and reconnect with friends and colleagues.</p>



<p class="wp-block-paragraph">That’s right, it’s time for <a href="http://cybercon.fifthdomain.com/" title="" data-original-title="">the annual CyberCon</a>.</p>



<p class="wp-block-paragraph">Join us on Tuesday, Nov. 28, for the annual gettogether of top federal and military officials and academic thinkers in cyber, from information security to offensive and defensive operations.</p>



<p class="wp-block-paragraph">This year’s theme ― Beyond Cybersecurity ― reflects the latest thinking in cyber, moving past concentrating on securing data to a wider view of the landscape. To be sure, cybersecurity is an integral part of the puzzle. But to attain true security in cyberspace, the conversation must include all aspects of the cyberthreat and options for deterrence and response.</p>



<p class="wp-block-paragraph">From its inception, CyberCon has been a venue to discuss the latest in cyber from a holistic standpoint, bringing together civilian and military, government and academia, U.S. and international partners. This year is no different, with an impressive lineup of speakers, including, among others:</p>



<ul class="wp-block-list"><li>Sen. Sheldon Whitehouse, D-R.I.<br></li><li>Rep. Elise Stefanik, R-N.Y.<br></li><li>Dr. Brian Pierce, Director of DARPA’s Information Innovation Office<br></li><li>Brig. Gen. Timothy Haugh, Director of Intelligence for U.S. Cyber Command<br></li><li>Col. Todd Stratton, Director of AFCYBER Forward<br></li><li>Deborah Pierre-Louis, Director of Policy, Liaison and Training Office at the State Department<br></li><li>Trent Teyema, Cyber Readiness Section Chief in the FBI Cyber Division<br></li><li>Jim Piche, Homeland Sector Director at GSA FEDSIM<br></li><li>Kate Charlet, former acting Deputy Assistant Secretary of Defense for Cyber Policy<br></li><li>Sean Kanuck, former National Intelligence Officer for Cyber Issues<br></li></ul>



<p class="wp-block-paragraph">Panel topics include taking the cyberwar to terrorists online, battling information warfare in cyberspace, the new critical infrastructure in need of defending and the latest training techniques for our cyber defenders and warriors.</p>



<p class="wp-block-paragraph">The conference is a unique opportunity for attendees to have face-to-face interaction and dialogue with senior leadership across the branches of government and the military, including high-level policy setters and decision-makers.</p>



<p class="wp-block-paragraph">Fifth Domain, Federal Times, C4ISRNET and Defense News are proud to present the third annual CyberCon at the Ritz-Carlton in Pentagon City on Nov. 28. We look forward to seeing you there, as well.</p>



<p class="wp-block-paragraph"><b><i><a href="https://www.eventbrite.com/e/cybercon-2017-registration-36440395203?aff=es2" title="">Register now to secure your seat.</a></i></b></p>



<p class="wp-block-paragraph"><br/></p>
]]></content:encoded>
	</item>
		<item>
		<title>Government’s biggest cybersecurity program is evolving</title>
		<link>https://one.sightlinemg.com/c4isrnet/home/2017/10/30/governments-biggest-cybersecurity-program-is-evolving/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/home/2017/10/30/governments-biggest-cybersecurity-program-is-evolving/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Mon, 30 Oct 2017 18:43:12 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/10/30/governments-biggest-cybersecurity-program-is-evolving/</guid>

					<description><![CDATA[CDM DEFEND will take the acquisition cycle out of the equation for agencies looking for new cybersecurity solutions.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/home/2017/10/30/governments-biggest-cybersecurity-program-is-evolving/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">15810</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/635606498779220051-dhs-cdmjpg.jpg" width="534" height="401" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Earlier this year, program managers in the Department of Homeland and the General Services Administration’s FEDSIM undertook a redesign of the Continuous Diagnostics and Mitigation (CDM) program, the largest cybersecurity effort in the federal government.</p>



<p class="wp-block-paragraph">While the program has a shiny new name — CDM DEFEND, which stands for Dynamic and Evolving Federal Enterprise Network Defense — program managers assert that this is more than just a rebranding.</p>



<p class="wp-block-paragraph">“It’s an effort to replace the CDM BPAs that expire in August of 2018,” explained Kevin Cox, CDM program manager at DHS, during a discussion Oct. 30 at the annual American Council for Technology and Industry Advisory Council (ACT-IAC) Executive Leadership Conference in Williamsburg, Va. “It will follow the same model of how the agencies are grouped, then we will be competing different task orders for system integrators to partner with those agencies.”</p>



<p class="wp-block-paragraph">The focus on partnerships is key, said Cox, as the new CDM model will be less about buying specific services and technologies and more about creating a strong cybersecurity posture that can evolve over time.</p>



<p class="wp-block-paragraph">“We’re not looking for a specific technology; we’re not looking for a specific cyber solution,” said Jim Piche, homeland security director for FEDSIM. “We’re going to take the acquisition cycles out of it so that we can identify, acquire and deploy those cybersecurity tools at the speed they need to be deployed rather than getting into another procurement cycle.”</p>



<p class="wp-block-paragraph">Using GSA’s Alliant contract vehicle — and, subsequently, Alliant 2 as that contract goes into effect — CIO offices will issue a task order with a system integrator that will help the agency develop cybersecurity goals and discover the right technical solutions to achieve those goals. Then, over the life of the task order — five to six years, according to Cox — that framework can be adjusted as new tools and solutions are developed, and those products can be acquired without having to issue a new task order or contract.</p>



