The US government is doing a really bad job of tracking ransomware
Date:
Thu, 26 May 2022 13:52:54 +0000
Description:
Information on ransomware attacks is incomplete and fragmented, says Senate Committee.
FULL STORY ======================================================================
The US government is doing a really bad job of tracking ransomware , a report from a Senate committee has found.
The Senate Homeland Security and Governmental Affairs Committee has released its findings following 10 months of investigation into ransomware attacks and related cryptocurrency payments.
It said reports of previous attacks are fragmented and incomplete, and blame was partially laid on the fact that both the Federal Bureau of Investigation (FBI), and the Cybersecurity and Infrastructure Security Agency (CISA) both have a one-stop-shop website for all things ransomware reporting. Ransomware results
The FBIs figures, for example, were described as a subset of a subset of actual data, something even the Bureau agrees with, saying its data is artificially low due to the fact that it was shared voluntarily.
It took the committee ten months to draft the report, and in the meantime, a lot has changed. The Senate passed the Cyber Incident Reporting Act of 2021
in March, which required firms to report a malware cyberattack to CISA within 72 hours, and a ransomware attack within 24 hours.
Following up on the new regulation, CISA said back then that it would share all of the reports with the FBI immediately. However, the report states that wasnt exactly the case. Read more
This ransomware looks to make the world a better place
Most ransomware victims pay up, but many never recover their data
Ransomware a burgeoning geopolitical weapon?
"While the agencies state that they share data with each other, in
discussions with committee staff, ransomware incident response firms questioned the effectiveness of such communication channels' impact on assisting victims of an attack," the report said.
FBI and CISA aside, other organizations within the U.S. government, such as the U.S. Treasury, the Transport Security Administration, and the Security
and Exchange Commission, have their own reporting practices. These are only adding more complexity to an already complex problem, as they do not capture, categorize, or publicly share information uniformly. Prevent ransomware attacks with the best firewalls around
Via: ZDNet
======================================================================
Link to news story:
https://www.techradar.com/news/the-us-government-is-doing-a-really-bad-job-of- tracking-ransomware/
--- Mystic BBS v1.12 A47 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)