Lawmakers Demand Answers as CISA Tries to Contain Data Leak
Congressional scrutiny following the CISA data leak signals potential regulatory changes for federal contractor security requirements, particularly around cloud credential management and public repository oversight.
Summary written by editorial AI · Source link below
Lawmakers in both houses of Congress are demanding answers from the U.S. Cybersecurity & Infrastructure Security Agency (CISA) after KrebsOnSecurity reported this week that a CISA contractor intentionally published AWS GovCloud keys and a vast trove of other agency secrets on a public GitHub account. The inquiry comes as CISA is still struggling to contain the breach and invalidate the leaked credentials.
External link — opens at Krebs on Security in a new tab.
More from the Regulatory Desk
- G7 urges organizations to prepare for quantum cyber threats3d
- Cyber risk from frontier AI poses ‘most immediate concern’ to global financial system, watchdog warns6d
- Defining an AI Kill Switch Is Hard, but Necessary28 Aug
- UK government seeks powers to secretly block risky tech suppliers25 Aug
- Germany moves to give spy agencies hacking and sabotage powers13 Aug