<p class="wp-block-paragraph">“This is not a BPA, it’s not an IDIQ,” Piche said. “It is a single-award task order to an integrator that is incrementally funded as a cost-type task order.”</p>



<p class="wp-block-paragraph">That doesn’t mean the whole CDM system will be thrown out.</p>



<p class="wp-block-paragraph">“What’s still the same is the inextricable relationship that Kevin and I have, the CDM program office and GSA … to bring the best innovation solutions to support the CDM program,” Piche said. “The other thing that hasn’t changed is the scope: every federal agency is a customer.”</p>



<p class="wp-block-paragraph">Finally, Piche noted the program’s reliance on industry. The program currently works with more than 100 companies and that isn’t expected to change going forward.</p>



<p class="wp-block-paragraph">“What we’re trying to get out of the CDM program is better cybersecurity,” Piche said. “You can also read that as ‘compliant cybersecurity’ or ‘more efficient cybersecurity.’ But we’re also trying to do it more affordably.”</p>



<p class="wp-block-paragraph">To be both effective and affordable, the contract vehicle needs to be able to adapt to the ever-changing landscape of cybersecurity.</p>



<p class="wp-block-paragraph">“We don’t know today what better cybersecurity is going to look like in 2019 or 2020 or as we get to the tail end of this project,” Piche said. Using this more flexible model will allow agencies to “redefine what is better cybersecurity in 2019 and 2020.”</p>
]]></content:encoded>
	</item>
		<item>
		<title>Rep. Hurd talks MGT Act, Cyber National Guard and future of federal IT</title>
		<link>https://one.sightlinemg.com/c4isrnet/newsletters/2017/09/22/rep-hurd-talks-mgt-act-cyber-national-guard-and-future-of-federal-it/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/newsletters/2017/09/22/rep-hurd-talks-mgt-act-cyber-national-guard-and-future-of-federal-it/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Fri, 22 Sep 2017 16:03:47 +0000</pubDate>
				<category><![CDATA[Congress]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/09/22/rep-hurd-talks-mgt-act-cyber-national-guard-and-future-of-federal-it/</guid>

					<description><![CDATA[Rep. Will Hurd, R-Texas, who shepherded the House version of the bill, spoke with Federal Times about its chances in conference, what it means for federal CIOs and what’s next for government IT legislation.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/newsletters/2017/09/22/rep-hurd-talks-mgt-act-cyber-national-guard-and-future-of-federal-it/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">12280</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/635854340228515261-hurdjpg.jpg" width="534" height="401" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph"><i>The Senate passed the Modernizing Government Technology (MGT) Act as an amendment to the 2018 National Defense Authorization Act (NDAA). Rep. Will Hurd, R-Texas, who shepherded the House version of the bill, spoke with Federal Times about its chances in conference, what it means for federal CIOs and what’s next for government IT legislation.</i></p>



<p class="wp-block-paragraph"><b>The last piece of major federal legislation to get passed, FITARA, was also wrapped into NDAA. What do you think about using the defense authorization bill to take care of civilian IT issues?</b></p>



<p class="wp-block-paragraph">I think it’s a vehicle to move legislation. And it’s going to be something that ultimately impacts the Department of Defense, as well, as well as security and being able to improve the defense of the .gov infrastructure. I think it’s within the same realm of making sure that we’re defending our digital infrastructure.</p>



<p class="wp-block-paragraph"><b>Are you expecting the IT modernization amendment to change at all in conference?</b></p>



<p class="wp-block-paragraph">I take every step in the process separately. But the likelihood that there are any changes are low. Whenever you have agreement in the House and Senate on something, that is unlikely to be something that’s changed in the conference.</p>



<p class="wp-block-paragraph">I feel good because the majority leader and the policies office and [Rep.] Steny Hoyer [D-Md.] have been instrumental in getting this legislation moving. The recent legislation in the Senate, with Sen. [Ron] Johnson [R-Wisc.], Sen. [Jerry] Moran [R-Kan.] and Sen. [Tom] Udall [D-N.M.] putting this all together, I think we’re not going to have any problems with the conference committee.</p>



<p class="wp-block-paragraph">I’m looking forward to getting this to the president’s desk to sign and getting this new tool to the CIOs across government.</p>



<p class="wp-block-paragraph"><b>How the law actually rolls out will depend on the guidance issued by the Office of Management and Budget. What would you like to see in that guidance? What would you like OMB to know about your intent behind the legislation?</b></p>



<p class="wp-block-paragraph">OMB and the Office of American Innovation have been instrumental in the process. We’ve been working with them from the very beginning on the intent and the capabilities. They’ve already put in a lot of time and significant effort thinking through how to use the MGT Act as a tool for CIOs to modernize and to upgrade to the latest technology.</p>



<p class="wp-block-paragraph">My advice to OMB is, this is a tool designed for federal CIOs to modernize: give them the broader authorities and powers to utilize this tool.</p>



<p class="wp-block-paragraph"><b>The main funding mechanism requires agencies to reprogram funds. There is also a central working fund, but no dollar-figure attached in the MGT Act. How big should that central fund be and how should it be used?</b></p>



<p class="wp-block-paragraph">I think what we had in the recent [budget] legislation – $250 million – is more than enough. I think the real focus of MGT was having every federal agency be a laboratory in how to do modernization.</p>



