<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="https://one.sightlinemg.com/federaltimes/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>Federal Times - Federal Times</title>
	<atom:link href="https://one.sightlinemg.com/federaltimes/industry/feed/" rel="self" type="application/rss+xml" />
	<link>https://one.sightlinemg.com/federaltimes/</link>
	<description>Federal Times</description>
	<lastBuildDate>Sat, 08 Aug 2026 18:32:05 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.4</generator>

<image>
	<url>https://one.sightlinemg.com/wp-content/uploads/2026/06/favicon-fed.png?w=32</url>
	<title>Federal Times - Federal Times</title>
	<link>https://one.sightlinemg.com/federaltimes/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255331619</site><atom:link rel="next" type="application/rss+xml" href="https://one.sightlinemg.com/federaltimes/feed/?paged=2" />
	<item>
		<title>A hacker group says it has major defense companies’ data</title>
		<link>https://one.sightlinemg.com/federaltimes/home/2020/03/02/a-hacker-group-says-it-has-major-defense-companies-data/</link>
					<comments>https://one.sightlinemg.com/federaltimes/home/2020/03/02/a-hacker-group-says-it-has-major-defense-companies-data/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Mon, 02 Mar 2020 20:54:39 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2020/03/02/a-hacker-group-says-it-has-major-defense-companies-data/</guid>

					<description><![CDATA[Lockheed Martin, General Dynamics, Boeing and SpaceX are among dozens of companies named by hackers as victims of compromised data pulled from a manufacturing subcontractor.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/home/2020/03/02/a-hacker-group-says-it-has-major-defense-companies-data/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">21145</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-845470768.jpg.jpg" width="5000" height="3338" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">A manufacturing subcontractor in the defense industry has become the latest victim of hackers, <a href="https://www.emsisoft.com/en/">Emsisoft</a>, a cybersecurity and anti-malware company, told Fifth Domain.</p>



<p class="wp-block-paragraph">Lockheed Martin, General Dynamics, Boeing and SpaceX are among dozens of companies named as victims of compromised data, accessed through the hacking of Visser Precision LLC, a Colorado-based aerospace, automotive and industrial parts manufacturer.</p>



<p class="wp-block-paragraph">DoppelPaymer, a <a href="https://www.fifthdomain.com/home/2020/02/19/could-this-attack-signal-the-future-of-ransomware/">ransomware</a> group, perpetrated the hack, according to Brett Callow, a threat analyst with Emsisoft.</p>



<p class="wp-block-paragraph"><i>[To see a photo (courtesy of Brett Callow/Emsisoft) posted to a hacker group website listing dozens of U.S. businesses whose data hackers claim to possess, </i><a href="https://arc-anglerfish-arc2-prod-mco.s3.amazonaws.com/public/QDLPNA2QMVGJJBN4KF34Z4I4GI.jpg" target=_blank><i>click here</i></a><i>.]</i></p>



<p class="wp-block-paragraph">“Visser Precision, LLC was the recent target of a criminal cybersecurity incident, including access to or theft of data. The company continues its comprehensive investigation of the attack, and business is operating normally,” Visser Precision said in an emailed statement to Fifth Domain. “Visser Precision will continue full cooperation with its customer partner companies.”</p>



<p class="wp-block-paragraph">The hacker group, which is a variant of actor BitPaymer, has been active for over a year but only recently began releasing compromised information, Callow said. The group’s website features an ominous message to “stay tuned” for a “LOT” more data to come “by parts.”</p>



<p class="wp-block-paragraph">While threatening to release additional data, the group has already posted personnel information from industry corporations, government officials and subcontractors from 2016, as well as a partial document related to a missile antenna from Lockheed Martin from 2011.</p>



