. Military Space News .
CYBER WARS
Pentagon expands program inviting hackers to report problems
by Christen Mccurdy
Washington DC (UPI) May 4, 2021

The Pentagon announced Tuesday that it is expanding its Vulnerability Disclosure Program to include all publicly accessible information systems in the Defense Department.

The program grew out of the department's "Hack the Pentagon initiative," which started in 2016, according to a Pentagon press release.

In 2016 then-Defense Secretary Ashton Carter met with two hackers to congratulate them for alerting the Pentagon to potential vulnerabilities in several Defense Department websites.

The hackers were the most successful participants in a "Hack the Pentagon" event begun earlier that year -- the Defense Department's first-ever "bug bounty."

Prior to that, there was no way for ethical hackers to interact with the Department of Defense even if they spotted a vulnerability in its systems.

"Because of this, many vulnerabilities went unreported," Brett Goldstein, the director of the Defense Digital Service, said in the DoD's release. "The DOD Vulnerability Policy launched in 2016 because we demonstrated the efficacy of working with the hacker community and even hiring hackers to find and fix vulnerabilities in systems."

The DoD Cyber Crime Center oversees the Vulnerability Disclosure Program, which has received more than 29,000 vulnerability reports -- 70% of which have been found to be valid, according to officials.

The original policy was limited to the department's public-facing websites and applications, but now hackers are invited to investigate vulnerabilities related to all DOD publicly-accessible networks, Goldstein said in the release.

The expansion also includes frequency-based communication, the Internet of Things and industrial control systems.

"The department has always maintained the perspective that DOD websites were only the beginning as they account for a fraction of our overall attack surface," said Cyber Crime Center director Kristopher Johnson.

In July 2015 a Pentagon email system used by personnel of the Joint Chiefs of Staff was breached in a sophisticated cyberattack officials said was committed by Russian state actors.

In January 2020 the Pentagon announced that it would require at least some contractors bidding on defense contracts to certify that they meet "at least a basic level of cybersecurity standards" in their proposals.


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues


Thanks for being here;
We need your help. The SpaceDaily news network continues to grow but revenues have never been harder to maintain.

With the rise of Ad Blockers, and Facebook - our traditional revenue sources via quality network advertising continues to decline. And unlike so many other news sites, we don't have a paywall - with those annoying usernames and passwords.

Our news coverage takes time and effort to publish 365 days a year.

If you find our news sites informative and useful then please consider becoming a regular supporter or for now make a one off contribution.
SpaceDaily Contributor
$5 Billed Once


credit card or paypal
SpaceDaily Monthly Supporter
$5 Billed Monthly


paypal only


CYBER WARS
Researchers demonstrate potential for zero-knowledge proofs in vulnerability disclosure
Washington DC (AFNS) Apr 23, 2021
Today, the disclosure process for software vulnerabilities is fraught with challenges. Cybersecurity researchers and software security analysts are faced with an ethics versus efficacy dilemma when it comes to reporting or sharing discovered bugs. Revealing a vulnerability publicly may get the attention of the program's developers and motivate a timely response, but it could also result in a lawsuit against the researcher. Further, public disclosure could enable bad actors to exploit the discover ... read more

Comment using your Disqus, Facebook, Google or Twitter login.



Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle

CYBER WARS
GAO report: Missile Defense Agency missed 2020 delivery, testing goals

Greece to lend Patriot battery to Saudi as Huthi attacks spike

Missile Warning Satellite Delivered to Cape Canaveral

Lockheed Martin awarded $3.7B to modernize key missile defense mission

CYBER WARS
Stratolaunch set for second hypersonic vehicle test

Successful test of land-based Naval Strike Missile announced by Raytheon

Ford carrier completes combat systems trials with missile-firing exercise

Explosion at Israeli rocket factory a controlled test

CYBER WARS
Air Force testing new capabilities for MQ-9 drone during exercise

Sagetech Avionics and Pen Aviation Sign MOU to Integrate Detect and Avoid System

CENTCOM chief cites drones, radicalization as foremost Middle East issues

Future drones likely to resemble 300-million-year-old flying machine

CYBER WARS
Hydra project demonstrates advanced communications across all domains

Eutelsat invests in OneWeb, future SpaceX rival

Northrop Grumman designs protected Tactical SATCOM Payload Prototype for the Space Force

Japan-Germany international joint experiment on space optical communication

CYBER WARS
BATMAN support of SIBR PROJECT increases combat survival potential

Oshkosh to modernize U.S. Army heavy vehicles in $146.8M contract

Northrop Grumman LITENING Color Targeting Pods Enter Service

Defense Secretary Lloyd Austin calls for military 'integrated deterrence'

CYBER WARS
NGOs call on UN to hit Myanmar with arms embargo

State Department approves $1.94B in military sales to Australia

European Parliament approves 7.9-bn-euro defence fund

World military spending grows despite pandemic

CYBER WARS
EU moots creation of 5,000-strong rapid reaction force

G7 seeks common front on China in first talks since pandemic

Philippines' top diplomat swears at China online, tells nation to leave disputed waters

Stressing diplomacy, Biden says not seeking conflict with China, Russia

CYBER WARS
Scientists use DNA technology to build tough 3D nanomaterials

New "metalens" shifts focus without tilting or moving

Nanowire could provide a stable, easy-to-make superconducting transistor









The content herein, unless otherwise known to be public domain, are Copyright 1995-2024 - Space Media Network. All websites are published in Australia and are solely subject to Australian law and governed by Fair Use principals for news reporting and research purposes. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA news reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. All articles labeled "by Staff Writers" include reports supplied to Space Media Network by industry news wires, PR agencies, corporate press officers and the like. Such articles are individually curated and edited by Space Media Network staff on the basis of the report's information value to our industry and professional readership. Advertising does not imply endorsement, agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. General Data Protection Regulation (GDPR) Statement Our advertisers use various cookies and the like to deliver the best ad banner available at one time. All network advertising suppliers have GDPR policies (Legitimate Interest) that conform with EU regulations for data collection. By using our websites you consent to cookie based advertising. If you do not agree with this then you must stop using the websites from May 25, 2018. Privacy Statement. Additional information can be found here at About Us.