<p class="wp-block-paragraph">Some are better prepared to take advantage of MGT than others. Those ones that aren’t as prepared, utilizing this centralized fund will be a vehicle to help jumpstart those modernization activities.</p>



<p class="wp-block-paragraph">I was always fine with the $250 million number. I think the president’s budget was fine with that level of appropriation.</p>



<p class="wp-block-paragraph"><b>How do you think the bill turned out and what impact will it have on federal operations?</b></p>



<p class="wp-block-paragraph">I’m excited to finally get this done. I feel good that we are now giving another tool for our federal CIOs to introduce the latest technology to defend their digital infrastructure and provide a more efficient service to the American people.</p>



<p class="wp-block-paragraph">It’s a good day.</p>



<p class="wp-block-paragraph"><b>If MGT does make it through reconciliation, what’s the next big federal IT legislation you’d like to work on?</b></p>



<p class="wp-block-paragraph">By the end of the next fiscal year, integrating the oversight of these working capital funds into the FITARA scorecard.</p>



<p class="wp-block-paragraph">We call it the FITARA scorecard but it really is a digital hygiene scorecard. So, making sure to see whether agencies are utilizing these working capital funds or not. It’s another point we’ll be able to do oversight on. That’s step one.</p>



<p class="wp-block-paragraph">Now, legislatively, the big initiative we’re going to move to now is the concept of a Cyber National Guard. It’s something that we’ve been talking about and researching on and I think we have an idea on a framework of how to get this done. Now it’s time that my staff and my team will be able to focus our attention on over the next few months.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Senate paves way for modernizing federal IT in NDAA</title>
		<link>https://one.sightlinemg.com/c4isrnet/newsletters/2017/09/19/senate-paves-way-for-modernizing-federal-it-n-ndaa/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/newsletters/2017/09/19/senate-paves-way-for-modernizing-federal-it-n-ndaa/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Tue, 19 Sep 2017 15:15:22 +0000</pubDate>
				<category><![CDATA[Congress]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/09/19/senate-paves-way-for-modernizing-federal-it-n-ndaa/</guid>

					<description><![CDATA[Once again, Congress has passed federal IT legislation on the back of a national defense spending bill.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/newsletters/2017/09/19/senate-paves-way-for-modernizing-federal-it-n-ndaa/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">12353</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/will-hurd.jpg.jpg" width="3000" height="2000" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Once again, Congress has passed federal IT legislation on the back of a national defense spending bill.</p>



<p class="wp-block-paragraph">Wrapped into the 2018 National Defense Authorization Act passed by the Senate Sept. 18 is a version of the House Modernizing Government Technology (MGT) Act, which requires federal agencies to upgrade their IT systems for efficiency and cost savings, as well as security.</p>



<p class="wp-block-paragraph">The last major IT reform bill — the Federal IT Acquisition Reform Act (FITARA) — passed in 2014 as part of that year’s defense authorization, as well.</p>



<p class="wp-block-paragraph">The MGT Act is the final version of a bill that has taken many forms, beginning with a call from then-President Obama to modernize the government’s technology using a $3.1 billion central fund. While the bill includes the fund, it does not include a dollar amount. Instead, the main funding mechanism in the bill is agencies own budgets, portions of which will be diverted toward working capital funds dedicated to modernization efforts.</p>



<p class="wp-block-paragraph">“The amount of money that our federal government spends on antiquated technology is mindboggling,” Rep. Will Hurd, R-Texas, who sponsored the House version of the bill, said Monday. “Outdated technology policies and poor cybersecurity hygiene have riddled government agencies for decades, leaving our digital information vulnerable to hacks and costing taxpayers billions.”</p>



<p class="wp-block-paragraph">The working capital funds will enable agencies to set aside funding for four priority goals:</p>



<p class="wp-block-paragraph">The central Technology Modernization Fund will be administered by GSA Technology Transformation Service Commissioner Rob Cook, with additional oversight from a to-be-created Technology Modernization Board.<br></p>



<ul class="wp-block-list"><li>Improve, retire or replace existing information technology systems to enhance cybersecurity and to improve efficiency and effectiveness;</li><li>Transition legacy information technology systems to cloud computing and other innovative platforms and technologies;<br></li><li>Assist and support efforts to provide adequate, risk-based and cost-effective information technology capabilities that address evolving threats to information security; and<br></li><li>Reimburse amounts transferred to the agency from the Technology Modernization Fund (established under this bill), with the approval of such agency’s Chief Information Officer.<br></li></ul>



<p class="wp-block-paragraph">While the MGT Act is focused on civilian agencies, aging IT systems pose a serious risk to national security, making the amendment a surprisingly good fit for a defense bill.</p>



<p class="wp-block-paragraph">“This major legislation to modernize the federal government’s grossly outdated IT systems will strengthen our national security and save taxpayers millions,” said Sen. Tom Udall, D-N.M., who co-sponsored the NDAA amendment along with Sen. Jerry Moran, R-Kan.</p>



<p class="wp-block-paragraph">Udall pointed out that some 75 percent of the government’s $80 billion IT budget is spent maintaining legacy systems.</p>



<p class="wp-block-paragraph">“With the MGT Act’s flexible funding options, we can break that cycle and bring the federal government into the modern era — tackling dangerous cyber vulnerabilities and protecting the American people from increasingly severe cyberattacks, and empowering agencies to move forward with long-overdue projects to streamline how the federal government operates,” he said.</p>



<p class="wp-block-paragraph">This year’s NDAA also included a provision on open government, the Open, Public, Electronic and Necessary (OPEN) Government Data Act, which requires agencies to publish open data in machine-readable formats.</p>



