homehome Home chatchat Notifications


Biden's recent executive order shows the US needs to take cybersecurity more seriously

Concerns that

Jenessa Duncombe
June 11, 2021 @ 9:25 pm

share Share

In May 2021, Colonial Pipeline came under attack. The American oil pipeline from Houston, Texas, suffered a ransomware attack coming from Russian organized crime. The attackers rendered much of the network unfunctional, halted 40% of the fuel supply and demanded a payment of $5 million — which they got. The attackers then sent Colonial Pipeline an app to restore their network functionality, but it operated very slowly.

It was the largest cyberattack on an oil infrastructure target in the history of the United States, but it wasn’t exactly surprising. Ransomware attacks are on the rise, and it was only a matter of time before big infrastructure got hit. In early 2020, hackers also broke into Texas-based SolarWind’s systems and added malicious code into the company’s network, demanding ransom.

In an attempt to address this, on May 12, President Biden issued Executive Order 14028. Focusing on improving the nation’s cybersecurity strategy, the order called fighting cyberattacks is “a top priority and essential to national and economic security.”

In general, the order seeks to coordinate government efforts and reduce the compartmentalization of the attack response teams within the government. The order also seeks to establish the widespread use of the National Institute of Science and Technology (NIST) security frameworks. It largely takes aim at government policies and process, but there are also aspects that take aim at the civilian space, especially when it comes to Internet of Things products (such as smart home systems, wearable health devices, and many more).

The order also requires the federal government to establish a “zero-trust” framework — which includes a software system policy that no one can use unless specifically authorized to do so. The order also mandates the adoption of multi-factor authentification and data encryption for government systems within 180 days; this applies to all agencies.

Reactions to the order have been mixed, but largely positive. The order is expected to have large implications for US cybersecurity, much like GDPR did for data privacy in the EU.

The order also proposes an aggressive timeline for these changes: between 45 and 120 days for agencies. However, many of these changes have already been largely established in the private market as best practices, and in general, the required changes seem manageable. However, when it comes to a creature as gigantic as the government, change is never easy.

Ultimately though, the order is a step in the right direction. It sets a higher bar for cybersecurity in general. The way things are going, cyberattacks are only getting more and more common, and the stakes have never been higher.

Whether or not this will be enough, though, is a different question. Traditionally, technology has adapted and shifted faster than policy — we can only hope that healthy policy will now try to keep up.

share Share

Scientists Solved a Key Mystery Regarding the Evolution of Life on Earth

A new study brings scientists closer to uncovering how life began on Earth.

AI has a hidden water cost − here’s how to calculate yours

Artificial intelligence systems are thirsty, consuming as much as 500 milliliters of water – a single-serving water bottle – for each short conversation a user has with the GPT-3 version of OpenAI’s ChatGPT system. They use roughly the same amount of water to draft a 100-word email message. That figure includes the water used to […]

Smart Locks Have Become the Modern Frontier of Home Security

What happens when humanity’s oldest symbol of security—the lock—meets the Internet of Things?

A Global Study Shows Women Are Just as Aggressive as Men with Siblings

Girls are just as aggressive as boys — when it comes to their brothers and sisters.

Birds Are Singing Nearly An Hour Longer Every Day Because Of City Lights

Light pollution is making birds sing nearly an hour longer each day

U.S. Mine Waste Contains Enough Critical Minerals and Rare Earths to Easily End Imports. But Tapping into These Resources Is Anything but Easy

The rocks we discard hold the clean energy minerals we need most.

Scientists Master the Process For Better Chocolate and It’s Not in the Beans

Researchers finally control the fermentation process that can make or break chocolate.

Most Countries in the World Were Ready for a Historic Plastic Agreement. Oil Giants Killed It

Diplomats from 184 nations packed their bags with no deal and no clear path forward.

Are you really allergic to penicillin? A pharmacist explains why there’s a good chance you’re not − and how you can find out for sure

We could have some good news.

Archaeologists Find 2,000-Year-Old Roman ‘Drug Stash’ Hidden Inside a Bone

Archaeologists have finally proven that Romans used black henbane. But how did they use it?