<p class="wp-block-paragraph">“We are aware of the situation with Visser Precision and are following our standard response process for potential cyber incidents related to our supply chain,” a Lockheed Martin spokesperson told Fifth Domain. “Lockheed Martin has made and continues to make significant investments in cybersecurity, and uses industry-leading information security practices to protect sensitive information. This includes providing guidance to our suppliers, when appropriate, to assist them in enhancing their cybersecurity posture.”</p>



<figure class="wp-block-image size-large"><img fetchpriority="high" decoding="async" width="920" height="353" src="/wp-content/uploads/2026/08/LH_nose.jpg.jpg" alt="" class="wp-image-61767" srcset="https://one.sightlinemg.com/wp-content/uploads/2026/08/LH_nose.jpg.jpg 920w, https://one.sightlinemg.com/wp-content/uploads/2026/08/LH_nose.jpg.jpg?resize=300,115 300w, https://one.sightlinemg.com/wp-content/uploads/2026/08/LH_nose.jpg.jpg?resize=768,295 768w" sizes="(max-width: 920px) 100vw, 920px" /><figcaption class="wp-element-caption">Screenshot of leaked Lockheed Martin &#8220;proprietary information&#8221; related to a missile antenna, released by a hacker group in a recent ransomware attack of Visser Precision LLC, a defense subcontractor. Image redacted by Fifth Domain. (Courtesy of Brett Callow/Emsisoft)</figcaption></figure>



<p class="wp-block-paragraph">Hacker groups — such as Maze, which previously released veterans’ sensitive information online — have targeted various government entities, law firms and businesses in the last year, as <a href="https://www.airforcetimes.com/pay-benefits/military-benefits/health-care/2020/02/19/hacker-group-targeted-law-firms-released-veterans-stolen-data-related-to-ptsd-claims/?utm_expid=.jFR93cgdTFyMrWXdYEtvgA.0&#038;utm_referrer=https%3A%2F%2Fwww.airforcetimes.com%2Fauthor%2Fdylan-gresik%2F">reported</a> by Military Times, a sister publication of Fifth Domain.</p>



<p class="wp-block-paragraph">Standard to other ransomware attacks, the hackers appear to have gained access to Visser Precision’s system, exfiltrating data before demanding payment to prevent a wider release.</p>



<p class="wp-block-paragraph">“[The hackers] started by publishing older and less sensitive data,” Callow told Fifth Domain over email. “The more data they publish and the more sensitive that data is, the less incentive the company has to pay to prevent the remaining data being published.”</p>



<p class="wp-block-paragraph">The Department of Defense <a href="https://www.airforcetimes.com/news/your-air-force/2020/02/27/air-force-spacex-to-test-starlink-capabilities-in-upcoming-live-fire-demonstration/?utm_expid=.jFR93cgdTFyMrWXdYEtvgA.0&amp;utm_referrer=https%3A%2F%2Fwww.airforcetimes.com%2Fauthor%2Fdylan-gresik%2F">recently announced</a> an upcoming demonstration to test U.S. Air Force capabilities with SpaceX-developed Starlink technology. The released data, however, does not pertain to this platform.</p>



<p class="wp-block-paragraph">SpaceX, General Dynamics and Boeing all did not immediately respond to requests for comments.</p>



<p class="wp-block-paragraph">Callow, who monitors hackers’ activities, said DoppelPaymer has previously claimed in online posts to have stolen data in additional, unrelated incidents, and he believes more information will likely be released soon.</p>



<p class="wp-block-paragraph">“This attack is particularly worrisome because of the nature of the information that may have fallen into the hands of cybercriminals,” Callow said. “Obviously, this [hack] could put the intellectual property of the companies’ concerned at risk and possibly even pose a risk to national security.”</p>



<p class="wp-block-paragraph">The Federal Bureau of Investigation alerted businesses last October about “high-impact ransomware attacks” that specifically target government entities and corporations to encrypt data and unlock it for a fee, Fifth Domain <a href="https://www.fifthdomain.com/civilian/fbi-doj/2019/10/04/fbi-businesses-beware-ransomware-is-hitting-harder/">previously reported</a>.</p>