<p class="wp-block-paragraph">“By requiring all federal agencies to publish their information in open, machine-readable formats, this reform will bring about greater efficiency within government and unprecedented transparency outside government,” said Hudson Hollister, executive director of the Data Coalition.</p>



<p class="wp-block-paragraph">The NDAA — with the MGT and OPEN amendments — now heads to conference to be reconciled with the House bill passed in July.</p>
]]></content:encoded>
	</item>
		<item>
		<title>DHS gives agencies 90 days to purge all Kaspersky products</title>
		<link>https://one.sightlinemg.com/c4isrnet/cyber/2017/09/13/dhs-gives-agencies-90-days-to-purge-all-kaspersky-products/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/cyber/2017/09/13/dhs-gives-agencies-90-days-to-purge-all-kaspersky-products/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Wed, 13 Sep 2017 17:47:54 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/09/13/dhs-gives-agencies-90-days-to-purge-all-kaspersky-products/</guid>

					<description><![CDATA[After months of current and former U.S. government officials warning against using cybersecurity products developed and sold by Russia-based Kaspersky Lab, acting Homeland Security Secretary Elaine Duke issued a binding operational directive on Wednesday telling all federal agencies to get Kaspersky software off their systems within 90 days.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/cyber/2017/09/13/dhs-gives-agencies-90-days-to-purge-all-kaspersky-products/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">27234</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP17183347973330.jpg.jpg" width="4553" height="3035" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">After months of current and former U.S. government officials warning against using cybersecurity products developed and sold by Russia-based Kaspersky Lab, acting Homeland Security Secretary Elaine Duke issued a binding operational directive on Wednesday telling all federal agencies to get Kaspersky software off their systems within 90 days.</p>



<p class="wp-block-paragraph">“This action is based on the information security risks presented by the use of Kaspersky products on federal information systems,” Duke said in a release announcing the BOD. “The department is concerned about the ties between certain Kaspersky officials and Russian intelligence agencies to request or compel assistance from Kaspersky and to intercept communications transiting Russian networks.”</p>



<p class="wp-block-paragraph">Duke cited the anti-virus’ broad access to files and secure areas of federal networks on which the software is installed.</p>


	<aside class="smg-interstitial-link wp-block-smg-interstitial-link">
		<a href="https://one.sightlinemg.com/c4isrnet/home/2017/07/11/us-government-backing-away-from-russia-based-kaspersky-labs/" class="smg-interstitial-link__inner">
							<div class="smg-interstitial-link__media">
					<img decoding="async" width="300" height="200" src="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP17025441456449.jpg.jpg?w=300" class="smg-interstitial-link__image wp-post-image" alt="" />				</div>
						<div class="smg-interstitial-link__content">
				<span class="smg-interstitial-link__kicker">Related</span>
				<h3 class="smg-interstitial-link__title">US government backing away from Russia-based Kaspersky Labs</h3>
									<p class="smg-interstitial-link__excerpt">The fate of Kaspersky Labs within the U.S. government appears to be in a death spiral as fresh reports seem to link the Russian cybersecurity company directly to Russian government intelligence and security agencies, a long founded claim disavowed by the companys chief.</p>
							</div>
		</a>
	</aside>
	


<p class="wp-block-paragraph">“The risk that the Russian government, whether acting on its own or in collaboration with Kaspersky, could capitalize on access provided by Kaspersky products to compromise federal information and information systems directly implicates U.S. national security,” she added.</p>



<p class="wp-block-paragraph">The directive gives agencies 30 days to identify all instances of Kaspersky products on their networks; 60 days to work up plans to remove those products; and 90 days to implement those plans. That means agencies must be clear of Kaspersky by Dec. 12, “unless directed otherwise by DHS based on new information.”</p>



<p class="wp-block-paragraph">“This is a risk-based decision we need to make,” White House Cybersecurity Coordinator Rob Joyce said Wednesday while speaking at the annual Billington Cybersecurity Summit. “For us the idea of a piece of software that’s going to live on our networks, going to touch every file on those networks, going to be able to at the discretion of the company decide what goes back to their cloud in Russia —&nbsp;and then what you really need to understand is under Russian law the company must collaborate with the FSB. So for us in the government that was an unacceptable risk.”</p>



<p class="wp-block-paragraph">DHS said Kaspersky will be given a chance to offer a “written response addressing the department’s concerns or to mitigate those concerns,” an offer that is also extended to other companies that feel they will be adversely impacted by this directive.</p>



<p class="wp-block-paragraph">“Given that Kaspersky Lab doesn’t have inappropriate ties with any government, the company is disappointed with the decision by the U.S. Department of Homeland Security, but also is grateful for the opportunity to provide additional information to the agency in order to confirm that these allegations are completely unfounded,” Kaspersky Lab told Fifth Domain in an email Wednesday.</p>



