About this site
Previous work
Projects
Breach disclosure requirements
Retrieved 2022-02-09
SEC.gov (Statement on Cybersecurity Risk Management for Investment Advisers, Registered Investment Companies, and Business Development Companies)
Retrieved 2022-02-06
NIST Suggests Agencies Accept the Word of Software Producers Per Executive Order (Nextgov)
Retrieved 2022-01-13
Statutory restrictions hindered federal response to SolarWinds, Microsoft Exchange
Retrieved 2021-12-22
Federal Agencies Issue New Breach Notification Rules for Banking Organizations and Banking Service Providers (Benesch - JDSupra)
Retrieved 2021-12-15
EETimes (SolarWinds Fallout: When Will Breach Reporting Become Mandatory?)
EETimes (SolarWinds Fallout: When Will Breach Reporting Become Mandatory?)
Retrieved 2021-12-08
Breach reporting requirement sputters as House passes NDAA (scmedia)
House Passes NDAA Without Cyber Incident Reporting Legislation (Nextgov)
Retrieved 2021-12-07
Rules Committee Print 117 (21; Text of House Amendment to S. 1605)
Retrieved 2021-11-06
TSA to issue regulations to secure rail, aviation groups against cyber threats (hill)
Retrieved 2021-10-11
DOJ to Federal Contractors: Report Cyberattacks or Face the False Claims Act (Lexology)
Retrieved 2021-10-06
HILL TECH & CYBER BRIEFING: Senators Weigh Cyber Reporting Mandate
DOJ to go after government contractors that fail to report breaches (hill)
Kevin Mandia: Coordination, Tech Among Keys to Cybersecurity Advancement (ExecutiveBiz)
Senate Committee Passes Major FISMA Changes—Including a New Definition of ‘Major Incident’ (Nextgov)
Retrieved 2021-09-23
SolarWinds CEO Says Attackers Gained Entry, Began Recon in January 2019 (Opera News)
Retrieved 2021-09-11
Wide-ranging SolarWinds probe sparks fear in Corporate America - Security - Software (iTnews)
Retrieved 2021-09-10
Wide (ranging SolarWinds investigation sparks panic in U.S. business Reuters – Business Press, Business News Portal)
EXCLUSIVE Wide-ranging SolarWinds probe sparks fear in Corporate America (Reuters)
EXCLUSIVE- Wide-ranging SolarWinds probe sparks fear in Corporate America (Nasdaq)
SolarWinds Hack: A wide-ranging SEC investigation has triggered fear in the US corporate world (Technology Shout)
SolarWinds Hack: Extensive SEC Probes Cause Terror in Enterprise America (Fuentitech)
Exclusive: Wide-ranging SolarWinds probe sparks fear in Corporate America (CBNC)
Corporate Execs Fear SEC's SolarWinds Probe Will Expose Unreported Cybersecurity Incidents - by Cynthia Brumfield (Metacurity)
Exclusive: Wide-ranging SolarWinds probe sparks fear in Corporate America (Reuters)
Retrieved 2021-09-09
Congress Weighs Bills Requiring Firms to Report Cyberattacks (The Crime Report)
SEC Advances Broad Theory of Required Disclosures of Security Incidents
Retrieved 2021-09-08
Lawmakers question impact of SolarWinds hack on US attorneys' offices (hill)
Congress May Require Some Companies to Report Cyber Attacks
Retrieved 2021-09-07
Congress seeks to compel infrastructure operators to report cyberattacks | National (union-bulletin.com)
Retrieved 2021-09-01
House panel mulls mandatory disclosure bill - (FCW)
Industry lobbies Congress to extend notification timeline after cybersecurity incidents (hill)
OMB directs agencies to increase log sharing to combat cyber incidents
Retrieved 2021-07-21
New bill would make some companies report cyberattacks to government
Senators introduce bill requiring some critical groups to report cybersecurity incidents (hill)
Blunt, Colleagues Introduce Bipartisan Cyber Reporting Bill Following SolarWinds and Colonial Hacks (U.S. Senator Roy Blunt of Missouri)
Retrieved 2021-07-02
Debate Heats Up as Senator Prepares to Introduce Incident-Reporting Legislation (Nextgov)
Retrieved 2021-06-22
Mandatory Cyber Reporting Within 24 Hours: Sen. Warner Bill - Breaking Defense Breaking Defense (Defense industry news, analysis and commentary)