<p class="wp-block-paragraph">In the last 48 hours, Maze separately published stolen information from a Canadian provincial government, state-owned Mexican petroleum company Pemex and a French telecommunications company, Callow added.</p>



<p class="wp-block-paragraph">A 2019 Emsisoft <a href="https://blog.emsisoft.com/en/34822/the-state-of-ransomware-in-the-us-report-and-statistics-2019/">report</a> found that ransomware attacks targeted 113 state and municipal governments and agencies, 764 health care providers, and 89 universities, colleges and school districts nationwide.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Lithuanian court OKs extradition in US phishing case</title>
		<link>https://one.sightlinemg.com/federaltimes/home/2017/08/11/lithuanian-court-oks-extradition-in-us-phishing-case/</link>
					<comments>https://one.sightlinemg.com/federaltimes/home/2017/08/11/lithuanian-court-oks-extradition-in-us-phishing-case/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Fri, 11 Aug 2017 15:06:21 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/08/11/lithuanian-court-oks-extradition-in-us-phishing-case/</guid>

					<description><![CDATA[A Lithuanian businessman suspected of tricking more than $100 million out of Google and Facebook in an elaborate cybercrime case should be extradited to the United States, a local court ruled Friday.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/home/2017/08/11/lithuanian-court-oks-extradition-in-us-phishing-case/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">21553</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/hacker-cuffs.jpg.jpg" width="5000" height="3333" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">VILNIUS, Lithuania (AP) — A Lithuanian businessman suspected of tricking more than $100 million out of Google and Facebook in an elaborate cybercrime case should be extradited to the United States, a local court ruled Friday.</p>



<p class="wp-block-paragraph">The Lithuanian Court of Appeal in Vilnius ruled that Evaldas Rimasauskas must be handed over to the U.S., where he will be tried for wire fraud, money laundering and aggravated identity theft. He allegedly posed as one of the companies’ suppliers, an Asian computer hardware manufacturer, and tricked them into accepting fraudulent invoices. Google earlier said it had detected the fraud and alerted authorities.</p>



<p class="wp-block-paragraph">Rimasauskas has denied the charges. If convicted, he could face a lengthy prison sentence.</p>



<p class="wp-block-paragraph">“Lithuania has a bilateral extradition agreement with the U.S. and this case meets all criteria,” judge Algimantas Valantinas told reporters. “The United States has launched an investigation into this crime, so the request to hand over this citizen of Lithuania was legitimate and motivated.”</p>



<p class="wp-block-paragraph">Rimasauskas’ lawyer, Linas Kuprusevicius, said his client “cannot expect a fair and impartial trial in the United States,” and claimed the extradition request lacked key information, but the court dismissed these statements.</p>



<p class="wp-block-paragraph">Friday’s decision is final. A date for the handover will be announced later this month.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Take down: Hackers looking to shut down factories for pay</title>
		<link>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/09/take-down-hackers-looking-to-shut-down-factories-for-pay/</link>
					<comments>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/09/take-down-hackers-looking-to-shut-down-factories-for-pay/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Wed, 09 Aug 2017 14:59:48 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/08/09/take-down-hackers-looking-to-shut-down-factories-for-pay/</guid>

					<description><![CDATA[AW North Carolina stood to lose $270,000 in revenue, plus wages for idled employees, for every hour the factory wasn't shipping.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/09/take-down-hackers-looking-to-shut-down-factories-for-pay/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">11554</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP17220051555427.jpg.jpg" width="1200" height="800" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The malware entered the North Carolina transmission plant’s computer network via email last August, just as the criminals wanted, spreading like a virus and threatening to lock up the production line until the company paid a ransom.</p>



<p class="wp-block-paragraph">AW North Carolina stood to lose $270,000 in revenue, plus wages for idled employees, for every hour the factory wasn’t shipping its crucial auto parts to nine Toyota car and truck plants across North America, said John Peterson, the plant’s information technology manager.</p>