<p class="wp-block-paragraph">The comment continued:</p>










	<aside class="smg-interstitial-link wp-block-smg-interstitial-link">
		<a href="https://one.sightlinemg.com/c4isrnet/home/2017/07/06/russian-anti-virus-ceo-offers-up-code-for-us-government-scrutiny/" class="smg-interstitial-link__inner">
							<div class="smg-interstitial-link__media">
					<img loading="lazy" decoding="async" width="300" height="200" src="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP17183347973330.jpg.jpg?w=300" class="smg-interstitial-link__image wp-post-image" alt="" />				</div>
						<div class="smg-interstitial-link__content">
				<span class="smg-interstitial-link__kicker">Related</span>
				<h3 class="smg-interstitial-link__title">Russian anti-virus CEO offers up code for US government scrutiny</h3>
									<p class="smg-interstitial-link__excerpt">The chief executive of Russia&#039;s Kaspersky Lab says he&#039;s ready to have his company&#039;s source code examined by U.S. government officials to help dispel long-lingering suspicions about his company&#039;s ties to the Kremlin.</p>
							</div>
		</a>
	</aside>
	


<p class="wp-block-paragraph">U.S. intelligence community officials have long been skeptical of Kaspersky products being used within the government and critical infrastructure, though few have spoken publicly about those concerns.</p>



<p class="wp-block-paragraph">Richard Ledgett, who was most recently deputy director of NSA until his retirement at the end of April, spoke about the U.S. intelligence community’s concerns in a July podcast interview.</p>



<p class="wp-block-paragraph">“The concern over Kaspersky is well founded and I think that there’s growing recognition — there has been for a while and more recently [within] Congress — that we probably don’t want that in really significant parts of the government or critical infrastructure networks,” he said.</p>



<p class="wp-block-paragraph">Ledgett, like most current officials, noted there is much he cannot say on this topic.</p>



<p class="wp-block-paragraph"><i>Fifth Domain reporter Mark Pomerleau contributed to this report.</i></p>


	<aside class="smg-interstitial-link wp-block-smg-interstitial-link">
		<a href="https://one.sightlinemg.com/c4isrnet/congress/2017/07/31/lawmaker-wants-to-know-which-agencies-are-using-kaspersky-software/" class="smg-interstitial-link__inner">
							<div class="smg-interstitial-link__media">
					<img decoding="async" width="300" height="200" src="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP17025441456449.jpg.jpg?w=300" class="smg-interstitial-link__image wp-post-image" alt="" />				</div>
						<div class="smg-interstitial-link__content">
				<span class="smg-interstitial-link__kicker">Related</span>
				<h3 class="smg-interstitial-link__title">Lawmaker wants to know which agencies are using Kaspersky software</h3>
									<p class="smg-interstitial-link__excerpt">The House Science, Space and Technology Committee is concerned that antivirus products could be used by Russia for espionage, sabotage or other activities against the United States.</p>
							</div>
		</a>
	</aside>
	]]></content:encoded>
	</item>
		<item>
		<title>1st Federal CISO offers Trump administration cyber advice</title>
		<link>https://one.sightlinemg.com/c4isrnet/cyber/2017/08/07/live-first-federal-ciso-gen-gregory-touhill/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/cyber/2017/08/07/live-first-federal-ciso-gen-gregory-touhill/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Mon, 07 Aug 2017 18:57:20 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/08/07/live-first-federal-ciso-gen-gregory-touhill/</guid>

					<description><![CDATA[Chatting live with Gen. Gregory Touhill, the first federal CISO, on the state of federal cybersecurity and his new role with Cyxtera and Bay Dynamics.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/cyber/2017/08/07/live-first-federal-ciso-gen-gregory-touhill/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">12906</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/Capture.JPG_c552a1.jpg" width="1197" height="719" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[<figure class="wp-block-smg-jwplayer-video"><atype-video-jwplayer nostick="true" playlisturl="https://cdn.jwplayer.com/v2/playlists/fCzRqMW8?tags=08903279-54f7-413a-b35a-c524cfedc723" poster="/wp-content/uploads/2026/08/video-poster-08903279-54f7-413a-b35a-c524cfedc723.jpg" aspectratio="16 / 9" mute autostart="false"></atype-video-jwplayer><figcaption class="wp-element-caption">Chatting live with Gen. Gregory Touhill, the first federal CISO, on the state of federal cybersecurity and his new ventures with Cyxtera and Bay Dynamics.</figcaption></figure>


<p class="wp-block-paragraph">Chatting live with Gen. Gregory Touhill, the first federal CISO, on the state of federal cybersecurity and his new ventures with Cyxtera and Bay Dynamics.</p>
]]></content:encoded>
	</item>
		<item>
		<title>3 tips for starting bug bounty programs: Be social, be human, be mature [Black Hat 2017]</title>
		<link>https://one.sightlinemg.com/c4isrnet/newsletters/2017/07/27/3-tips-for-starting-bug-bounty-programs-be-social-be-human-be-mature-black-hat-2017/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/newsletters/2017/07/27/3-tips-for-starting-bug-bounty-programs-be-social-be-human-be-mature-black-hat-2017/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Thu, 27 Jul 2017 21:34:40 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/07/27/3-tips-for-starting-bug-bounty-programs-be-social-be-human-be-mature-black-hat-2017/</guid>

					<description><![CDATA[During the 2017 Black Hat conference in Las Vegas, bug bounty program managers with three major companies – Indeed, Salesforce and Silent Circle – offered some advice to organizations standing up a program for the first time.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/newsletters/2017/07/27/3-tips-for-starting-bug-bounty-programs-be-social-be-human-be-mature-black-hat-2017/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">30820</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/bug-bounty.jpg.jpg" width="370" height="229" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Bug bounty programs – in which an agency or organization lets freelance hackers test their systems and report vulnerabilities for cash – are becoming all the rage in the public sector. Beginning with the Defense Department’s Hack the Pentagon program to the IRS’s managed crowdsource approach to the General Services Administration’s 18F standing up a software-as-a-service platform, the trend is spreading.</p>