Retrieved 2021-06-18
The Cybersecurity 202: The race is on to make hacked companies more accountable to government. (wapo)
Senators Draft a Federal Breach Notification Bill
Retrieved 2021-06-16
Tonya Ugoretz: FBI Needs Industry Cooperation to Address Cyber Incidents
Retrieved 2021-06-11
Notification no (nos: What to avoid when alerting customers of a breach)
Retrieved 2021-06-08
CISA launches platform to let hackers report security bugs to US federal agencies (TechCrunch)
Retrieved 2021-06-04
Senate bill proposes requiring cyber incident notification to feds within 24 hours (CyberScoop)
Retrieved 2021-05-25
Colonial ransomware hack spurs first-ever cybersecurity regulations for pipeline industry (wapo)
It's Time for Congress to Push Companies to Come Forward on Hacks (Just Security)
Retrieved 2021-05-20
SolarWinds: A Harbinger For a National Data Breach Reporting Law (Decipher)
Retrieved 2021-05-18
False Claims Act is a Weapon against Breaches and Whistlenlowers
Retrieved 2021-05-14
Congress to Speed up Efforts on Pushing out Hack Reporting Law (KMJ-AF1)
Retrieved 2021-05-12
Mark Warner calls for mandatory reporting of hacks after Colonial Pipeline attack
Retrieved 2021-05-11
Senators Want FISMA Changes on Cyberattack Reporting (MeriTalk)
Senators Cite Colonial Pipeline Hack in Calling for Cyber Response and Recovery Fund (Nextgov)
Lawmakers eye tightening law to get more details on cyberattacks (Roll Call)
Retrieved 2021-04-13
Former DHS Leader Shares Details on SolarWinds Attack
Retrieved 2021-04-12
Former DHS Secretary Details SolarWinds Hackers’ Access to His Email (Nextgov)
Ex-DHS chief confirms suspected Russian hackers targeted his email account (CyberScoop)
‘They knew I was running late to meetings’: Former DHS chief on reports that SolarWinds hackers targeted his emails (The Record by Recorded Future)
Retrieved 2021-04-06
Top Homeland Security Senators Want Details on Agencies Hit in SolarWinds, Microsoft Intrusions (Nextgov)
Retrieved 2021-04-05
President Biden’s new executive order could oblige software vendors to tell Uncle Sam about security breaches (The Daily Swig)
Russia Suspected of Stealing Thousands of State Department Emails (Homeland Security Today)
Retrieved 2021-04-03
Russian hackers stole thousands of emails from US State Department: Report
Retrieved 2021-04-01
Top DHS Officials’ E-Mails Compromised in SolarWinds Hack, (Saudi Press)
After SolarWinds, Lawmakers Want Companies to Come Clean About Cyberattacks
Cyber Daily: After SolarWinds, Lawmakers Want Companies to Come Clean About Hacks (State Department Emails Stolen)
SolarWinds Hack Obtained Emails of Top U.S. Department of Homeland Security Officials (FISM TV)
SolarWinds Hackers Accessed US Department of Homeland Security (DHS) officials
Hunting the hunters: How Russian hackers targeted US cyber first (KAKE)
Hunting the hunters: How Russian hackers targeted US cyber first responders in SolarWinds breach (CNNPolitics)
Hunting the hunters: How Russian hackers targeted US cyber first responders in SolarWinds breach
Retrieved 2021-03-31
SolarWinds cyberhack gained access to then-acting DHS chief's emails: Sources (ABC News)
News Briefs | (bedfordgazette.com)
Expected breach disclosure mandates will test government-industry cooperation - (FCW)
Russia suspected of stealing thousands of State Department emails
SolarWinds hacker accessed Homeland Security email (Texas News Today)
Email accounts of DHS members were compromised in the SolarWinds hackSecurity Affairs
SolarWinds Hack Affected Emails Of Homeland Security Leaders (Potomac Officers Club)
Russians suspected of 'stealing thousands of State Department emails' in latest hack targeting US (Daily Mail Online)
SolarWinds surprise: Department of Homeland Security emails leaked?