<p class="wp-block-paragraph">The company is just one of a growing number being hit by cyber-criminals looking for a payday.</p>



<p class="wp-block-paragraph">While online thieves have long targeted banks for digital holdups, today’s just-in-time manufacturing sector is climbing toward the top of hackers’ hit lists.</p>



<p class="wp-block-paragraph">Production lines that integrate computer-imaging, barcode scanners and measuring tolerances to a hair’s width at multiple points are more vulnerable to malevolent outsiders.</p>



<p class="wp-block-paragraph">“These people who try to hack into your network know you have a set schedule. And they know hours are meaningful to what you’re doing,” Peterson said in an interview. “There’s only a day and a half of inventory in the entire supply chain. And so if we don’t make our product in time, that means Toyota doesn’t make their product in time, which means they don’t have a car to sell on the lot that next day. It’s that tight.”</p>



<p class="wp-block-paragraph">He said that creates pressure on manufacturers to make the criminals go away by paying the sums demanded.</p>



<p class="wp-block-paragraph">“They may not know what that number is, but they know it’s not zero. So what is that number? Where do you flinch?”</p>



<p class="wp-block-paragraph">Last August at the 2,200-worker Durham transmission factory, the computer virus coursed through the plant’s network, flooding machines with data and stopping production for about four hours, Peterson said.</p>



<p class="wp-block-paragraph">Data on some laptops was lost, but the malware was blocked by a firewall when it tried to exit the plant’s network and put the hackers’ lock on the plant’s computer network.</p>



<p class="wp-block-paragraph">The plant was hit again in April, this time by different crooks using new malware designed to hold data or devices hostage to force a ransom payment, Peterson said. The virus was contained before affecting production, and no ransom was paid to either group, he said.</p>



<p class="wp-block-paragraph">Manufacturers, government and financial firms are now the top targets globally for illicit intrusions by criminals, foreign espionage agencies and others up to no good, according to a report this spring by NTT Security.</p>



<p class="wp-block-paragraph">A survey of nearly 3,000 corporate cybersecurity executives in 13 countries last year by Cisco Systems Inc. found about one out of four manufacturing organizations reported cyberattacks that cost them money in the previous 12 months.</p>



<p class="wp-block-paragraph">Since 2015, U.S. manufacturers considered “critical” to the economy and to normal modern life, like makers of autos and aviation parts, have been the main targets of cyberattacks — outstripping energy, communications and other critical infrastructure, according to Department of Homeland Security incident response data. The numbers may be imprecise because companies in key industries often don’t report attacks for fear of diminished public perception.</p>



<p class="wp-block-paragraph">But attacks demanding ransom against all U.S. institutions are spiraling higher. The FBI’s Internet Crime Complaint Center received 2,673 ransomware reports in the year ending last September — nearly double from 2014.</p>



<p class="wp-block-paragraph">While manufacturers are increasingly prey to these cyber-stickups, it may just be because criminals are playing the odds and striking as many enterprises of all types as they can across a targeted region, said John Miller, who heads a team at cybersecurity firm FireEye that tracks money-driven online threats.</p>



<p class="wp-block-paragraph">Attackers “aren’t necessarily going after manufacturing to the exclusion of other sectors or with a preference above other sectors. It’s more that, ‘OK, we’re going to try to infect everybody in this country that we can,’” Miller said.</p>



<p class="wp-block-paragraph">One high-profile example came in May and June, when auto manufacturers including Renault shut down production after they were swept up in the worldwide onslaught of the WannaCry ransomware virus.</p>



<p class="wp-block-paragraph">But attackers also are increasingly injecting ways to remotely control the robots and other automated systems that control production inside targeted factories.</p>