<p class="wp-block-paragraph">But, as with every new thing, there is a learning curve. During the 2017 Black Hat conference in Las Vegas, bug bounty program managers with three major companies – Indeed, Salesforce and Silent Circle – offered some advice to organizations standing up a program for the first time.</p>



<p class="wp-block-paragraph"><b>Be Social</b></p>



<p class="wp-block-paragraph">While the financial incentives are typically what define bug bounty programs, participants are rarely just in it for the money.</p>



<p class="wp-block-paragraph">“It’s super important to go out into the community and find out what motivates them,” said Lori Rangel, director of product management for Silent Circle.</p>



<p class="wp-block-paragraph">“One of the biggest challenges is understanding the value of a vulnerability,” she said. “My initial thought was that the dollar amount – the payout for a bounty – was the most important thing to the user community. [Now I’m] understanding the differences between a dollar value and reputation value.”</p>



<p class="wp-block-paragraph">For many researchers in the bounty community, the prestige of finding a well-hidden flaw can be as important as the bounty itself, as reputation can lead to more opportunities in the future.</p>



<p class="wp-block-paragraph">“Find out what their concerns are,” Rangel added. “That really builds your reputation, as well.”</p>



<p class="wp-block-paragraph"><b>Be Human</b></p>



<p class="wp-block-paragraph">Charles Valentine, vice president of technology services for the jobs website Indeed, pointed out that these are individuals, not companies you’ll be dealing with.</p>



<p class="wp-block-paragraph">“This is not a business you’re talking with; it’s an individual,” he said. “So having somebody in place who has really good customer service skills to be able to communicate with that external person and bring it to a human level. So, not acting like a corporation. The communication should not be filtered by a legal department; it should be a human-to-human communication.”</p>



<p class="wp-block-paragraph">Another important note: “In many cases … English is probably not their first language,” so be prepared.</p>



<p class="wp-block-paragraph"><b>Be Mature</b></p>



<p class="wp-block-paragraph">Finally, if your internal security team isn’t equipped to remediate the bugs as they are discovered, what’s the point?</p>



<p class="wp-block-paragraph">“One of the key things you need to have is a very mature OpSec practice,” said Angelo Prado, senior product security manager for Salesforce. “You need to have a very mature set of individuals who are able to understand risk, impact and are able to fix any vulnerabilities that come your way. Because, without that, you’re doing yourself a disservice. If you don’t have strong application security engineers, your program is not going to be successful.”</p>



<p class="wp-block-paragraph"><br/></p>
]]></content:encoded>
	</item>
		<item>
		<title>How to hack back legally … with the FBI’s help [Black Hat 2017]</title>
		<link>https://one.sightlinemg.com/c4isrnet/industry/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/industry/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Wed, 26 Jul 2017 20:57:13 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/</guid>

					<description><![CDATA[While the bureau has a wealth of technical expertise, it’s often private sector partners that develop the tactics and techniques that enable law enforcement to take action.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/industry/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17877</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/hacker-retaliation.jpg.jpg" width="5693" height="3202" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The FBI needs the private sector’s help taking down some of the largest, most complicated threats facing cyberspace. While the bureau has a wealth of technical expertise, it’s often private sector partners that develop the tactics and techniques that enable law enforcement to take action.</p>



<p class="wp-block-paragraph">Speaking at the annual Black Hat conference in Las Vegas, Tom Grasso, supervisory special agent with the FBI’s Cyber Division, continually reiterated the bureau’s interest in working with the private sector, particularly when working with complex threats like botnets.</p>



<p class="wp-block-paragraph">“Our overall botnet strategy really starts with the private sector … I’m looking to my private sector partners to tell me where the threats are,” he told the roomful of hackers – both white and black hat. “You guys are down in the trenches, you’re fighting the fight every day, so I want you to tell me what those threats are.”</p>



<p class="wp-block-paragraph">Grasso cited the bureau’s work taking down the GameOver ZeuS botnet, ultimately dismantled by the FBI in 2014.</p>



<p class="wp-block-paragraph">That network was so complex, Grasso said he had all but given up on defeating it. That resignation lasted two years, until an industry partner came to the FBI with a method of attack.</p>



<p class="wp-block-paragraph">“He basically laid out the plan for us and then we put that plan into action with court orders and legal processes,” he said. “For those of you who have really good ideas on how to do things … and you maybe want to go and take the threat down yourself but you think, ‘I don’t know, it might not be quite legal,’ … we can make it legal for you to do that.”</p>



<p class="wp-block-paragraph">Though lawmakers have proposed legislation that would legalize some level of “hacking back” – going after the attackers directly – those have yet to be enacted and top federal and law enforcement officials continually warn against private citizens taking vigilante action.</p>



<p class="wp-block-paragraph">However, by teaming up with the FBI, individuals can do just that within the proper legal frameworks.</p>



<p class="wp-block-paragraph">“We can take your good ideas and we can put them into action,” Grasso said.</p>



<p class="wp-block-paragraph"><br/></p>
]]></content:encoded>
	</item>
		<item>
		<title>FBI’s 3-pronged approach to defeating botnets [Black Hat 2017]</title>
		<link>https://one.sightlinemg.com/c4isrnet/industry/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/industry/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Wed, 26 Jul 2017 20:43:33 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/</guid>