SolarWinds hacker sneaks into Trump's top executive email (Texas News Today)
Retrieved 2021-03-30
Head of Homeland Security had his email hacked in SolarWinds attack (IT PRO)
SolarWinds Hackers Said to Have Accessed Emails of Top US Security Officials (NewsDeal)
AP report: SolarWinds hack obtained emails of top DHS officials (Techzine Europe)
Department of Homeland Security email accounts exposed in SolarWinds hack (Cyber Security Review)
Retrieved 2021-03-29
Software vendors would have to disclose breaches to US - Security (CRN Australia)
SolarWinds hack obtained emails of top US Department of Homeland Security officials (AP)
'Small number' of DHS email accounts accessed during SolarWinds breach (FedScoop)
Associated Press: SolarWinds hack got emails of top DHS officials (KyivPost - Ukraine's Global Voice)
In wake of giant software hacks, defenders & dev teams must fix AppSec
AP sources: SolarWinds hack got emails of top DHS officials | Govt-and-politics (tulsaworld.com)
SolarWinds Hackers Breached Homeland Security Officials Emails: Report
Solarwinds, Inc. (NYSE:SWI), (CRWD) - SolarWinds Hackers Breached Homeland Security Officials Emails: Report (Benzinga)
SolarWinds hack obtained emails of top U.S. Department of Homeland Security officials: AP (Reuters)
Companies Must Report Hacks to U.S. Within Days in Draft Order (Bloomberg)
Russian hackers stole thousands of State Department emails, reports claim (The Independent)
The Emails of the Department of Homeland Security exposed
SolarWinds cyberhack gained access to then (acting DHS chief’s emails: Sources – Illinois News Now)
AP sources: SolarWinds hack got emails of top DHS officials
Retrieved 2021-03-25
Exclusive: Software vendors would have to disclose breaches to U.S. government users under new order: draft (Reuters)
NSA director says U.S. has a ‘blind spot’ for detecting attacks like SolarWinds, Microsoft Exchange (The Record by Recorded Future)
EXCLUSIVE (Software vendors would have to disclose breaches ...)
Fed Breach Disclosure Rule Planned After SolarWinds Hack: Report
Biden executive order would force software vendors to disclose breaches (Seeking Alpha)
Software vendors would have to disclose breaches to U.S. government users under new order (The Hindu)
Exclusive: Software vendors would have to disclose breaches to U.S. government users under new order: draft (Reuters)
Biden reportedly planning an executive order on cybersecurity breach notifications (SiliconANGLE)
Exec Order Could Force Software Vendors to Disclose ...
Senators Offer to Let NSA Hunt Cyber Actors Inside the US (Defense One)
Nakasone Warns Adversaries Hack Unseen In US « Breaking Defense (Defense industry news, analysis and commentary)
NSA Chief Says Recent Hacks Expose Limits of U.S. Cyber Protections (WSJ)
Exclusive: Software vendors would have to disclose breaches to U.S. government users under new order: draft (Reuters)
Retrieved 2021-03-03
SolarWinds Hackers Obtained Emails of Top US Department of Homeland Security Officials (Cyberintel Magazine)
Retrieved 2020-12-13
CISA Issues Emergency Directive to Mitigate the Compromise of Solarwinds Orion Network Management Products (CISA)