Categories: Politics

Biden Plans Stricter Cybersecurity Measures Over China Hack Concerns

In a draft executive order that Reuters has seen, President Joe Biden calls for stricter cybersecurity standards to be implemented by federal agencies and contractors. The order is intended to combat cybercrime and repeated Chinese-linked operations.

 

According to the U.S. Government and cybersecurity research organizations, the order will be delivered in the final days of Biden’s presidency. During this time, several high-profile hacks with Chinese links occurred. The alleged activity was directed at critical infrastructure, government email, major telecom companies, and most recently the Treasury Department. Beijing has denied the allegations.

 

According to the draft, Biden’s proposal would require tougher standards to be used for software development. It also calls for the Cybersecurity & Infrastructure Security Agency (CISA) to evaluate this process.

 

 

CISA’s Software Attestation Program will require vendors to submit secure software development documents to be evaluated and verified by the agency. According to the draft, attestations of “failure validation” may be sent to the Attorney General for “actions as appropriate.”

 

Tom Kellermann is senior vice president for cyber strategy and development at Contrast Security. He said that the provisions on attestation are not enough, but he still “applauds’ the efforts made to encourage more secure software.

 

He said that the timelines set out in the order seemed “arbitrary” given the urgency of the threats posed by China, Russia, and powerful cybercriminal groups.

 

Kellermann stated, “They are already here. We are dealing with a literal insurgency that is affecting critical infrastructure and U.S. Government agencies, and it has been stoked up by the Russians.”

 

 

This order also requires the creation of guidelines for cloud providers to use in managing access tokens and cryptographic keys. Microsoft reported that Chinese hackers used this method in May 2023 to gain access to the email accounts of top U.S. officials.

 

Brandon Wales, vice-president of cybersecurity strategy for cybersecurity company SentinelOne, and formerly a CISA top official, told Reuters that the order is based on the ongoing work done over the past five years to build capabilities and obtain the right authorities and funding. The threat from China is a “pacing” threat that “drives the urgency and focus throughout the government”. However, the U.S. Government and private sector are also facing several other threats.

 

Wales stated that it was important to continue looking for ways to maximize the value of the capabilities built during the last two administrations.

 

The White House refused to comment and CISA didn’t respond to an inquiry for comment.

American Conservatives

Recent Posts

Hawley Takes Himself Out of 2028 Race Before It Even Starts

Josh Hawley isn't running for president in 2028. He said so plainly this week, and…

1 day ago

Tariff Authority for Trump Passes Congress Despite Democrat Warnings About Loopholes

Sometimes politics makes you laugh out loud at the sheer absurdity of it all. Here…

1 day ago

Roy Cooper’s Campaign Playbook Started With a $75,000 Defamation Settlement

Roy Cooper wants you to trust him with a U.S. Senate seat. But before North…

1 day ago

Arkansas Democrat Wants to Trade Five Americans for One Illegal Immigrant

There's a moment in every campaign when a candidate says exactly what they believe. The…

1 day ago

Marco Rubio Just Drew a Line in the Sand Over South Africa’s Race Policies

Marco Rubio isn't mincing words anymore. The Secretary of State announced Tuesday that the United…

2 days ago

Senate Kills Trump-Backed Crypto Law After Year of Negotiations Goes Nowhere

The Trump-backed cryptocurrency bill just died on the Senate floor, and honestly, it's hard to…

2 days ago