					<description><![CDATA[According to Tom Grasso, supervisory special agent with the FBI’s Cyber Division, the only way to effectively dismantle a botnet operation is through cooperation with the private sector and citizens.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/industry/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">24989</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/file.jpeg_0c0510.jpg" width="2873" height="2057" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Botnets – networks of compromised computers and connected devices used as a platform for launching cyberattacks – are complex structures, making them difficult targets for law enforcement. According to Tom Grasso, supervisory special agent with the FBI’s Cyber Division, the only way to effectively dismantle a botnet operation is through cooperation with the private sector and citizens.</p>



<p class="wp-block-paragraph">“I’m not going to tell you [the FBI] is the savior of the internet,” Grasso said during a briefing at the 2017 Black Hat convention in Las Vegas. “We’re not. You all are – we all are, actually, is what it comes down to.”</p>



<p class="wp-block-paragraph">Grasso explained the bureau’s three-pronged approach to defeating botnets, which include neutralizing the threat actors, disabling the underlying infrastructure through active operations and mitigating the effects of malicious activity by sharing indicators of compromise across relevant sectors.</p>



<p class="wp-block-paragraph">“We do more than just arrest the bad guys,” Grasso said. “The tools we have in law enforcement for identifying criminals and taking them out of action – that’s important – but there’s other things that we can do, as well.”</p>



<p class="wp-block-paragraph"><b>Neutralize</b></p>



<p class="wp-block-paragraph">The more traditional law enforcement approach: Identify the bad guy and take them down.</p>



<p class="wp-block-paragraph">“Find the people that are operating these things, take them off the playing field so they can’t continue to do the damage that they do,” Grasso said.</p>



<p class="wp-block-paragraph"><b>Mitigation</b></p>



<p class="wp-block-paragraph">In every instance, the FBI wants to limit the amount of damage these actors and perpetrate. Most of those mitigation efforts center on sharing information with industry and relevant sectors.</p>



<p class="wp-block-paragraph">“We can share intelligence with the private sector, and maybe the private sector can do mitigation and develop a technical solution,” he said.</p>



<p class="wp-block-paragraph">If researchers in the private sector – whether in industry or independent – discover patches or technical solutions that make the attack vectors moot, “They’ve effectively defeated it and it’s not necessary for us to come in and do our thing from the law enforcement side.”</p>



<p class="wp-block-paragraph"><b>Technical Operation</b></p>



<p class="wp-block-paragraph">“The last thing we can do, is kind of the sexy thing that everyone likes to talk about, which is a botnet takedown,” Grasso said. “Sometimes we can, by working with our private sector partners, do some kind of technical operation, some type of intervention where we go and take this threat away from the criminals and direct it somewhere safe, and then work on mitigation.”</p>



<p class="wp-block-paragraph">The key to all of this, Grasso explained, is cooperation with the private sector.</p>



<p class="wp-block-paragraph"><br/></p>
]]></content:encoded>
	</item>
		<item>
		<title>Feds wage psychological warfare against online drug bazaars</title>
		<link>https://one.sightlinemg.com/c4isrnet/home/2017/07/21/feds-wage-psychological-warfare-against-online-drug-bazaars/</link>
					<comments>https://one.sightlinemg.com/c4isrnet/home/2017/07/21/feds-wage-psychological-warfare-against-online-drug-bazaars/#respond</comments>
		
		<dc:creator><![CDATA[Aaron Boyd]]></dc:creator>
		<pubDate>Fri, 21 Jul 2017 11:55:58 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/c4isrnet/uncategorized/2017/07/21/feds-wage-psychological-warfare-against-online-drug-bazaars/</guid>

					<description><![CDATA[In an innovative blow to illicit internet commerce, cyberpolice shut down the world's leading "darknet" marketplace  then quietly seized a second bazaar to amass intelligence on illicit drug merchants and buyers.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/c4isrnet/home/2017/07/21/feds-wage-psychological-warfare-against-online-drug-bazaars/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">15546</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP17201535286143.jpg.jpg" width="4136" height="2757" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">HOUSTON (AP) — In an innovative blow to illicit internet commerce, cyberpolice shut down the world&#8217;s leading &#8220;darknet&#8221; marketplace — then quietly seized a second bazaar to amass intelligence on illicit drug merchants and buyers.
</p>



<p class="wp-block-paragraph">AlphaBay, formerly the internet&#8217;s largest darknet site, had already gone offline July 5 with the arrest in Thailand of its alleged creator and administrator. But on Thursday, European law enforcement revealed that Dutch cyberpolice had for a month been running Hansa Market. Like AlphaBay, Hansa operated in the darknet, an anonymity-friendly internet netherworld inaccessible to standard browsers.
</p>



<p class="wp-block-paragraph">AlphaBay&#8217;s users had flocked to Hansa, which is largely based in the Netherlands. The announcements Thursday on both sides of the Atlantic sowed panic among the sites&#8217; tech-savvy buyers and vendors.
</p>



<h2 class="wp-block-heading">Darkness over the Darknet</h2>



<p class="wp-block-paragraph">&#8220;The cryptomarket community (is) spooked,&#8221; said darknet researcher Patrick Shortis, of Brunel University in London. &#8220;Reddit boards are filled with users asking questions about their orders.&#8221;
</p>



<p class="wp-block-paragraph">In Washington, U.S. Attorney General Jeff Sessions deemed the operation &#8220;the largest darknet marketplace takedown in history.&#8221;
</p>