<p class="wp-block-paragraph">The threat of computer code tailored to hit specific targets has been around since researchers in 2010 discovered Stuxnet, malware apparently designed to sabotage Iran’s nuclear program by causing centrifuge machines to spin out of control. Stuxnet is widely believed to be a covert American and Israeli creation, but neither country has officially acknowledged a role in the attack.</p>



<p class="wp-block-paragraph">Malicious software that attacked Ukraine’s electricity grid last December was built to remotely sabotage circuit breakers, switches and protection relays, researchers said.</p>



<p class="wp-block-paragraph">Cyberattacks that reach into industrial control systems have doubled in the past two years in the U.S. to nearly four dozen so far in the federal fiscal year that ends in September, outstripping last year’s total, according to DHS data.</p>



<p class="wp-block-paragraph">“I think the emerging threat you’re going to see in the future now is really custom ransomware that’s going to be targeted more toward individual companies,” said Neil Hershfield, the acting director of the DHS team that handles emergency response to cyberattacks on industrial control systems.</p>
]]></content:encoded>
	</item>
		<item>
		<title>DOJ offers tips for creating vulnerability disclosure policies</title>
		<link>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/02/doj-offers-tips-for-creating-vulnerability-disclosure-policies/</link>
					<comments>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/02/doj-offers-tips-for-creating-vulnerability-disclosure-policies/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Wed, 02 Aug 2017 15:00:17 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/08/02/doj-offers-tips-for-creating-vulnerability-disclosure-policies/</guid>

					<description><![CDATA[To avoid violating the Computer Fraud and Abuse Act, the DoJ has implemented a guide for companies to follow.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/02/doj-offers-tips-for-creating-vulnerability-disclosure-policies/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">16540</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/635778357482080385-070212ft-doj-1jpg.jpg" width="1024" height="682" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The Department of Justice Criminal Division Cybersecurity Unit has devised a framework for companies looking to implement formal vulnerability disclosure policies.</p>



<p class="wp-block-paragraph">Since different organizations may have different goals and priorities for their programs, a framework acts more as a rubric, providing considerations and guidance rather than authority. This assistance reduces the likelihood that activities will result in violating the Computer Fraud and Abuse Act.</p>



<p class="wp-block-paragraph">For more information, or to read the steps in detail go <a href="https://www.us-cert.gov/ncas/current-activity/2017/08/01/DOJ-Provides-Organizations-Framework-Development-Vulnerability">here</a>.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Virgin America computer systems hacked</title>
		<link>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/01/virgin-america-computer-systems-hacked/</link>
					<comments>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/01/virgin-america-computer-systems-hacked/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Tue, 01 Aug 2017 14:59:09 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/08/01/virgin-america-computer-systems-hacked/</guid>

					<description><![CDATA[Alaska Airlines says it is taking precautions including requiring employees to change their passwords after Virgin America’s computer systems were hacked.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/newsletters/2017/08/01/virgin-america-computer-systems-hacked/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">31992</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/1024px-Virgin_America_A320_cabin.jpg.jpg" width="1024" height="768" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">SEATTLE (AP) — Alaska Airlines says it is taking precautions including requiring employees to change their passwords after Virgin America’s computer systems were hacked.</p>



<p class="wp-block-paragraph">An Alaska Airlines spokeswoman said Monday that the company noticed unusual activity in Virgin’s systems in March and notified law enforcement and hired cybersecurity experts. She said customer information wasn’t affected but employees and contractors will be required to change passwords every 90 days.</p>



<p class="wp-block-paragraph">About 3,100 employees may have had their login information stolen, the airline said. Another 110 also had personal information compromised, including addresses, Social Security numbers and health-related information. The airline is paying for credit-monitoring services for those 110 employees and contractors.</p>



<p class="wp-block-paragraph">Alaska bought California-based Virgin America last year.</p>



<p class="wp-block-paragraph">A letter to Virgin America employees from Kyle Levine, general counsel of Seattle-based Alaska Air Group Inc., was posted on the California attorney general’s website last week.</p>



