Cybersecurity

Mitre ATT&CK News

Explore the latest news articles and reports about the Mitre Attack Framework, a curated knowledge base that helps network defenders learn exactly how networks are attacked. Discover everything about it and its place in the world of cybersecurity.


Security, Airport security, Physical security, Infrastructure, Transportation Security Administration, Risk

@PatrickCMiller shared
On Jul 28, 2022
TSA revises cybersecurity guidelines for gas pipeline owners and operators https://t.co/5E0qdkujqY
Open

TSA revises cybersecurity guidelines for gas pipeline owners and operators

TSA revises cybersecurity reqs to be more flexible and performance-based for gas pipeline owners and operators

@PatrickCMiller shared
On Jul 28, 2022
TSA revises cybersecurity guidelines for gas pipeline owners and operators https://t.co/5E0qdkujqY
Open
TSA revises cybersecurity guidelines for gas pipeline owners and operators

TSA revises cybersecurity guidelines for gas pipeline owners and operators

TSA revises cybersecurity reqs to be more flexible and performance-based for gas pipeline owners and operators

DHS releases cybersecurity requirements for critical pipeline owners, operators

DHS releases cybersecurity requirements for critical pipeline owners, operators

DHS’ TSA division announces revising and re-issuing its Security Directive concerning cybersecurity to oil and natural gas pipelines.

TSA revises and reissues cybersecurity requirements for pipeline owners and operators

TSA revises and reissues cybersecurity requirements for pipeline owners and operators

WASHINGTON – The Transportation Security Administration (TSA) announced the revision and reissuance of its Security Directive regarding oil and natural gas pipeline cybersecurity. This ...

Updated TSA Pipeline Cybersecurity Requirements Offer More Flexibility

Updated TSA Pipeline Cybersecurity Requirements Offer More Flexibility

Following complaints from the industry, the TSA has updated its pipeline cybersecurity requirements to provide more flexibility in achieving goals.

TSA revises cybersecurity requirements for oil and gas pipelines

TSA revises cybersecurity requirements for oil and gas pipelines

The agency released performance-based requirements after extensive industry debate following the May 2021 Colonial Pipeline ransomware attack.

Battle lines form over pipeline cyberthreat

Battle lines form over pipeline cyberthreat

Top security officials have warned that hackers pose a major risk to energy pipelines crossing the nation, potentially resulting in leaks or explosions. But Congress can't agree on which ...

TSA announces new cybersecurity regulations for critical pipeline owners and operators

TSA announces new cybersecurity regulations for critical pipeline owners and operators

In response to the ongoing cybersecurity threat to pipeline systems, DHS’s Transportation Security Administration (TSA) announced the issuance of a second Security ...

DHS Announces New Cybersecurity Requirements for Critical Pipeline Owners and Operators

DHS Announces New Cybersecurity Requirements for Critical Pipeline Owners and Operators

In response to the ongoing cybersecurity threat to pipeline systems, DHS’s Transportation Security Administration (TSA) announced the issuance of a second Security Directive that requires ...

Cybersecurity Legislation 2021: The US Government Against Ransomware

Cybersecurity Legislation 2021: The US Government Against Ransomware

Ransomware attacks on industrial and critical infrastructure have led the US government to conduct a new cybersecurity legislation standard. Read more.

New Biden administration rules give pipeline operators more flexibility to combat cyber threats

New Biden administration rules give pipeline operators more flexibility to combat cyber threats

The Biden administration on Thursday issued updated cybersecurity requirements for big US pipeline operators that give them more flexibility over what cyber defensive measures they can take ...

TSA Issues Second Directive for Pipeline Operators Amid China Concerns

TSA Issues Second Directive for Pipeline Operators Amid China Concerns

A separate advisory from the CISA this week resurfaced details of a 2011-2013 Chinese campaign against energy industry targets and warned that same tactics and

Homeland Security unveils new cybersecurity requirements for pipeline operators

Homeland Security unveils new cybersecurity requirements for pipeline operators

Owners and operators will have to identify any gaps in their security and report new incidents to key federal agencies because of the Colonial Pipeline ransomware attack.

DHS Redefines ‘Cybersecurity Incident’ in Directives for Surface Transportation

DHS Redefines ‘Cybersecurity Incident’ in Directives for Surface Transportation

The new definition allows industry more flexibility to decide what should trigger reporting mandates for the sector.

Colonial hack exposed government’s light-touch oversight of pipeline cybersecurity

Colonial hack exposed government’s light-touch oversight of pipeline cybersecurity

The TSA is reversing its hands-off approach to overseeing pipeline cybersecurity in the wake of the devastating ransomware attack on critical U.S. infrastructure.

How the Colonial Pipeline attack instilled urgency in cybersecurity

How the Colonial Pipeline attack instilled urgency in cybersecurity

The federal government and private sector are still coming to terms with how to protect operational technology in an increasingly volatile threat environment.

DHS Preparing More Cybersecurity Requirements for Pipelines

DHS Preparing More Cybersecurity Requirements for Pipelines

The Department of Homeland Security unit that's responsible for the safety of the nation's interstate pipelines is preparing new cybersecurity requirements for oil

Colonial Pipeline Still Mostly Offline After Ransomware Attack

Colonial Pipeline Still Mostly Offline After Ransomware Attack

The Colonial Pipeline Company was hit by a ransomware attack that triggered the company to halt all pipeline operations on May 7, 2021.

Colonial hack exposed government's light-touch oversight of pipeline cybersecurity

Colonial hack exposed government's light-touch oversight of pipeline cybersecurity

A range of current and former officials and cybersecurity experts say the Colonial Pipeline's ability to avoid a government review underscores how a voluntary, arms-length approach by ...

Cybersecuring the Pipeline

Cybersecuring the Pipeline

The two TSA mandatory directives are a welcome step to ensure that pipeline owners and operators implement the basic safeguards required to repel cyberattacks. Yet certain weaknesses in the ...

DHS issues cyber order to pipeline operators in first move to regulate critical infrastructure sectors

DHS issues cyber order to pipeline operators in first move to regulate critical infrastructure sectors

The Transportation Security Administration issed the first mandatory cybersecurity practices for pipelines.

GAO-19-48, CRITICAL INFRASTRUCTURE PROTECTION: Actions Needed to Address Significant Weaknesses in TSA's Pipeline Security Program Management

GAO-19-48, CRITICAL INFRASTRUCTURE PROTECTION: Actions Needed to Address Significant Weaknesses in TSA's Pipeline Security Program Management

What GAO Recommends GAO recommends, among other things, that the TSA Administrator take the following actions: • implement a documented process for reviewing, and if deemed necessary, for ...