Review - HR 8415 Introduced – HHS Cybersecurity Testing – Would require HHS IG to conduct network penetration testing on HHS systems – No new funding – Very similar to S 3773 – Short version – https://tinyurl.com/3r5cfzfr #Legislation #Cybersecurity
HR 8415 Introduced – HHS Cybersecurity Testing – Would require HHS IG to conduct network penetration testing on HHS systems – No new funding – Very similar to S 3773 – https://tinyurl.com/yz9f6dy5 Subscription required #Legislation #Cybersecurity
CFSN Detailed Analysis - Substack Daily Update – 7-2-24 – Free Content – https://tinyurl.com/ynwytj79
Short Takes – 7-2-24 – USVs vs Russian Fleet – Whole grain health – Dichloroethane SACC peer review – ISS destruction – Beryl foreboding – Bird flu milk pasteurization – https://tinyurl.com/55cbywbu
CCPS Process Safety Beacon - Are your P&IDs up to date? https://www.aiche.org/sites/default/files/202407beaconenglish.pd
Review - 3 Advisories and 4 Updates Published – NCCIC-ICS control system security advisories for products from ICONICS, mySCADA, and Johnson Controls – Updates for Johnson Controls advisories – Short version – https://tinyurl.com/5n6cu6by #icsSecurity
Friends, let’s have a conversation about internet comments trolls, and how screwed up they really are. You know the type. Fake name, maybe no photo. Goes after women and queer people.
We probably meet them all the time. They’re probably too cowardly to be anything but acceptably polite in real life. They say hi at the store. They think the internet isn’t as real, and like all bullies they hurt people who they see as good victims or that they’re jealous of to feel better about themselves.
But it’s actually scarier. Let’s break that down. They hurt people to feel better. It’s an emotional rise. It feels good,
You know where else we see that? When they catch a mass shooter or serial killer and look back for signs, and then find they liked to torture small animals, or abused their wife, or hurt their siblings. They enjoyed causing hurt. It made them feel better. Then it escalated.
You say this is a logical leap or too extreme. Trolling is harmless. I’m crazy. It’s not you. You’re just having fun. But I gotta tell you, I don’t enjoy causing victims pain. I retired from the military. I hunt, shoot, fight, play video games. That’s still not in me. You might want to talk to someone if that’s you.
Short Takes – 7-2-24 – Space Geek Edition – Starliner problems (2) – Hydrothermal vents on moons – ISS space suite problems – Debris capture – Satellite refueling – https://tinyurl.com/3f8rtr4k
CFSN Detailed Analysis - Substack Daily Update – 7-1-24 – Free Content – https://tinyurl.com/2p36f3ky
Short Takes – 7-1-24 – Honeywell in space – Reentry risks – Technology debt – Chinese static test turns to launch – https://tinyurl.com/58sjdvas
Review – S 4045 Reported in Senate – E Palestine Health Study – Numerous changes to the wording, if not the intent, of the legislation – Short version – https://tinyurl.com/4n3cpe8t #Legislation
S 4045 Reported in Senate – E Palestine Health Study – Numerous changes to the wording, if not the intent, of the legislation – https://tinyurl.com/ysd8kdyb #Legislation #HazmatSafety
Review – S 4443 Report Published – FY 2025 Intel Authorization – Report includes two new discussions about cybersecurity issues – Short version – https://tinyurl.com/58vyr295 #Legislation #IntelAuthorization
S 4443 Report Published – FY 2025 Intel Authorization – Report includes two new discussions about cybersecurity issues – https://tinyurl.com/y5vxmd95 #Legislation #IntelAuthorization
CFSN Detailed Analysis - Substack Daily Update – 6-29-24 – Free Content – https://tinyurl.com/bdcwc4tc
Review – Public ICS Disclosures – Week of 6-22-24 – Part 2 – For Part 2 we have 2 additional vendor disclosures – 23 vendor updates – 4 researcher reports – Short version – https://tinyurl.com/3recz33c #icsSecurity
Public ICS Disclosures – Week of 6-22-24 – Part 2 – For Part 2 we have 2 additional vendor disclosures – 23 vendor updates – 4 researcher reports – https://tinyurl.com/4rh7w2vd Subscription required #icsSecurity
Chemical Incident Reporting – Week of 6-22-24 – 4 Incidents, none CSB reportable – https://tinyurl.com/y3v668yf #ChemicalIncident #CSB
CRS Reports – Week of 6-22-24 – Use of Force in Cyberspace – Updated look at the place of cyberphysical operations in law of armed conflict – https://tinyurl.com/rhmwnnj7
#CRS
Understaffing. I was asked recently what I felt the biggest risk CISOs would face in 2025. I’m thinking understaffing, but not like you might think. Most portfolios are nearly all SaaS these days. A significant percentage of these vendors are not staffed to protect and support these apps. Change Healthcare and CDK Global are early warning indicators of a larger wave of rot (or tech debt, if you like) in the SaaS industry. We’re in for a bumpy few years.