<p class="wp-block-paragraph">Levine said the hacker or hackers gained employees’ login information and passwords to Virgin America’s network. He offered advice for employees who think they might be victims of identity theft.</p>
]]></content:encoded>
	</item>
		<item>
		<title>What DHS is saying to companies at Black Hat [Black Hat 2017]</title>
		<link>https://one.sightlinemg.com/federaltimes/multimedia/2017/07/28/what-dhs-is-saying-to-companies-at-black-hat-black-hat-2017/</link>
					<comments>https://one.sightlinemg.com/federaltimes/multimedia/2017/07/28/what-dhs-is-saying-to-companies-at-black-hat-black-hat-2017/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Fri, 28 Jul 2017 03:21:06 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Videos]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/07/28/what-dhs-is-saying-to-companies-at-black-hat-black-hat-2017/</guid>

					<description><![CDATA[DHS has a specific goal at Black Hat.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/multimedia/2017/07/28/what-dhs-is-saying-to-companies-at-black-hat-black-hat-2017/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">26766</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/Day-2-quickhits.00_04_44_25.Still004.jpg.jpg" width="1280" height="720" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[<figure class="wp-block-smg-jwplayer-video"><atype-video-jwplayer nostick="true" playlisturl="https://cdn.jwplayer.com/v2/playlists/fCzRqMW8?tags=9992ce6e-39b5-42cb-8181-92c48a1be015" aspectratio="16 / 9" mute autostart="false"></atype-video-jwplayer><figcaption class="wp-element-caption">DHS has a specific goal at Black Hat. (Daniel Woolfolk/Staff)</figcaption></figure>]]></content:encoded>
	</item>
		<item>
		<title>How to hack back legally … with the FBI’s help [Black Hat 2017]</title>
		<link>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/</link>
					<comments>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Wed, 26 Jul 2017 20:57:13 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/</guid>

					<description><![CDATA[While the bureau has a wealth of technical expertise, it’s often private sector partners that develop the tactics and techniques that enable law enforcement to take action.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/26/how-to-hack-back-legally-with-the-fbis-help-black-hat-2017/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">18909</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/hacker-retaliation.jpg.jpg" width="5693" height="3202" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The FBI needs the private sector’s help taking down some of the largest, most complicated threats facing cyberspace. While the bureau has a wealth of technical expertise, it’s often private sector partners that develop the tactics and techniques that enable law enforcement to take action.</p>



<p class="wp-block-paragraph">Speaking at the annual Black Hat conference in Las Vegas, Tom Grasso, supervisory special agent with the FBI’s Cyber Division, continually reiterated the bureau’s interest in working with the private sector, particularly when working with complex threats like botnets.</p>



<p class="wp-block-paragraph">“Our overall botnet strategy really starts with the private sector … I’m looking to my private sector partners to tell me where the threats are,” he told the roomful of hackers – both white and black hat. “You guys are down in the trenches, you’re fighting the fight every day, so I want you to tell me what those threats are.”</p>



<p class="wp-block-paragraph">Grasso cited the bureau’s work taking down the GameOver ZeuS botnet, ultimately dismantled by the FBI in 2014.</p>



<p class="wp-block-paragraph">That network was so complex, Grasso said he had all but given up on defeating it. That resignation lasted two years, until an industry partner came to the FBI with a method of attack.</p>



<p class="wp-block-paragraph">“He basically laid out the plan for us and then we put that plan into action with court orders and legal processes,” he said. “For those of you who have really good ideas on how to do things … and you maybe want to go and take the threat down yourself but you think, ‘I don’t know, it might not be quite legal,’ … we can make it legal for you to do that.”</p>



<p class="wp-block-paragraph">Though lawmakers have proposed legislation that would legalize some level of “hacking back” – going after the attackers directly – those have yet to be enacted and top federal and law enforcement officials continually warn against private citizens taking vigilante action.</p>