<p class="wp-block-paragraph">Darknet vendors are &#8220;pouring fuel on the fire of the national drug epidemic,&#8221; he said, specifically citing cases of two U.S. teenagers killed this year, one a 13-year-old Utah boy, by overdoses of synthetic opioids purchased on AlphaBay.
</p>



<p class="wp-block-paragraph">More than two-thirds of the quarter million listings on the two sites were for illegal drugs, said Sessions. Other illicit wares for sale included weapons, counterfeit and stolen identification and malware.
</p>



<p class="wp-block-paragraph">The police agency Europol estimates AlphaBay did $1 billion in business after its 2014 creation.
</p>



<h2 class="wp-block-heading">Dead in Prison</h2>



<p class="wp-block-paragraph">A California indictment named AlphaBay&#8217;s founder as Alexandre Cazes, a 25-year-old Canadian who died in Thai police custody on July 12. The country&#8217;s narcotics police chief told reporters Cazes hanged himself in jail just prior to a scheduled court hearing. He&#8217;d been arrested with DEA and FBI assistance.
</p>



<p class="wp-block-paragraph">Cazes amassed a $23 million fortune, much of it in digital currencies, according to court documents. He bought real estate and luxury cars, including a $900,000 Lamborghini, and pursued &#8220;economic citizenship&#8221; in Liechtenstein, Cyprus and Thailand. A $400,000 villa purchase in February had already bought him and his wife Antiguan passports, a U.S. forfeiture complaint said.
</p>



<p class="wp-block-paragraph">He used what he claimed was a web design company, EBX Technologies, as a front, the indictment said.
</p>



<p class="wp-block-paragraph">Just two other arrests were announced Thursday. Both were of Hansa system administrators in the German town of Siegen, who were taken into custody in June. Europol spokeswoman Claire Georges said they were not named under privacy law.
</p>



<p class="wp-block-paragraph">The U.S. indictment lists several AlphaBay co-conspirators by title but not name. They include a security chief, a public relations manager and moderators. A U.S. attorney handling the case, Grant Rabenn, would not comment on whether additional arrests were expected.
</p>



<h2 class="wp-block-heading">&#8220;Psychological Warfare&#8221;</h2>



<p class="wp-block-paragraph">Nicolas Christin, a darknet expert at Carnegie Mellon University, called the one-two takedown punch &#8220;psychological warfare.&#8221;
</p>



<p class="wp-block-paragraph">&#8220;It is definitely going to create a bit of chaos,&#8221; he said, though after takedowns in the past buyers and sellers move to other former second-tier sites after a few weeks of turmoil.
</p>



<p class="wp-block-paragraph">But this time, Dutch police have upped the ante by craftily tracking darknet users, and that&#8217;s expected to yield future arrests.
</p>



<p class="wp-block-paragraph">They began running the Hansa site on June 20, impersonating its administrators, collecting usernames and passwords, logging data on thousands of drug sales and informing local police in nations where shipments would be arriving. Dutch cybercrime prosecutor Martijn Egberts said Dutch police had scooped up some 10,000 addresses for Hansa buyers outside Holland.
</p>



<p class="wp-block-paragraph">Running the site was a challenge, Egberts said, with police forced to mediate frequent disputes between buyers and sellers. &#8220;It turned out to be a lot of work!&#8221; he said. &#8220;The biggest effort for us was to get the site going on a way that nobody noticed it was us.&#8221;
</p>



<p class="wp-block-paragraph">Egberts noted with satisfaction that online rumors about other darknet drug marketplaces possibly being compromised were already spreading.
</p>



<p class="wp-block-paragraph">&#8220;This is the moment to show the world that you can&#8217;t trust dark markets anymore, because you never know who is the admin,&#8221; he said.
</p>



<p class="wp-block-paragraph">But seasoned buyers and sellers aren&#8217;t likely to get tripped up, and will simply become more cautious, Christin said.
</p>



<h2 class="wp-block-heading">Branches off the Silk Road</h2>



<p class="wp-block-paragraph">Darknet websites have thrived since the 2011 appearance of the Silk Road bazaar, which was taken down two years later. Merchants and buyers keep their identities secret by using encrypted communications and anonymity-providing tools such as the Tor browser. The darknet itself is only accessible only through such specialized apps.
</p>



<p class="wp-block-paragraph">Cazes&#8217; own carelessness apparently tripped him up — not the underlying security technology AlphaBay used.
</p>



<p class="wp-block-paragraph">According to the indictment, he accidentally broadcast his personal Hotmail address in welcome messages sent to new users. And when he was tracked down and arrested in Thailand, Cazes was logged into the AlphaBay website as its administrator, it says.
</p>



<p class="wp-block-paragraph">Cazes also used the same personal email address — &#8220;pimp_alex-91@hotmail.com — on a PayPal account.
</p>



<p class="wp-block-paragraph">The success of this operation may only cause a temporary disturbance in illicit online markets. After a November 2014 takedown called Operation Onymous took down more sites, the illicit markets not only recovered — but grew.
</p>



<p class="wp-block-paragraph">For perspective, Christin said, a slow day for AlphaBay alone — one amounting to roughly $600,000 in transactions — would have been equivalent to a typical late-2014 day for the entire darknet.
</p>



<p class="wp-block-paragraph"><em>Satter reported from Paris. AP Technology Writer Anick Jesdanun in New York and AP reporter Kaweewit Kaewjinda in Bangkok contributed to this report.</em></p>
]]></content:encoded>
	</item>
	</channel>
</rss>