<p class="wp-block-paragraph">However, by teaming up with the FBI, individuals can do just that within the proper legal frameworks.</p>



<p class="wp-block-paragraph">“We can take your good ideas and we can put them into action,” Grasso said.</p>



<p class="wp-block-paragraph"><br/></p>
]]></content:encoded>
	</item>
		<item>
		<title>FBI’s 3-pronged approach to defeating botnets [Black Hat 2017]</title>
		<link>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/</link>
					<comments>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Wed, 26 Jul 2017 20:43:33 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/</guid>

					<description><![CDATA[According to Tom Grasso, supervisory special agent with the FBI’s Cyber Division, the only way to effectively dismantle a botnet operation is through cooperation with the private sector and citizens.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/26/fbis-3-pronged-approach-to-defeating-botnets-black-hat-2017/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">26517</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/file.jpeg_0c0510.jpg" width="2873" height="2057" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Botnets – networks of compromised computers and connected devices used as a platform for launching cyberattacks – are complex structures, making them difficult targets for law enforcement. According to Tom Grasso, supervisory special agent with the FBI’s Cyber Division, the only way to effectively dismantle a botnet operation is through cooperation with the private sector and citizens.</p>



<p class="wp-block-paragraph">“I’m not going to tell you [the FBI] is the savior of the internet,” Grasso said during a briefing at the 2017 Black Hat convention in Las Vegas. “We’re not. You all are – we all are, actually, is what it comes down to.”</p>



<p class="wp-block-paragraph">Grasso explained the bureau’s three-pronged approach to defeating botnets, which include neutralizing the threat actors, disabling the underlying infrastructure through active operations and mitigating the effects of malicious activity by sharing indicators of compromise across relevant sectors.</p>



<p class="wp-block-paragraph">“We do more than just arrest the bad guys,” Grasso said. “The tools we have in law enforcement for identifying criminals and taking them out of action – that’s important – but there’s other things that we can do, as well.”</p>



<p class="wp-block-paragraph"><b>Neutralize</b></p>



<p class="wp-block-paragraph">The more traditional law enforcement approach: Identify the bad guy and take them down.</p>



<p class="wp-block-paragraph">“Find the people that are operating these things, take them off the playing field so they can’t continue to do the damage that they do,” Grasso said.</p>



<p class="wp-block-paragraph"><b>Mitigation</b></p>



<p class="wp-block-paragraph">In every instance, the FBI wants to limit the amount of damage these actors and perpetrate. Most of those mitigation efforts center on sharing information with industry and relevant sectors.</p>



<p class="wp-block-paragraph">“We can share intelligence with the private sector, and maybe the private sector can do mitigation and develop a technical solution,” he said.</p>



<p class="wp-block-paragraph">If researchers in the private sector – whether in industry or independent – discover patches or technical solutions that make the attack vectors moot, “They’ve effectively defeated it and it’s not necessary for us to come in and do our thing from the law enforcement side.”</p>



<p class="wp-block-paragraph"><b>Technical Operation</b></p>



<p class="wp-block-paragraph">“The last thing we can do, is kind of the sexy thing that everyone likes to talk about, which is a botnet takedown,” Grasso said. “Sometimes we can, by working with our private sector partners, do some kind of technical operation, some type of intervention where we go and take this threat away from the criminals and direct it somewhere safe, and then work on mitigation.”</p>



<p class="wp-block-paragraph">The key to all of this, Grasso explained, is cooperation with the private sector.</p>



<p class="wp-block-paragraph"><br/></p>
]]></content:encoded>
	</item>
		<item>
		<title>3 priorities for Army’s cyber/EW aviation concept of operation</title>
		<link>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/24/2/</link>
					<comments>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/24/2/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Mon, 24 Jul 2017 17:09:55 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/07/24/2/</guid>

					<description><![CDATA[The Army is looking to upgrade its aviation training incorporating cyber and electronic warfare.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/newsletters/2017/07/24/2/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">11616</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/635938803645554176-helmandjpg.jpg" width="2400" height="1702" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">The Army is looking to upgrade its aviation training incorporating cyber and electronic warfare.</p>



<p class="wp-block-paragraph">In a <a href="https://www.fbo.gov/?s=opportunity&amp;mode=form&amp;tab=core&amp;id=191f777fcc1791c226d5f1dd4868e1ce&amp;_cview=1">notice</a> posted on the FedBizOpps contracting website titled “Aviation Electronic Warfare and Cyber Warfare Capability Development,” the Army is looking for potential contractors to support three high level objectives for the Aviation Center of Excellence at Fort Rucker in Alabama;</p>



<ol class="wp-block-list"><li>Approved electronic warfare and cyber warfare aviation concept of operations that can be valid through fiscal 2035;</li><li>Approved Aviation EW and cyber warfare required capabilities integrated   and synchronized across doctrine, organization, training, materiel, leadership and education, personnel, facilities and policy (DOTMLPF-P); and</li><li>Approved Army EW and cyber warfare capability synchronized and  integrated on and with aviation manned and unmanned platforms along with  other aviation systems.</li></ol>



<p class="wp-block-paragraph">Among other elements contractors will be required to provide, the draft statement outlines that the contractor will review existing threat force concepts and capabilities while studying trends and emerging technologies as well as providing subject matter experts for the development of EW and cyber warfare aviation concepts of operations.</p>



<p class="wp-block-paragraph"><br/></p>
]]></content:encoded>
	</item>
		<item>
		<title>FedEx still working on recovery from cyberattack at TNT unit</title>
		<link>https://one.sightlinemg.com/federaltimes/home/2017/07/18/fedex-still-working-on-recovery-from-cyberattack-at-tnt-unit/</link>
					<comments>https://one.sightlinemg.com/federaltimes/home/2017/07/18/fedex-still-working-on-recovery-from-cyberattack-at-tnt-unit/#respond</comments>
		
		<dc:creator><![CDATA[migration]]></dc:creator>
		<pubDate>Tue, 18 Jul 2017 12:18:04 +0000</pubDate>
				<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/federaltimes/uncategorized/2017/07/18/fedex-still-working-on-recovery-from-cyberattack-at-tnt-unit/</guid>

					<description><![CDATA[FedEx Corp. says it is still working to recover from a cyberattack that hit its European TNT Express unit, and the incident could have a material impact on its financial results.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/federaltimes/home/2017/07/18/fedex-still-working-on-recovery-from-cyberattack-at-tnt-unit/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">21490</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/Federal_Express_FedEx_Boeing_767-300F_N118FE_-_PAE_17722475603.jpg.jpg" width="1024" height="682" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">MEMPHIS, Tenn. (AP) — FedEx Corp. says it is still working to recover from a cyberattack that hit its European TNT Express unit, and the incident could have a material impact on its financial results.
</p>



<p class="wp-block-paragraph">Shares of FedEx fell 3.4 percent Monday morning but recovered about half by the close of trading.
</p>



<p class="wp-block-paragraph">FedEx said in a regulatory filing that the June 27 attack was causing lost revenue and higher costs for Netherlands-based TNT, which FedEx bought for $4.8 billion last year.
</p>



<p class="wp-block-paragraph">The so-called Petya attack spread a virus through a Ukrainian tax-software product that was used by TNT. FedEx said that all TNT facilities were running but many tasks were being performed manually and customers were experiencing delays.
</p>



<p class="wp-block-paragraph">Memphis-based FedEx, which first reported the attack on June 28, said systems in the rest of its businesses were not affected. The company said it did not have insurance to cover the attack.
</p>



<p class="wp-block-paragraph">Shares of FedEx closed Monday down $3.58, or 1.6 percent, to $215.48.</p>
]]></content:encoded>
	</item>
	</channel>
</rss>
